Senior Security Assurance Specialist, AWS Compliance and Security Assurance EMEA


Location
London
Hours
Full Time
Salary
Competitive, commensurate with experience
About the Role
Do you have a passion for applying the latest technologies and automation in traditionally manual processes? Are you experienced in finding innovative solutions to scale security controls across diverse teams and technologies? At Amazon, security is our highest priority. Join a creative team within Security Assurance dedicated to demonstrating the security controls of the services we offer. At Amazon's scale, we invent new ways to provide the highest level of assurance to our most regulatory conscious customers.
You will work with customers and regulators to demonstrate Amazon's security controls applicable to local requirements and help customers understand how our infrastructure is designed, operated, maintained, and protected in accordance with global regulated industry standards. You will inspire, lead, and transform audit and compliance programs through innovative process engineering across multiple organizations and teams, engaging both technical and non-technical stakeholders.
Your combination of technical and audit expertise will help bridge security, technology, and compliance, facilitating the scale of the program. You will work directly with senior leadership within Amazon to improve our ability to demonstrate assurance for regulated customers. We expect you to take ownership of your program vision and execution, balancing your unique perspective with those of diverse team members and stakeholders.
Key responsibilities include:
- Developing a broad domain and technical understanding of Amazon's security control environment to articulate compliance implications to customers and audit functions.
- Understanding regulated industry compliance requirements and communicating how Amazon meets global regulatory obligations.
- Liaising with customers, regulators, and auditors to articulate control implementation and apply security and compliance concepts.
- Implementing continuous improvements to security organization and program management processes.
- Applying knowledge of global information security regulations to drive alignment to Amazon controls.
About the Team
AWS Security values diverse experiences and encourages candidates from all backgrounds to apply. We foster a culture of ownership, diversity, inclusion, and innovation. Our team supports career growth through mentorship, knowledge sharing, and assigning projects that develop well-rounded professionals.
Work/Life Balance
We value work-life balance and offer flexibility in working hours to help you find the right flow between your personal and professional life.
Mentorship & Career Growth
Our team is dedicated to supporting new members with a broad mix of experience levels and tenures, fostering an environment of mentorship and career development.
Experience
- 10+ years performing or participating in IT audits and assessments of highly technical cloud-based environments.
- 10+ years working in highly regulated industries such as financial services, healthcare, energy, or telecommunications, including direct experience with European audits and frameworks like DORA.
- Experience conducting IT audits based on ISAE 3402, and familiarity with COBIT, ITIL, and IT-Grundschutz.
- Experience in technical security design, compliance consulting, or advisory roles supporting technical environments.
- Experience with IT program or project management, IT auditing, and control framework development and implementation.
- Experience building certification roadmaps, compliance documentation, and delivering assessments on schedule.
- Experience evaluating the design and effectiveness of IT controls and working with auditors and regulators.
- Experience with Governance, Risk, and Compliance tools and technology.
About You
- Strong verbal and written communication skills with the ability to work effectively across internal and external organizations.
- Passionate about cloud security and solving real business problems.
- Ability to prioritize, multi-task, and meet deadlines with a strong bias for action.
- Comfortable working across many stakeholders including internal and external customers.
Qualifications
- Bachelor's degree or equivalent in Information Security, Computer Science, Risk Management, Engineering, Math, Statistics, or related discipline, or equivalent technology experience.
- Business English skills, both verbal and written.
- One or more industry-recognized security, cloud, or audit professional certifications such as CISA, CISM, CISSP, CCSP, or Amazon Cloud Security Practitioner.
- Deep understanding of regulatory guidance including FCA FG16/5, DORA requirements for Critical Service Providers, C5 requirements of the Federal Office of Information Security of Germany, and other applicable standards.
- Record of delivering IT process improvement projects and generating automated metrics to measure effectiveness and consistency.

