Talent.com
Amazon Data Services, Inc.
Security Engineer II, Infrastructure Security ComplianceAmazon Data Services, Inc. • Minneapolis, Minnesota, USA
Security Engineer II, Infrastructure Security Compliance

Security Engineer II, Infrastructure Security Compliance

Amazon Data Services, Inc. • Minneapolis, Minnesota, USA
30+ days ago
Job type
  • Full-time
Job description
AWS Infrastructure Services owns the design, planning, delivery, and operation of all AWS global infrastructure. In other words, we’re the people who keep the cloud running. We support all AWS data centers and all of the servers, storage, networking, power, and cooling equipment that ensure our customers have continual access to the innovation they rely on. We work on the most challenging problems and we’re looking for talented people who want to help.

You’ll join a diverse team of software, hardware, and network engineers, supply chain specialists, security experts, operations managers, and other vital roles. You’ll collaborate with people across AWS to help us deliver the highest standards for safety and security while providing seemingly infinite capacity at the lowest possible cost for our customers. And you’ll experience an inclusive culture that welcomes bold ideas and empowers you to own them to completion.

The Infrastructure Security Team is responsible for the security and risk management of the AWS Infrastructure. We build systems that detect, assess, and mitigate risk across the global infrastructure and are accountable for keeping the Amazon Infrastructure secure and compliant with customer requirements. The Infrastructure Compliance Team is looking for a Security Engineer to join our dynamic, outcome-driven team. The successful candidate is an owner who can deliver through high performing, diverse teams and who understands all parts of security, software development, deployment, and operations. You must possess strong technical networking, supply chain security and/or data center compliance background, strong verbal and written communication skills, be self-driven, demonstrate high impact and influence across teams, and deliver high quality results in a fast-paced environment. We’re looking for leaders who can lead through challenges and seek to shed light on ambiguity. If that is you, Amazon is the place to be as we solve hard problems, make history, and have fun.

Key job responsibilities
Security Outcomes & Risk Management:
• Develop, implement, and analyze security outcomes for AWS Infrastructure (networking, supply chain security, data center compliance) aligned with various compliance frameworks (e.g. NIST, FedRAMP, ISO 27001, and AWS standards)
• Identify and drive mitigation of security risks, including the development of monitoring and reporting capabilities for continued compliance
• Assess the impact to the business for difficult and ambiguous security risks with pragmatic, scalable solutions

Automation & Tool Development:
• Design, develop, and deploy automation tools and scripts to streamline compliance validation, audit evidence collection, and security control monitoring at scale
• Build pragmatic automation solutions using Python, Bash, or other scripting languages to improve team efficiency and reduce manual toil
• Develop tooling to implement automated remediation mechanisms for security and compliance gaps
• Build dashboards and reporting tools to provide real-time visibility into security posture across AWS infrastructure

Compliance & Audit Leadership:
• Serve as subject matter expert on regulatory and compliance implications for third-party audits, customer audits, and regulatory examinations
• Lead compliance discussions with internal stakeholders, customers, and external auditors
• Produce and catalog authoritative compliance content applicable to multiple stakeholders, improving customer response times and trust
• Validate security compliance requirements on behalf of AIS builders, protecting their time and keeping them building

About the team
ABOUT AWS:

Diverse Experiences
Amazon values diverse experiences. Even if you do not meet all of the preferred qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.

Why AWS
Amazon Web Services (AWS) is the world’s most comprehensive and broadly adopted cloud platform. We pioneered cloud computing and never stopped innovating — that’s why customers from the most successful startups to Global 500 companies trust our robust suite of products and services to power their businesses.

Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve in the cloud.

Inclusive Team Culture
Here at AWS, it’s in our nature to learn and be curious. Our employee-led affinity groups foster a culture of inclusion that empower us to be proud of our differences. Ongoing events and learning experiences, including our Conversations on Race and Ethnicity (CORE) and AmazeCon (gender diversity) conferences, inspire us to never stop embracing our uniqueness.

Mentorship and Career Growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, mentorship and other career-advancing resources here to help you develop into a better-rounded professional.

BASIC QUALIFICATIONS

- 4+ years of any combination of the following: threat modeling experience, secure coding, identity management and authentication, software development, cryptography, system administration and network security experience
- Bachelor's degree in computer science or equivalent
- Knowledge of system security vulnerabilities and remediation techniques, including penetration testing and the development of exploits or equivalent
- Strong understanding of internet and networking technologies including TCP/IP, routing protocols, network architecture and security
- Experience with security frameworks and compliance standards (NIST, ISO 27001, SOC 2, FedRAMP, or similar)
- Excellent written and verbal communication skills with ability to articulate complex security concepts to technical and non-technical audiences

PREFERRED QUALIFICATIONS

- CCSP (Certified Cloud Security Professional) or CEH (Certified Ethical Hacker) or CFR (CyberSec First Responder) or Cloud+ or CySA+ (CompTIA Cybersecurity Analyst) or GCED (GIAC Certified Enterprise Defender) or GICSP (Global Industrial Cyber Security Professional) or PenTest+
- Experience in identifying security issues and risks, and developing mitigation plans
- Knowledge of systems engineering fundamentals (networking, storage, operating systems)
- Knowledge of one or more scripting languages (e.g., Python, Ruby, Perl)

Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.

