470 Security Industry jobs in the United States
Security Industry Specialist II - AMZ15440.7

Posted 10 days ago
Job Viewed
Job Description
Employer: Amazon.com Services LLC
Position: Security Industry Specialist II
Location: Austin, TX
Multiple Positions Available:
1. Understand and rationalize security requirements in the payments and healthcare systems;
2. Provide business specific interpretations and support automation opportunities while working with DevOps teams;
3. Establishes credibility and maintain strong working relationships with groups involved with payment security and compliance matters (InfoSec, Legal, Business Development, Internal Audit, Fraud, Physical Security, Developer Community, Networking, Systems, etc.);
4. Collaborates with Compliance Specialists and business/service teams to understand and validate assessment scope;
5. Review security controls that are technical in nature, such as access controls, data encryption in transit and at rest, and auditing and logging user activity;
6. Responsible for building and influencing security as a core competency in relationships with internal teams/partners/vendors; this includes providing education and training to the organization;
7. Deliver recommendations and risk interpretations in a dear, concise and audience-specific format;
8. Engages with the Business and SMEs to ensure compliance to information security policies Supports ad-hoc data analysis requests; and
9. Analyze historical data to identify trends and insights.
Basic Qualifications
A Bachelor's degree or foreign equivalent in Computer Science, Information Systems Management, Business Administration or a related field and 3 year(s) of experience in job offered or a related occupation.
Experience must include:
1. 3 years of experience in information security governance, audit, or risk management.
2. 3 years of experience analyzing data utilizing Excel, SQL, or related tools.
3. 3 years of experience in risk management, business risk analysis and making complex business/risk trade-off recommendations and decisions.
4. 3 years of experience in service-oriented architectures and web services security
5. 3 years of experience in related security control and compliance experience in various frameworks including: HIPAA, HITRUST, PCI DSS, ISO, NIST.
Preferred Qualifications
All applicants must meet all the above listed requirements.
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner.
Security Industry Specialist, Amazon Security Healthcare Compliance
Posted 1 day ago
Job Viewed
Job Description
Amazon is making bold investments to reshape healthcare delivery by making it more accessible, efficient, secure and compliant. We are seeking a highly experienced Senior Healthcare Compliance Specialist to join our dynamic team and drive transformative change both within Amazon and the healthcare industry. If you are a healthcare compliance expert with a vision to shape the future of healthcare through technology, and innovative compliance solutions, we invite you to be part of this exciting journey!
You will play a pivotal role in ensuring that our healthcare solutions not only meet but exceed regulatory standards while enabling magical experiences for our customers. Leveraging your deep expertise in healthcare compliance and technical proficiency, you will guide our software engineers and architects in implementing innovative compliance solutions while using your judgment to balance risk and innovation. This is a unique opportunity to be part of a team that is pushing the boundaries of innovative compliance solutions at Amazon scale to revolutionize healthcare.
The Senior Healthcare Compliance Specialist partners with executive leadership to establish and manage a shared vision Health Care compliance. You can prioritize well, communicate clearly, and have a consistent track record of delivery. You are proactive in removing roadblocks, pave the way for innovation, and can handle multiple competing priorities in a fast-paced environment. You will be a positive influencer across diverse teams, be able to effectively rally support for your initiatives.
Key job responsibilities
Regulatory Expertise: Serve as the ultimate authority on controls related to healthcare regulations, such as HIPAA, HITRUST, and other industry standards.
Technical Leadership: Provide technical leadership, aligning healthcare compliance requirements with our state-of-the-art tech. Guide software engineers, architects, and teams, ensuring our healthcare solutions are fortified with innovative security and compliance controls.
Compliance Oversight: Collaborate with cross-functional teams to design, implement, and maintain compliance programs, policies, and procedures
Stakeholder Engagement: Act as the trusted advisor to the business and Senior Executives (VPs, Directors, Senior Managers.). You will leverage your judgment and expertise to balance risk and innovation and help leaders make informed decisions.
Risk Mitigation: Spearhead innovative risk assessment and audit methodologies to identify vulnerabilities and develop advanced strategies for risk mitigation within our technology-driven healthcare systems.
Technology-Driven Monitoring: Partner with Software engineers to build advanced monitoring and reporting mechanisms to track compliance metrics, status of technical controls across a diverse technology landscape and report on the efficacy of compliance efforts.
About the team
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying.
Why Amazon Security?
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon's products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
Inclusive Team Culture
In Amazon Security, it's in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.
Training & Career Growth
We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there's nothing we can't achieve.
#JoinBST
Basic Qualifications
- Bachelor's degree in a relevant field.
- 5+ progressive experience in healthcare compliance, with a strong focus on HIPAA, HIITRUST, SOC2, ISO 27001, NIST Cyber Security Standards.
- Experience leading complex healthcare compliance initiatives with multiple cross functional stakeholders.
- Deep understanding of implementing and assessing controls in complex cloud environments.
- Expertise in security principles such as least privilege access, defense in depth, preventative vs detective controls.
Preferred Qualifications
- Masters Degree.
