Senior Security Assurance Specialist , AWS Compliance and Security Assurance EMEA

Company: AmazonWebServices
Apply for the Senior Security Assurance Specialist , AWS Compliance and Security Assurance EMEA
Location: London
Job Description:

Overview

In this role you will help demonstrate Amazon’s security controls to customers and regulators, ensuring alignment with global regulatory standards. You’ll bridge security, technology, and compliance across many teams, influencing audit programs and process improvements at scale. Your work will involve engaging with customers, regulators, and senior leadership to articulate control implementations and continuous improvement. This is an opportunity to shape security assurance for regulated customers and advance Amazon’s control environment in a fast-growing, inclusive culture.

Pay / Benefits

  • inclusive team culture
  • mentorship and career growth
  • flexible working hours
  • learning experiences and conferences
  • diverse employee affinity groups

Responsibilities

  • Dive deep into the control environment to understand security activities and articulate compliance implications for customers and audit functions
  • Understand regulated compliance requirements and explain how controls meet global obligations
  • Liaise with customers, regulators and auditors to describe control implementations and considerations for applying security and compliance concepts
  • Implement continuous improvements to the security organization and program management processes, sharing frameworks and best practices
  • Apply knowledge of global information security regulation to align customer needs with Amazon controls

Key requirements

  • Bachelor’s degree or equivalent in Information Security, Computer Science, Risk Management, Engineering, Math, Statistics, or a related discipline, or equivalent technology experience
  • 10+ years of IT audits and assessments in highly technical cloud-based environments
  • 10+ years in highly regulated industries with experience in European audits and frameworks (e.g., DORA)
  • Experience auditing based on ISAE 3402; familiarity with COBIT, ITIL, IT-Grundschutz
  • One or more security/audit certifications (e.g., CISA, CISM, CISSP, CCSP)
  • Technical security design and compliance advisory experience in a highly technical environment; understanding of cloud deployments (ideally AWS)
  • Strong knowledge of regulatory guidance (FCA FG16/5, DORA, C5 etc.) and ability to translate into control impact
  • Proven record of IT process improvement projects with automated metrics
  • Experience in IT program/project management, auditing, and control framework development
  • Experience building certification roadmaps from customer requirements and ensuring timely delivery
  • Understanding of evaluating IT control design/effectiveness and working with auditors/regulators
  • Experience with Governance, Risk, and Compliance tools
  • Strong bias for action and ability to prioritize and meet deadlines
  • Excellent verbal and written communication across internal and external stakeholders
  • strong communication skills
  • stakeholder management
  • ownership culture
  • cloud security architecture
  • IT auditing and control frameworks
  • GRC tools and technologies

…

Posted: October 1st, 2026