Logo of Huzzle

Manager, IT Audit Services

image

Amazon

1mo ago

  • Job
    Full-time
    Expert Level
  • IT & Cybersecurity
  • Madrid
    Remote

AI generated summary

  • You need a relevant degree, 5+ years in IT audits, experience in regulated industries, knowledge of ISAE 3402, certifications like CISA/CISM, and business-level English fluency.
  • You will engage with customers and regulators on security controls, assess compliance, enhance security programs, and serve as a trusted advisor on global regulations and best practices.

Requirements

  • Bachelors, Masters or Diploma in Computer Science, Information Systems Management, Mathematics, Accounting/Auditing, Cybersecurity or other related fields.
  • 5+ years experience in performing and/or participating in IT audits and assessments of highly technical cloud-based environments.
  • 5+ years working in highly regulated industries (e.g. financial services, healthcare, and energy, telecommunications), including direct work with European audits and frameworks such as DORA.
  • Auditors who have experience conducting IT audits based on ISAE 3402. Experience auditing COBIT, ITIL, and IT-Grundschutz as well.
  • 1 or more industry-recognized security, cloud, or audit professional certifications (e.g., CISA, CISM, CISSP, CCSP, Amazon Cloud Security Practitioner
  • Business-level fluency in English is required for this role. Successful applicants must have the legal right to work in Spain.

Responsibilities

  • As part of the team, you will work with customers and regulators to demonstrate Amazon security controls applicable to local requirements. You will join our team in helping customers understand how our infrastructure is designed, operated, maintained, and protected in accordance with global regulated industry standards. In this role, you will be responsible for the following activities:
  • Dive deep into the Amazon control environment to develop broad domain and technical understanding of our security activities and control implementations to articulate compliance implications to both customers and internal/external audit functions.
  • Develop understanding of regulated industry compliance requirements and communicate how we control activities to meet global regulatory obligations.
  • Liaise with customers, regulators and auditors, articulate control implementation, and describe considerations for applying security and compliance concepts to monitor, evaluate, and continuously improve the organization by being a trusted advisor, facilitator and creative problem solver.
  • Implement continuous improvements to the security organization and the program management process. Share program/project process frameworks, tools, and best practices that can be adopted throughout the organization.
  • Apply a working knowledge of global information security regulation and policy to articulate customer and control impact and drive alignment to Amazon controls.

FAQs

What educational background is required for this position?

A Bachelor's, Master's, or Diploma in Computer Science, Information Systems Management, Mathematics, Accounting/Auditing, Cybersecurity, or other related fields is required.

How much experience is needed for this role?

A minimum of 5 years of experience in performing and/or participating in IT audits and assessments of highly technical cloud-based environments is required.

Is experience in regulated industries necessary?

Yes, at least 5 years of experience working in highly regulated industries, such as financial services, healthcare, energy, or telecommunications, is required.

What certifications are beneficial for this role?

One or more industry-recognized security, cloud, or audit professional certifications such as CISA, CISM, CISSP, CCSP, or Amazon Cloud Security Practitioner are preferred.

Do I need to be fluent in English for this job?

Yes, business-level fluency in English is required for this role.

Is there support for relocation to Spain for this job?

Yes, Amazon will provide relocation support for successful applicants relocating within the European Union.

What is the team culture like at Amazon?

The team culture encourages ownership, diversity, inclusion, and innovation, and embraces different perspectives.

Is mentorship and career growth a focus within the team?

Yes, the team is dedicated to supporting new members and promotes knowledge sharing and mentorship for career growth.

Are there opportunities for continuous improvement in this role?

Yes, the role involves implementing continuous improvements to the security organization and program management processes.

Will I work with external customers and regulators?

Yes, in this role, you will liaise with customers, regulators, and auditors to articulate control implementation and compliance requirements.

Retail & Consumer Goods
Industry
10,001+
Employees
1994
Founded Year

Mission & Purpose

Amazon is guided by four principles: customer obsession rather than competitor focus, passion for invention, commitment to operational excellence, and long-term thinking. We are driven by the excitement of building technologies, inventing products, and providing services that change lives. We embrace new ways of doing things, make decisions quickly, and are not afraid to fail. We have the scope and capabilities of a large company, and the spirit and heart of a small one. Together, Amazonians research and develop new technologies from Amazon Web Services to Alexa on behalf of our customers: shoppers, sellers, content creators, and developers around the world. Our mission is to be Earth's most customer-centric company. Our actions, goals, projects, programs, and inventions begin and end with the customer top of mind. You'll also hear us say that at Amazon, it's always "Day 1."​ What do we mean? That our approach remains the same as it was on Amazon's very first day - to make smart, fast decisions, stay nimble, invent, and focus on delighting our customers.