- Experience in data privacy or security compliance.
- Experience executing software programs in support of a major compliance effort.
- Have a record of delivery of IT process improvement projects with technology processes and/or major tech companies.
- Experience evaluating the design and effectiveness of IT controls.
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner.
Security Industry Specialist II, Security Risk & Compliance

Posted 10 days ago
Job Viewed
Job Description
Amazon's Security Risk and Compliance (SRC) team is currently hiring a Security Compliance Specialist to focus on preparing for and supporting third-party attestation audits. This includes
preparing SOC2 reports and regulatory/industry certifications along with developing standard security response protocols for third-party inquiries submitted to Amazon, Amazon's corporate customers, business associates, and other third party (3P) partners. The Security Compliance Specialist will handle multiple requests submitted for proof of compliance with industry and regulatory security requirements and due diligence questionnaires daily.
The SRC team obsesses over our customers and work to ensure that they are confident that Amazon cares about data confidentiality, integrity, and availability by providing third-party attestations as proof of compliance. To support successful attestations, the SRC team identifies applicable controls, assesses their effectiveness, and works with control owners to remediate the findings.
The successful candidate will be a technically experienced and innovative security and compliance professional who has the ability to understand security processes, effectively communicate with technical teams and business leaders alike, and be able to drive automated and scalable process improvements across internal organizations and teams.
Key job responsibilities
- Understand and serve as a subject-matter expert around Amazon security controls
- Dive deep into the Amazon control environment to develop broad domain and technical understanding of control activities and implementation to articulate compliance to key stakeholders.
- Developing a knowledge base of Amazon control activities and implementations; vetting with business partners and security stakeholders
- Communicate to leadership key risks and areas of program improvement, as well as seek diverse opinions and coordinate improvement efforts.
- Develop broad domain and technical understanding of Industry requirements and regulatory expectations to drive process improvement initiatives
- Preparing for SOC2, SIG, ISO 27001, US Government regulations/standards, and other certifications and assessments by identifying applicable controls, assessing control readiness for third-party assessments, recommending appropriate remediation strategies, and tracking remediation activities to completion.
- Leading and managing projects and campaigns with excellent project management skills.
- Clearly communicating vision, deliverables, and project status to management and key technical and business stakeholders.
- Delivering recommendations and risk interpretations in a clear, concise and audience-specific format.
About the team
Why Amazon Security
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon's products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there's nothing we can't achieve.
Inclusive Team Culture
In Amazon Security, it's in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.
Training and Career Growth
We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.
#JoinBST
Basic Qualifications
- Bachelor's Degree in Computer Science, Information Systems Management, Mathematics, Accounting/Auditing, or other related fields
- 5+ years experience in security, audits, customer trust, control assessments, or risk assessments.
- 5+ years experience assessing complex technical processes
Preferred Qualifications
- Demonstrated understanding of cloud computing services/architecture
- Experience with monitoring and automating security controls.
- Experience with using GRC tooling
- Direct experience in working with security and business teams on controls design to address regulatory compliance requirements
- Experience in technical security design, compliance consulting, or advisory work in support of a highly technical DevOps and cloud environment.
- Experience in developing unified frameworks that include more than one of the following: ISO, NIST, PCI, HIPAA, GLBA, GDPR, NYDFS, etc.
- Have an industry certification such as CISSP, CISA, and CISM.
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner.
Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $91,800/year in our lowest geographic market up to $196,300/year in our highest geographic market. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience. Amazon is a total compensation company. Dependent on the position offered, equity, sign-on payments, and other forms of compensation may be provided as part of a total compensation package, in addition to a full range of medical, financial, and/or other benefits. For more information, please visit . This position will remain posted until filled. Applicants should apply via our internal or external career site.
Security Industry Specialist II, Security Risk & Compliance

Posted 10 days ago
Job Viewed
Job Description
Amazon's Security Risk and Compliance (SRC) team is currently hiring a Security Compliance Specialist to focus on preparing for and supporting third-party attestation audits. This includes
preparing SOC2 reports and regulatory/industry certifications along with developing standard security response protocols for third-party inquiries submitted to Amazon, Amazon's corporate customers, business associates, and other third party (3P) partners. The Security Compliance Specialist will handle multiple requests submitted for proof of compliance with industry and regulatory security requirements and due diligence questionnaires daily.
The SRC team obsesses over our customers and work to ensure that they are confident that Amazon cares about data confidentiality, integrity, and availability by providing third-party attestations as proof of compliance. To support successful attestations, the SRC team identifies applicable controls, assesses their effectiveness, and works with control owners to remediate the findings.
The successful candidate will be a technically experienced and innovative security and compliance professional who has the ability to understand security processes, effectively communicate with technical teams and business leaders alike, and be able to drive automated and scalable process improvements across internal organizations and teams.
Key job responsibilities
- Understand and serve as a subject-matter expert around Amazon security controls
- Dive deep into the Amazon control environment to develop broad domain and technical understanding of control activities and implementation to articulate compliance to key stakeholders.