Our inclusive culture empowers Amazonians to deliver the best results for our customers.
Create a job alert for this search

Security Engineer II, Infrastructure Security Compliance • Minneapolis, Minnesota, USA

Similar jobs

Senior Engineer – Security Visibility Infrastructure

TargetBrooklyn Park, MN, United States
Full-time

Pay is based on several factors which vary based on position, including labor markets and, in some instances, education, work experience and certifications.In addition to your pay, Target cares abo... Show more

 • Promoted

Sr. Director, Information Systems and Security (ISS)

HistoSonics, Inc.Minneapolis, MN, United States
Full-time

HistoSonics is a commercial-stage medtech company advancing the Edison® System, a novel non‑invasive sonic beam therapy based on histotripsy.Since receiving FDA De Novo grant for the non‑invasive d... Show more

 • Promoted

System Security Administrator

Village Bank & TrustSt Francis, MN, United States
Full-time

Village Bank is a well-respected local community bank with four locations.Our passion for community banking stems from our desire to help people, both our valued employees and our growing community... Show more

 • Promoted

Field Service Technician II

Canon U.S.A., Inc.Eagan, MN, US
Full-time

Spotting a solution and fixing a problem is a tremendous technical skillset.It requires diligence, determination, and a knack for knowledge.If so, Canon USA, an innovator of technology, solutions, ... Show more

 • Promoted

Information System Security Manager

Polar Semiconductor, Inc.BLOOMINGTON, MN, United States
Full-time

We are seeking a highly skilled and self‑directed.Information System Security Manager (ISSM).This individual will function as the ISSM/ISSO, collaborating with respective teams on the full lifecycl... Show more

 • Promoted

End-to-End Physical Security Architect

New Era TechnologyMinneapolis, MN, United States
Full-time

New Era Technology is seeking a Physical Security Solutions Architect in Minneapolis, MN.This role involves designing and delivering comprehensive physical security solutions, primarily involving v... Show more

 • Promoted

Information Security Manager — DoD‑Aligned Cyber Defense Lead

Polar Semiconductor, Inc.BLOOMINGTON, MN, United States
Full-time

A leading semiconductor company in Minnesota is looking for an Information System Security Manager (ISSM) to oversee cybersecurity for a workforce of approximately 600 employees.This role involves ... Show more

 • Promoted

Azure Hybrid Cloud Architect - Enterprise & Security

HealthPartnersBLOOMINGTON, MN, United States
Full-time

A healthcare organization based in Minnesota is seeking an experienced Enterprise Cloud Architect to lead cloud and infrastructure architecture strategies.This role demands a candidate with deep Az... Show more

 • Promoted

Information System Security Manager

Polar Semiconductor IncBLOOMINGTON, MN, United States
Permanent

Position Summary**We are seeking a highly skilled and self-directed **Information System Security Manager (ISSM)** to serve as the cybersecurity authority for an organization of approximately 600 e... Show more

 • Promoted

Cloud Security Specialist

ManpowerGroup Global, Inc.Minneapolis, MN, United States
Full-time

Minneapolis or New York City (Hybrid 3 days a week onsite).This ideal candidate will directly contribute to our mission by enabling secure innovation and growth in the cloud, safeguarding our data ... Show more

 • Promoted

Security Specialist: Risk, IAM & Incident Response

Quantum Strides LLCMinneapolis, MN, United States
Full-time

A cybersecurity firm in Minneapolis is seeking a Security Specialist to protect applications and data.The ideal candidate has a relevant degree and extensive experience in risk management and netwo... Show more

 • Promoted

System Security Administrator

The Village BankSt Francis, MN, United States
Full-time

Village Bank is a well-respected local community bank with four locations.Our passion for community banking stems from our desire to help people, both our valued employees and our growing community... Show more

 • Promoted

Cloud & Security Operations Engineer

Goodin CompanyMinneapolis, MN, United States
Full-time

The Cloud & Security Operations Engineer plays a critical role in protecting and optimizing the company's hybrid infrastructure across on-premise and cloud environments.This role combines hands-on ... Show more

 • Promoted

Security Operations Specialist II

Associate StaffingMinneapolis, MN, United States
Full-time

Our client is a financial services corporation offering a various suite of products.High school diploma or equivalent.Strong attention to detail and accuracy.Excellent verbal, written, and interper... Show more

 • Promoted

Security Specialist

Quantum Strides LLCMinneapolis, MN, United States
Full-time

Location: Minneapolis, Minnesota, 55415 (Onsite).The Security Specialist is responsible for the protection of applications, computing systems, data, information, and network security.This role requ... Show more

 • Promoted

Information System Security Manager

Polar SemiconductorBLOOMINGTON, MN, United States
Permanent

We are seeking a highly skilled and self‑directed Information System Security Manager (ISSM) to serve as the cybersecurity authority for an organization of approximately 600 employees.This individu... Show more

 • Promoted

Securities Trader II

Old National BankMinneapolis, Minnesota, United States
Full-time

US-IL-Joliet | US-IN-Indianapolis | US-IN-Evansville | US-TN-Nashville | US-MN-Minneapolis.Old National Bank has been serving clients and communities since 1834.With over $70 billion in total asset... Show more

 • Promoted

System Engineer - Security

Bowman and BrookeMinneapolis, MN, US
Full-time
Quick Apply

Last year the firm surpassed its 1,000th trial milestone, affirming our rank as one of the foremost product liability trial firms in the country.Systems Engineer - Security is responsible for ... Show more

Software Engineer

The Judge GroupMinneapolis, MN, United States
Full-time

Mainframe Software Engineer (COBOL / VSAM) - Contract.This role focuses on the maintenance, enhancement, and stability of existing mainframe systems rather than greenfield development.Success in th... Show more

 • Promoted

Senior Application Security Engineer

Motion RecruitmentMinneapolis, MN, United States
Full-time

Get AI-powered advice on this job and more exclusive features.This range is provided by Motion Recruitment.Your actual pay will be based on your skills and experience — talk with your recruiter to ... Show more