At a Glance
- Tasks: Lead security compliance efforts and manage regulatory risks for Amazon's payment systems.
- Company: Join Amazon, a global leader in e-commerce and technology, committed to customer trust and innovation.
- Benefits: Enjoy flexible work options, competitive pay, and a diverse, inclusive workplace culture.
- Why this job: Make a real impact on customer trust while working with cutting-edge technology and industry experts.
- Qualifications: Bachelor's degree in a related field; strong security knowledge and communication skills required.
- Other info: Be part of a team that values accountability, innovation, and continuous improvement.
The predicted salary is between 43200 - 72000 £ per year.
DESCRIPTION
In compliance with regulatory requirements, and in alignment with business teams, Payments Security Compliance (PSC) team supports Amazon payments entities in select regions. Security Compliance Specialists have varying scope of responsibility in each region, depending on the nature of regulatory licenses to be maintained, number of regulators, the number of systems and teams in scope (blast radius of regulatory compliance), and the degree of stringency the local regime places on Security and Data protection
We are seeking an experienced, self-motivated Senior Security Compliance Specialist with strong Security and Compliance background. This candidate will be an innovative and forward thinking individual who possess in-depth knowledge and will be identifying Information Security compliance risks, drive Security Governance, Security Assurance and Risk Management efforts, manage regional regulatory compliance and contribute to emerging regulations and technology standards globally, partnering with Security Experts of Global Amazon Information Security teams. Your work directly impacts Customer\’s Trust in Amazon by providing secure, robust, and reliable payment services.
Key job responsibilities
– Positively impact how Amazon builds, consumes and operate software securely and in compliance with standards and regulations
– Contribute on emerging regulations and technology standards joining forces with AWS, Public Policy team and others, making Amazon Consumer org\’s voice heard in the relevant forums
– Communicate clearly and effectively to executive management on the plans, status and critical issues.
– Escalate urgent issues appropriately and driving them to closure in a timely manner
– Oversight on remediation programs impacting regulated region (s) being supported
– Be recognized as thought leader in Regulatory Security Compliance and Security best practices/standards
– Represents Security posture of regulated entities, in external regulatory audits
– Review Implementation of Security best practices and standards, drive continuous improvements
– Influence Security Control Assessment Automation efforts, for security and compliance at scale.
– Skilled in security risk analysis and making complex business/risk trade-off recommendations and decisions
– Maintaining C-level relationships with peers, stakeholders, boardrooms, and/or customers, often becoming the \”trusted advisor\”. Also, create and maintain a trusted relationship with regulators and industry forums
About the team
The objective of Payments Security Compliance (PSC) is to oversee & manage Information Security Governance, Risk and Compliance (IS-GRC) for the Payments entities globally as part of Amazon\’s WW SRC team. The tenets for Payments Security Compliance team (Unless you know better ones) are:
We provide timely and accurate security, compliance, and risk data to the business to make decisions. We hold ourselves accountable for accuracy of the data and businesses accountable for timely customer trustworthy decisions.
We escalate appropriately to ensure that security and compliance issues are resolved promptly and with high judgment. If in doubt, we escalate and are clinical, precise, and complete in our escalation.
We are business-risk driven in security and compliance decisions. We exercise judgement and partner with businesses in managing risk.
We make it easy to be compliant. We eliminate, automate, provide self-service for customer compliance activities and in that order. Only where absolutely necessary we have manual activities.
We interpret unclear external regulations, industry standards or Amazon policies in favor of our businesses protecting customer trust.
We always favor automated policy enforcement over manual/best intentions policy enforcement.
We are slow and deliberate when adding new policies, quick to fix policy issues and quick to eliminate irrelevant policies. When we add or update policies we ensure they are enforceable.
BASIC QUALIFICATIONS
Bachelor\’s Degree in computer science, engineering or related discipline or equivalent experience
Familiarity with common attack patterns, exploitation techniques and remediation techniques will be plus
Experience with service-oriented architectures, private and public clouds and web services security.
Excellent communication, work prioritization and analytical skills.
Result oriented, high energy, self-motivated
Strong skills in security principles such as least privilege access, defense in depth, preventative vs detective controls,
PREFERRED QUALIFICATIONS
Have a record of delivery of large scale security programs and/or technology solutions for major tech companies.
AWS knowledge preferred.
Work ethic based on a strong desire to exceed expectations. Experience working successfully in a very fast-paced, results-oriented environment.
Knowledge of technology and payment industry trends
Senior-level written and verbal communication skills
Ability to communicate effectively with both technical and non-technical stakeholders across multiple business units
Amazon is an equal opportunities employer. We believe passionately that employing a diverse workforce is central to our success. We make recruiting decisions based on your experience and skills. We value your passion to discover, invent, simplify and build. Protecting your privacy and the security of your data is a longstanding top priority for Amazon. Please consult our Privacy Notice ( ) to know more about how we collect, use and transfer the personal data of our candidates.
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you\’re applying in isn\’t listed, please contact your Recruiting Partner.
#J-18808-Ljbffr
Senior Security & Compliance Specialist, Payments Security Compliance employer: Redefined Ltd
Contact Detail:
Redefined Ltd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Security & Compliance Specialist, Payments Security Compliance
✨Tip Number 1
Familiarise yourself with the latest regulations and compliance standards in the payments industry. This knowledge will not only help you understand the role better but also allow you to engage in meaningful conversations during interviews.
✨Tip Number 2
Network with professionals in the security and compliance field, especially those who have experience with Amazon or similar companies. Attend industry events or webinars to build connections that could provide insights or referrals.
✨Tip Number 3
Prepare to discuss specific examples of how you've successfully managed security compliance risks in previous roles. Highlight your ability to influence stakeholders and drive security governance initiatives.
✨Tip Number 4
Showcase your understanding of AWS and cloud security principles, as this is a preferred qualification. Consider obtaining relevant certifications to demonstrate your commitment and expertise in this area.
We think you need these skills to ace Senior Security & Compliance Specialist, Payments Security Compliance
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in security compliance and risk management. Use keywords from the job description to demonstrate that you meet the specific requirements for the Senior Security & Compliance Specialist role.
Craft a Compelling Cover Letter: In your cover letter, express your passion for security compliance and how your background aligns with Amazon's mission. Mention specific achievements that showcase your ability to manage regulatory compliance and drive security governance.
Showcase Communication Skills: Since the role requires clear communication with executive management and stakeholders, provide examples in your application of how you've effectively communicated complex security issues in previous roles.
Highlight Relevant Qualifications: Ensure you mention your educational background and any certifications related to security and compliance. If you have experience with AWS or large-scale security programs, make that clear as it aligns with the preferred qualifications.
How to prepare for a job interview at Redefined Ltd
✨Understand Regulatory Compliance
Familiarise yourself with the specific regulatory requirements relevant to the Payments Security Compliance role. Be prepared to discuss how you would approach compliance challenges and demonstrate your knowledge of industry standards.
✨Showcase Your Communication Skills
Since the role involves communicating with executive management and regulators, practice articulating complex security concepts in a clear and concise manner. Prepare examples of how you've effectively communicated critical issues in past roles.
✨Demonstrate Risk Management Expertise
Be ready to discuss your experience with security risk analysis and how you've made business/risk trade-off decisions. Highlight any large-scale security programmes you've delivered and the impact they had on compliance.
✨Prepare for Scenario-Based Questions
Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think about past experiences where you identified compliance risks or managed remediation programmes, and be ready to share those stories.