- Developing a knowledge base of Amazon control activities and implementations; vetting with business partners and security stakeholders
- Communicate to leadership key risks and areas of program improvement, as well as seek diverse opinions and coordinate improvement efforts.
- Develop broad domain and technical understanding of Industry requirements and regulatory expectations to drive process improvement initiatives
- Preparing for SOC2, SIG, ISO 27001, US Government regulations/standards, and other certifications and assessments by identifying applicable controls, assessing control readiness for third-party assessments, recommending appropriate remediation strategies, and tracking remediation activities to completion.
- Leading and managing projects and campaigns with excellent project management skills.
- Clearly communicating vision, deliverables, and project status to management and key technical and business stakeholders.
- Delivering recommendations and risk interpretations in a clear, concise and audience-specific format.
About the team
Why Amazon Security
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon's products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there's nothing we can't achieve.
Inclusive Team Culture
In Amazon Security, it's in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.
Training and Career Growth
We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.
#JoinBST
Basic Qualifications
- Bachelor's Degree in Computer Science, Information Systems Management, Mathematics, Accounting/Auditing, or other related fields
- 5+ years experience in security, audits, customer trust, control assessments, or risk assessments.
- 5+ years experience assessing complex technical processes
Preferred Qualifications
- Demonstrated understanding of cloud computing services/architecture
- Experience with monitoring and automating security controls.
- Experience with using GRC tooling
- Direct experience in working with security and business teams on controls design to address regulatory compliance requirements
- Experience in technical security design, compliance consulting, or advisory work in support of a highly technical DevOps and cloud environment.
- Experience in developing unified frameworks that include more than one of the following: ISO, NIST, PCI, HIPAA, GLBA, GDPR, NYDFS, etc.
- Have an industry certification such as CISSP, CISA, and CISM.
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner.
Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $91,800/year in our lowest geographic market up to $196,300/year in our highest geographic market. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience. Amazon is a total compensation company. Dependent on the position offered, equity, sign-on payments, and other forms of compensation may be provided as part of a total compensation package, in addition to a full range of medical, financial, and/or other benefits. For more information, please visit . This position will remain posted until filled. Applicants should apply via our internal or external career site.
Senior Security Industry Specialist, Amazon Security Healthcare Compliance

Posted 10 days ago
Job Viewed
Job Description
Amazon is making bold investments to reshape healthcare delivery by making it more accessible, efficient, secure and compliant. We are seeking a highly experienced Senior Healthcare Compliance Specialist to join our dynamic team and drive transformative change both within Amazon and the healthcare industry. If you are a healthcare compliance expert with a vision to shape the future of healthcare through technology, and innovative compliance solutions, we invite you to be part of this exciting journey!
You will play a pivotal role in ensuring that our healthcare solutions not only meet but exceed regulatory standards while enabling magical experiences for our customers. Leveraging your deep expertise in healthcare compliance and technical proficiency, you will guide our software engineers and architects in implementing innovative compliance solutions while using your judgment to balance risk and innovation. This is a unique opportunity to be part of a team that is pushing the boundaries of innovative compliance solutions at Amazon scale to revolutionize healthcare.
The Senior Healthcare Compliance Specialist partners with executive leadership to establish and manage a shared vision Health Care compliance. You can prioritize well, communicate clearly, and have a consistent track record of delivery. You are proactive in removing roadblocks, pave the way for innovation, and can handle multiple competing priorities in a fast-paced environment. You will be a positive influencer across diverse teams, be able to effectively rally support for your initiatives.
Key job responsibilities
Regulatory Expertise: Serve as the ultimate authority on controls related to healthcare regulations, such as HIPAA, HITRUST, and other industry standards.
Technical Leadership: Provide technical leadership, aligning healthcare compliance requirements with our state-of-the-art tech. Guide software engineers, architects, and teams, ensuring our healthcare solutions are fortified with innovative security and compliance controls.
Compliance Oversight: Collaborate with cross-functional teams to design, implement, and maintain compliance programs, policies, and procedures
Stakeholder Engagement: Act as the trusted advisor to the business and Senior Executives (VPs, Directors, Senior Managers.). You will leverage your judgment and expertise to balance risk and innovation and help leaders make informed decisions.
Risk Mitigation: Spearhead innovative risk assessment and audit methodologies to identify vulnerabilities and develop advanced strategies for risk mitigation within our technology-driven healthcare systems.
Technology-Driven Monitoring: Partner with Software engineers to build advanced monitoring and reporting mechanisms to track compliance metrics, status of technical controls across a diverse technology landscape and report on the efficacy of compliance efforts.
About the team
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying.
Why Amazon Security?
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon's products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
Inclusive Team Culture
In Amazon Security, it's in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.
Training & Career Growth
We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there's nothing we can't achieve.
#JoinBST
Basic Qualifications
- Bachelor's degree in a relevant field.
- 7+ progressive experience in healthcare compliance, with a strong focus on HIPAA, HIITRUST, SOC2, ISO 27001, NIST Cyber Security Standards.
- Experience leading complex healthcare compliance initiatives with multiple cross functional stakeholders.
- Deep understanding of implementing and assessing controls in complex cloud environments.
- Expertise in security principles such as least privilege access, defense in depth, preventative vs detective controls.
Preferred Qualifications
- Masters Degree.
- Experience in data privacy or security compliance.
- Experience executing software programs in support of a major compliance effort.
- Have a record of delivery of IT process improvement projects with technology processes and/or major tech companies.
- Experience evaluating the design and effectiveness of IT controls.
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner.
Security Industry Spclst III , Security Risk and Compliance

Posted 10 days ago
Job Viewed
Job Description
At Amazon, we are obsessed with customer trust. The Security Industry Specialist role on our Security Governance team helps to enable Amazon business leaders to understand the Information Security Policies and operate to maintain Customer Trust by guarding the confidentiality and integrity of Amazon and customer data. We assess risk, classify data and systems, detect potential intrusions, and render useless the value of data that may be leaked. Our teams span over 10+ countries worldwide, and our focus areas include: security intelligence, application security, incident response, security operations, risk and compliance, acquisitions and subsidiaries, and external partner security.
Our mission includes instilling awareness to safeguard all customer and employee data, applications, services, and assets. To accomplish this, we work with Amazon organizations to build security best practices into enterprise-wide systems. Our guidance and leadership equip our partners to maintain high security standards. This team dives deep into security technologies and continuously raises the security bar across Amazon's Stores, Digital, and Other(SDO) by tackling complex engineering problems that require widespread support and multi-year execution plans.
Amazon Security is looking for a Sr. Security Governance Specialist to focus on information security policy and data governance programs and projects. This role will support an initiative to implement steps to achieve our long term security vision for customer trust, solving our most challenging problems with novel and scalable solutions. In this Security Governance Specialist role you will work with cross-functional teams of technical and non-technical key stakeholders to define and operationalize strategy and interpret, communicate, and drive full lifecycle security projects.
Key job responsibilities
Interpret and comprehend Information Security policies in the given context and business scenario and provide the necessary consultation in a time-bound manner
Support policy modernization efforts to enhance user experience and comprehension
Able to understand the business, security context, and downstream system impacts to classify the data elements effectively.
Guide stakeholders on applying data handling control requirements. Identify solutions to improve governance routines
Manage initiatives aimed at identifying and addressing security risks for Amazon and its partner teams such as Corporate Development, Amazon Subsidiaries, and Business Line Security Teams
Understand the Business Information Security Risk and provide the required data classification and policy consultation. Identify the problem area and provide scalable solutions in the Information Security Policy space.
Demonstrate the ability to provide both structured and creative thinking in a dynamic, evolving, multi-team-based environment; demonstrate the ability to communicate effectively at multiple levels of management, building trust across the organization; and demonstrate discretion with sensitive information.
Be comfortable working in a fast-paced, ever-changing environment while driving teams to complete goals.
Understand and manage cross-functional requirements to translate them into an optimal solution. Be comfortable with hands-on day-to-day problem solving and implementing quick and effective action plans to meet short- and long-term priorities.
A day in the life
Our team places a high value on work-life balance. It isn't about how many hours you spend at home or at work; it's about the flow you establish that brings energy to both parts of your life. We believe striking the right balance between your personal and professional lives is critical to lifelong happiness and fulfilment. We offer flexibility in working hours and encourage you to find your own balance between your work and personal lives.
About the team. Our team's mission is to define, measure, enable, and evangelize the core enduring principles that raise the security bar across all of Amazon. We influence the security tooling, services, and products that teams across Amazon rely on, and most importantly, we uphold the security standards across all our systems and processes.
About the team
About Amazon Security:
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying.
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying.
Why Amazon Security
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon's products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there's nothing we can't achieve.
Inclusive Team Culture
In Amazon Security, it's in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.
Training and Career Growth
We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.
#JoinBST
Basic Qualifications
- Bachelor's degree in Information Security, Computer Science, Risk Management, Engineering, Math, statistics, or related discipline, or equivalent technology experience
- 5+ years of industry experience with a proven track record of Information Security and Risk management
- 5+ years working in a Security and Technology compliance role with knowledge in Risk, Governance, and security fundamentals
- 5+ years of consulting and managing Information Security Risk, Policy, and Governance projects
- Knowledge of Information Security Risk and Governance methodologies
Preferred Qualifications
- Possess an understanding of core information security principles and associated risk management principles.
- Experience in generating automated metrics to measure IT security effectiveness and consistency
- Data classification and governance experience
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner.
Physical Security / Industry Specialist, US Amazon Dedicated Cloud Security
Posted 1 day ago
Job Viewed
Job Description
Amazon Web Services (AWS) is the leading cloud provider, delivering virtualized infrastructure, storage, networking, messaging, and many other services to customers all over the world to include the U.S. Intelligence Community (IC).
The AWS Security, Security Design and Accreditation group is looking for an Industry Specialist (IS) to join our design and accreditation team. As an IS you will manage sensitive and critical US Intelligence Community (USIC) and DoD security relevant facility designs, builds, and expansions supporting cloud technologies and activities.
This position is based in Herndon, VA and will join a team of experienced Industry Specialists in managing the AWS National Industrial Security Program (NISP). SDA is responsible for creating, implementing, and overseeing AWS' NISP.
The team works closely with US Government (USG) customers who are migrating national security workloads into the AWS cloud by adopting cloud infrastructure and cloud service platforms. With AWS, our customers can requisition compute, storage, and numerous additional cloud services, gaining access to a suite of elastic IT infrastructure services critical to maintaining their missions and operational workloads. Our customers have the flexibility to choose between a variety of development platforms or programming models suited to addressing their unique challenges.
You obsess over internal and external customers and successfully deliver support and services in a high-growth environment where priorities shift extremely fast. You are also independent and must be able to manage multiple security design projects under minimal supervision, continuously triaging and prioritizing your projects, develop and contribute to regular reporting mechanisms, communicate clearly, think outside the box, and deliver solutions that meet the AO's requirements and facilitate our customer's mission. Ownership also includes developing site security service proposals from various vendors and managing the selected vendor from the beginning to the end of the project.
This position requires that the candidate selected be a US Citizen and must currently possess and maintain an active TS/SCI security clearance with polygraph.
Key job responsibilities
As an Industry Specialist with the SDA, you will own the security-relevant design of our ICD 705 and NISPOM facility builds and expansions. This includes:
- Interpreting and communicating physical and technical security requirements, best practices, and Accreditation Official (AO) variances;
- Participating in construction design reviews and the approval process;
- Implementing security of the construction site; inspecting and cataloging key stages of each build as prescribed in the CSP or AO guidelines;
- Ensuring that these secure areas are protected with Intrusion Detection and Access Control system by developing ACS/IDS design and procurement and that construction meets current TEMPEST requirements for the protection of National Security Information, accredited facilities, and critical cloud infrastructure from insider and external threats.
- Draft and review accurate Statements of Work for security vendors, verify task completion and authorize vendor invoice payments based on verified reviews.
- Effectively manage and oversee contract/contingent worker scopes of work and conduct quality checks and assurance.
About the team
Inclusive Team Culture:
Here at AWS, we embrace our differences. We are committed to furthering our culture of inclusion. We have ten employee-led affinity groups, reaching 40,000 employees in over 190 chapters globally. We have innovative benefit offerings, and we host annual and ongoing learning experiences, including our Conversations on Race and Ethnicity (CORE) and AmazeCon (gender diversity) conferences. Amazon's culture of inclusion is reinforced within our 16 Leadership Principles, which remind team members to seek diverse perspectives, learn and be curious, and earn trust.
Work/Life Balance:
Our team puts a high value on work-live balance. It isn't about how many hours you spend at home or at work; it's about the flow you establish that brings energy to both parts of your life. We believe striking the right balance between your personal and professional life is critical to life-long happiness and fulfillment. We offer flexibility in working hours and encourage you to find your own balance between your work and personal lives.
Mentorship & Career Growth:
Our team is dedicated to supporting new members. We have a broad mix of experience levels and tenures, and we're building an environment that celebrates knowledge sharing and mentorship. Our senior members enjoy one-on-one mentoring and thorough, but kind, code reviews. We care about your career growth and strive to assign projects based on what will help each team member develop into a better-rounded engineer and enable them to take on more complex tasks in the future.
Basic Qualifications
- Bachelor's Degree or equivalent experience in Facility and Technical Security Design and Accreditation(s).
- 5+ years experience interpreting and implementing facility physical and technical security requirements of the NISPOM, ICD 705 and ICS 705-1/2.
- 5+ years of expertise in selection, implementation, trouble-shooting, and application of UL 2050 Intrusion Detection Systems, Automated Access Control Systems (ACS - software, configuration, and user interface), FF-L-2740B locking devices, and TEMPEST (CNSSAM TEMPEST/01-13) solutions that support ICD 705 accreditation.
- 5+ years experience reviewing and reading architectural, mechanical, plumbing, fire and electrical drawings.
- 1+ year experience using Microsoft Visio and Bluebeam.
- Current, active US Government Security Clearance of TS/SCI with Polygraph
Preferred Qualifications
- Ability to read and comprehend multiple design drawings and documents to include Architectural, Mechanical, Plumbing, Security, Telecommunications, and Electrical and apply relevant security measures to each.
- Possess knowledge and applicability of a PDS (Protective Distribution System) per CNSSI No.7003.
- Knowledge of General Contracting processes and procedure
- Experience using and annotating drawings using Visio, Blue-Beam, and/or AutoCAD
- Pro-actively identify physical security requirements, problems, and solutions; using your experience with security systems, concepts, and infrastructure into the security design of our facilities
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner.
Be The First To Know
About the latest Security industry Jobs in United States !
Network Security Engineer - Industry leading benefits
Posted today
Job Viewed
Job Description
SimVentions, consistently voted one Virginia's Best Places to Work, is looking for an experienced professional to join our team! As a Blue Team Engineer, you will support Blue Team operations and collaborate with Red Team and Cybersecurity professionals on overall cyber readiness defense and system accreditation efforts.
** Position is contingent upon award of contract, anticipated in December of 2025. **
Clearance:An ACTIVE Secret clearance (IT Level II Tier 5 / Special-Sensitive Position) is required for this position. Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information. US Citizenship is required to obtain a clearance.
Requirements:- In-depth understanding of computer security, military system specifications, and DoD cybersecurity policies
- Strong ability to communicate clearly and succinctly in written and oral presentations
- Perform system hardening on multiple Operating System (OS) platforms
- Monitor and assess system and network security posture in accordance with DoD cybersecurity policies and tools
- Apply MITRE ATT&CK and/or MITRE D3FEND frameworks to assess and improve threat detection and response strategies
- Conduct advanced threat intelligence analysis, identify emerging potential threats, and provide threat intelligence recommendations
- Perform vulnerability assessments using the Assured Compliance Assessment Solution (ACAS) and other security tools
- Analyze vulnerability findings and develop remediation plans
- Remediate vulnerability findings by implementing vendor patches and configuration changes on both Linux and Windows operating systems
- Design, implement, and enforce security controls across network, hardware, and software components
A combined minimum total of ten (10) years of full-time professional experience in all of the following skillsets/disciplines:
- System hardening across multiple OS platforms
- Networking and virtualization
- Application of DoD cybersecurity policies and use of DoD security tools
- MITRE ATT&CK or MITRE D3FEND frameworks
- Threat intelligence assessments and identification of emerging potential threats
- Performing vulnerability assessments with ACAS
- Remediation of vulnerability findings to include implementation of vendor patches on both Linux and Windows Operating systems
- Design, implementation, configuration, and enforcement of security controls on network, hardware, and software components and devices
Possess one of the following DoD 8570.01-M IAT Level III baseline certifications:
- CASP+ CE
- CCNP Security
- CISA
- CISSP (Associate)
- CISSP
- GCED
- GCIH
- CCSP
Compensation at SimVentions is determined by a number of factors, including, but not limited to, the candidate’s experience, education, training, security clearance, work location, skills, knowledge, and competencies, as well as alignment with our corporate compensation plan and contract specific requirements.
Benefits:At SimVentions, we’re committed to supporting the total well-being of our employees and their families. Our benefit offerings include comprehensive health and welfare plans to serve a variety of needs.
We offer:
- Medical, dental, vision, and prescription drug coverage
- Employee Stock Ownership Plan (ESOP)
- Competitive 401(k) programs
- Retirement and Financial Counselors
- Health Savings and Health Reimbursement Accounts
- Flexible Spending Accounts
- Life insurance, short- & long-term disability
- Continuing Education Assistance
- Paid Time Off, Paid Holidays, Paid Leave (e.g., Maternity, Paternity, Jury Duty, Bereavement, Military)
- Third Party Employee Assistance Program that offers emotional and lifestyle well-being services, to include free counseling
- Supplemental Benefit Program
SimVentions is about more than just being a place to work with other growth-orientated technically exceptional experts. It’s also a fun place to work. Our family-friendly atmosphere encourages our employee-owners to imagine, create, explore, discover, and do great things together.
Support Our Warfighters
SimVentions is a proud supporter of the U.S. military, and we take pride in our ability to provide relevant, game-changing solutions to our armed men and women around the world.
Drive Customer Success
We deliver innovative products and solutions that go beyond the expected. This means you can expect to work with a team that will allow you to grow, have a voice, and make an impact.
Get Involved in Giving Back
We believe a well-rounded company starts with well-rounded employees, which is why we offer diverse service opportunities for our team throughout the year.
Build Innovative Technology
SimVentions takes pride in its innovative and cutting-edge technology, so you can be sure that whatever project you work on, you will be having a direct impact on our customer’s success.
Work with Brilliant People
We don’t just hire the smartest people; we seek experienced, creative individuals who are passionate about their work and thrive in our unique culture.
Create Meaningful Solutions
We are trusted partners with our customers and are provided challenging and meaningful requirements to help them solve.
Employees who join SimVentions will enjoy additional perks like:
- Employee Ownership: Work with the best and help build YOUR company!
- Family focus: Work for a team that recognizes the importance of family time.
- Culture: Add to our culture of technical excellence and collaboration.
- Dress code: Business casual, we like to be comfortable while we work.
- Resources: Excellent facilities, tools, and training opportunities to grow in your field.
- Open communication: Work in an environment where your voice matters.
- Corporate Fellowship: Opportunities to participate in company sports teams and employee-led interest groups for personal and professional development.
- Employee Appreciation: Multiple corporate events throughout the year, including Holiday Events, Company Picnic, Imagineering Day, and more.
- Founding Partner of the FredNats Baseball team: Equitable distribution of tickets for every home game to be enjoyed by our employee-owners and their families from our private suite.
- Food: We have a lot of food around here!
FTAC
Network Security Engineer - Industry leading benefits
Posted today
Job Viewed
Job Description
SimVentions, consistently voted one Virginia's Best Places to Work, is looking for an experienced professional to join our team! As a Blue Team Engineer, you will support Blue Team operations and collaborate with Red Team and Cybersecurity professionals on overall cyber readiness defense and system accreditation efforts.
** Position is contingent upon award of contract, anticipated in December of 2025. **
Clearance:An ACTIVE Secret clearance (IT Level II Tier 5 / Special-Sensitive Position) is required for this position. Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information. US Citizenship is required to obtain a clearance.
Requirements:- In-depth understanding of computer security, military system specifications, and DoD cybersecurity policies
- Strong ability to communicate clearly and succinctly in written and oral presentations
- Perform system hardening on multiple Operating System (OS) platforms
- Monitor and assess system and network security posture in accordance with DoD cybersecurity policies and tools
- Apply MITRE ATT&CK and/or MITRE D3FEND frameworks to assess and improve threat detection and response strategies
- Conduct advanced threat intelligence analysis, identify emerging potential threats, and provide threat intelligence recommendations
- Perform vulnerability assessments using the Assured Compliance Assessment Solution (ACAS) and other security tools
- Analyze vulnerability findings and develop remediation plans
- Remediate vulnerability findings by implementing vendor patches and configuration changes on both Linux and Windows operating systems
- Design, implement, and enforce security controls across network, hardware, and software components
A combined minimum total of ten (10) years of full-time professional experience in all of the following skillsets/disciplines:
- System hardening across multiple OS platforms
- Networking and virtualization
- Application of DoD cybersecurity policies and use of DoD security tools
- MITRE ATT&CK or MITRE D3FEND frameworks
- Threat intelligence assessments and identification of emerging potential threats
- Performing vulnerability assessments with ACAS
- Remediation of vulnerability findings to include implementation of vendor patches on both Linux and Windows Operating systems
- Design, implementation, configuration, and enforcement of security controls on network, hardware, and software components and devices
Possess one of the following DoD 8570.01-M IAT Level III baseline certifications:
- CASP+ CE
- CCNP Security
- CISA
- CISSP (Associate)
- CISSP
- GCED
- GCIH
- CCSP
Compensation at SimVentions is determined by a number of factors, including, but not limited to, the candidate’s experience, education, training, security clearance, work location, skills, knowledge, and competencies, as well as alignment with our corporate compensation plan and contract specific requirements.
Benefits:At SimVentions, we’re committed to supporting the total well-being of our employees and their families. Our benefit offerings include comprehensive health and welfare plans to serve a variety of needs.
We offer:
- Medical, dental, vision, and prescription drug coverage
- Employee Stock Ownership Plan (ESOP)
- Competitive 401(k) programs
- Retirement and Financial Counselors
- Health Savings and Health Reimbursement Accounts
- Flexible Spending Accounts
- Life insurance, short- & long-term disability
- Continuing Education Assistance
- Paid Time Off, Paid Holidays, Paid Leave (e.g., Maternity, Paternity, Jury Duty, Bereavement, Military)
- Third Party Employee Assistance Program that offers emotional and lifestyle well-being services, to include free counseling
- Supplemental Benefit Program
SimVentions is about more than just being a place to work with other growth-orientated technically exceptional experts. It’s also a fun place to work. Our family-friendly atmosphere encourages our employee-owners to imagine, create, explore, discover, and do great things together.
Support Our Warfighters
SimVentions is a proud supporter of the U.S. military, and we take pride in our ability to provide relevant, game-changing solutions to our armed men and women around the world.
Drive Customer Success
We deliver innovative products and solutions that go beyond the expected. This means you can expect to work with a team that will allow you to grow, have a voice, and make an impact.
Get Involved in Giving Back
We believe a well-rounded company starts with well-rounded employees, which is why we offer diverse service opportunities for our team throughout the year.
Build Innovative Technology
SimVentions takes pride in its innovative and cutting-edge technology, so you can be sure that whatever project you work on, you will be having a direct impact on our customer’s success.
Work with Brilliant People
We don’t just hire the smartest people; we seek experienced, creative individuals who are passionate about their work and thrive in our unique culture.
Create Meaningful Solutions
We are trusted partners with our customers and are provided challenging and meaningful requirements to help them solve.
Employees who join SimVentions will enjoy additional perks like:
- Employee Ownership: Work with the best and help build YOUR company!
- Family focus: Work for a team that recognizes the importance of family time.
- Culture: Add to our culture of technical excellence and collaboration.
- Dress code: Business casual, we like to be comfortable while we work.
- Resources: Excellent facilities, tools, and training opportunities to grow in your field.
- Open communication: Work in an environment where your voice matters.
- Corporate Fellowship: Opportunities to participate in company sports teams and employee-led interest groups for personal and professional development.
- Employee Appreciation: Multiple corporate events throughout the year, including Holiday Events, Company Picnic, Imagineering Day, and more.
- Founding Partner of the FredNats Baseball team: Equitable distribution of tickets for every home game to be enjoyed by our employee-owners and their families from our private suite.
- Food: We have a lot of food around here!
FTAC
Network Security Engineer - Industry leading benefits
Posted today
Job Viewed
Job Description
SimVentions, consistently voted one Virginia's Best Places to Work, is looking for an experienced professional to join our team! As a Blue Team Engineer, you will support Blue Team operations and collaborate with Red Team and Cybersecurity professionals on overall cyber readiness defense and system accreditation efforts.
** Position is contingent upon award of contract, anticipated in December of 2025. **
Clearance:An ACTIVE Secret clearance (IT Level II Tier 5 / Special-Sensitive Position) is required for this position. Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information. US Citizenship is required to obtain a clearance.
Requirements:- In-depth understanding of computer security, military system specifications, and DoD cybersecurity policies
- Strong ability to communicate clearly and succinctly in written and oral presentations
- Perform system hardening on multiple Operating System (OS) platforms
- Monitor and assess system and network security posture in accordance with DoD cybersecurity policies and tools
- Apply MITRE ATT&CK and/or MITRE D3FEND frameworks to assess and improve threat detection and response strategies
- Conduct advanced threat intelligence analysis, identify emerging potential threats, and provide threat intelligence recommendations
- Perform vulnerability assessments using the Assured Compliance Assessment Solution (ACAS) and other security tools
- Analyze vulnerability findings and develop remediation plans
- Remediate vulnerability findings by implementing vendor patches and configuration changes on both Linux and Windows operating systems
- Design, implement, and enforce security controls across network, hardware, and software components
A combined minimum total of ten (10) years of full-time professional experience in all of the following skillsets/disciplines:
- System hardening across multiple OS platforms
- Networking and virtualization
- Application of DoD cybersecurity policies and use of DoD security tools
- MITRE ATT&CK or MITRE D3FEND frameworks
- Threat intelligence assessments and identification of emerging potential threats
- Performing vulnerability assessments with ACAS
- Remediation of vulnerability findings to include implementation of vendor patches on both Linux and Windows Operating systems
- Design, implementation, configuration, and enforcement of security controls on network, hardware, and software components and devices
Possess one of the following DoD 8570.01-M IAT Level III baseline certifications:
- CASP+ CE
- CCNP Security
- CISA
- CISSP (Associate)
- CISSP
- GCED
- GCIH
- CCSP
Compensation at SimVentions is determined by a number of factors, including, but not limited to, the candidate’s experience, education, training, security clearance, work location, skills, knowledge, and competencies, as well as alignment with our corporate compensation plan and contract specific requirements.
Benefits:At SimVentions, we’re committed to supporting the total well-being of our employees and their families. Our benefit offerings include comprehensive health and welfare plans to serve a variety of needs.
We offer:
- Medical, dental, vision, and prescription drug coverage
- Employee Stock Ownership Plan (ESOP)
- Competitive 401(k) programs
- Retirement and Financial Counselors
- Health Savings and Health Reimbursement Accounts
- Flexible Spending Accounts
- Life insurance, short- & long-term disability
- Continuing Education Assistance
- Paid Time Off, Paid Holidays, Paid Leave (e.g., Maternity, Paternity, Jury Duty, Bereavement, Military)
- Third Party Employee Assistance Program that offers emotional and lifestyle well-being services, to include free counseling
- Supplemental Benefit Program
SimVentions is about more than just being a place to work with other growth-orientated technically exceptional experts. It’s also a fun place to work. Our family-friendly atmosphere encourages our employee-owners to imagine, create, explore, discover, and do great things together.
Support Our Warfighters
SimVentions is a proud supporter of the U.S. military, and we take pride in our ability to provide relevant, game-changing solutions to our armed men and women around the world.
Drive Customer Success
We deliver innovative products and solutions that go beyond the expected. This means you can expect to work with a team that will allow you to grow, have a voice, and make an impact.
Get Involved in Giving Back
We believe a well-rounded company starts with well-rounded employees, which is why we offer diverse service opportunities for our team throughout the year.
Build Innovative Technology
SimVentions takes pride in its innovative and cutting-edge technology, so you can be sure that whatever project you work on, you will be having a direct impact on our customer’s success.
Work with Brilliant People
We don’t just hire the smartest people; we seek experienced, creative individuals who are passionate about their work and thrive in our unique culture.
Create Meaningful Solutions
We are trusted partners with our customers and are provided challenging and meaningful requirements to help them solve.
Employees who join SimVentions will enjoy additional perks like:
- Employee Ownership: Work with the best and help build YOUR company!
- Family focus: Work for a team that recognizes the importance of family time.
- Culture: Add to our culture of technical excellence and collaboration.
- Dress code: Business casual, we like to be comfortable while we work.
- Resources: Excellent facilities, tools, and training opportunities to grow in your field.
- Open communication: Work in an environment where your voice matters.
- Corporate Fellowship: Opportunities to participate in company sports teams and employee-led interest groups for personal and professional development.
- Employee Appreciation: Multiple corporate events throughout the year, including Holiday Events, Company Picnic, Imagineering Day, and more.
- Founding Partner of the FredNats Baseball team: Equitable distribution of tickets for every home game to be enjoyed by our employee-owners and their families from our private suite.
- Food: We have a lot of food around here!
FTAC