3P Security Specialist III, Third Party Security, Third Party Security

1 month ago


bangalore, India ADCI - Karnataka Full time
This position is available in Bangalore, India
The Third Party Security (TPS) team looking for a highly motivated Security Specialist III. TPS is responsible for assessing the security of third party who get access to Amazon’s data, to determine if the third party meets Amazon’s security bar. If you enjoy working at scale in a rapidly changing environment and influencing the protection of our customers within a large global organization, this position will provide you with a challenging opportunity.
Key job responsibilities
- Acting as subject matter expert on risk-based security reviews and assessments
- Conducting peer reviews and sample testing to maintain a high-bar of quality for risk assessments
- Ensuring the risk assessment framework is up to date on the latest industry controls and applicable threats
- Coordinating contractors, employees, and vendors in conducting assessments, testing controls, and implementing remediation
- Collecting/reviewing data from multiple sources to assess a third party's security
- Building, evolving, and improving sustainable processes and measurement systems to ensure that security policy requirements are maintained
- Preparing reports for senior management on the state of vendor compliance
- Reviewing exceptions to Amazon policy and determining risk and impact
- Serving as an advisor on security & compliance issues for operations staff
- Maintaining a broad understanding of the global regulatory landscape impacting Amazon
- Advising project and legal teams on ensuring the required security terms are in contracts and participate in contract negotiations with sensitive external partners at a global level
- Determining strategy for highly sensitive and/or high profile assessments
- Maintaining metrics on global vendor security and compliance
- Ensuring the team delivers on security goals, and make recommendations for incremental process improvement
- Occasional travel may be required
About the team
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.
Why Amazon Security
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.
Inclusive Team Culture
In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.
Mentorship and Career growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.
We are open to hiring candidates to work out of one of the following locations:
Bangalore, KA, IND

BASIC QUALIFICATIONS

- 5-7+ years of technical risk assessment experience and bachelor’s degree in information security, computer science, risk Management, or additional equivalent technology experience.
- Experience running complex assessments across multiple security domains, creating findings, and reviewing remediation items.
- Excellent leadership, verbal and written communication skills with the ability to work well on a largely geographically distributed.
- Ability to effectively coordinate between and communicate with technical teams and business (non-tech) stakeholders.
- Strong customer focus, ownership, sense of urgency and drive, demonstrate innovative security approaches in non-traditional IT environments.

PREFERRED QUALIFICATIONS

- CISSP, CISA, or related Information Security certification.
- Consistent demonstration of utilizing automation to solve recurring problems at scale.
  • Cyber Manager

    4 weeks ago


    bangalore, India Maersk Full time

    Cyber Manager – Third Party Risk Company Name: A.P. Moller – Maersk Location: Bangalore, India We offer Joining Maersk T&L will embark you on a great journey with career development in a global organisation. As a Cyber Security Manager, you will gain broad business knowledge of the company’s activities globally, as well as understand how...


  • bangalore, India RSA Security Full time

    RSA - Application Security Engineer Location: Remote India RSA offers mission-driven security solutions that provide organizations with a unified approach to managing digital risk that hinges on integrated visibility, automated insights and coordinated actions. RSA solutions are designed to effectively detect and respond to advanced attacks;...


  • bangalore, India RSA Security Full time

    RSA - Application Security Engineer Location: Remote India RSA offers mission-driven security solutions that provide organizations with a unified approach to managing digital risk that hinges on integrated visibility, automated insights and coordinated actions. RSA solutions are designed to effectively detect and respond to advanced attacks;...


  • bangalore, India RSA Security Full time

    RSA - Application Security Engineer Location: Remote India RSA offers mission-driven security solutions that provide organizations with a unified approach to managing digital risk that hinges on integrated visibility, automated insights and coordinated actions. RSA solutions are designed to effectively detect and respond to advanced attacks;...

  • Spec, IT

    5 days ago


    bangalore, India Baxter Full time

    This is where you save and sustain lives At Baxter, we are deeply connected by our mission. No matter your role at Baxter, your work makes a positive impact on people around the world. You'll feel a sense of purpose throughout the organization, as we know our work improves outcomes for millions of patients. Baxter's products and therapies are found...


  • bangalore, India Mindtickle Full time

    Who we are Mindtickle is the market-leading revenue productivity platform that combines on-the-job learning and deal execution to get more revenue per rep. Mindtickle is recognized as a market leader by top industry analysts and is ranked by G2 as the #1 sales onboarding and training product. This year, Mindtickle was recognized for its outstanding...


  • bangalore, India Mindtickle Full time

    Who we are Mindtickle is the market-leading revenue productivity platform that combines on-the-job learning and deal execution to get more revenue per rep. Mindtickle is recognized as a market leader by top industry analysts and is ranked by G2 as the #1 sales onboarding and training product. This year, Mindtickle was recognized for its outstanding...


  • bangalore, India ResMed Full time

    The Information Technology (IT) team plays a key role in providing business enablement throughout ResMed. We are focused on application, infrastructure, and user productivity solutions, with innovation, efficiency and security. Our goal is providing customer oriented agile delivery, effective business partnership and state-of-the-art technology solutions. ...


  • bangalore, India Thomson Reuters Full time

    About the Role In this opportunity as Senior Analyst, Third-Party Risk Management, you will: Assess the inherent and residual risk associated with third parties to TR including vendors, suppliers, partners and more, using standardized methodology, process, and toolset. Screening third parties for potential red flags using both open and...


  • bangalore, India Optiv Security Inc. Full time

    We're looking for knowledge-seeking candidates who will be eager to dive into new things in a fast-paced and ever-changing environment. This role is fitting for those looking to trailblaze their career in network security.Operating as the first impression for Optiv clients in many cases, engineers deliver both third-party Authorized Support and Technology...


  • bangalore, India Smarsh Full time

    Smarsh is the leader in communications compliance, archiving, and analytics. We provide compliance across the broadest set of communications channels with insights on what’s being captured. Smarsh customers manage over 500 million daily conversations across 80 channels and growing. Customers include the top 10 U.S., top 8 European, top 5 Canadian, and top...


  • bangalore, India ADCI - BLR 14 SEZ Full time

    Are you ready to apply your risk and compliance expertise to Amazon's unique environment? We are looking for a candidate with demonstrated Third Party Risk Management expertise who will play a key role in building out new exciting programs across Amazon’s different organizations. The Sr. Risk Manager will accelerate a broad TPRM framework, drive risk...


  • bangalore, India Western Digital Full time

    Company Description At Western Digital, our vision is to power global innovation and push the boundaries of technology to make what you thought was once impossible, possible. At our core, Western Digital is a company of problem solvers. People achieve extraordinary things given the right technology. For decades, we’ve been doing just that. Our...


  • bangalore, India Smarsh Full time

    Smarsh is the leader in communications compliance, archiving, and analytics. We provide compliance across the broadest set of communications channels with insights on what’s being captured. Smarsh customers manage over 500 million daily conversations across 80 channels and growing. Customers include the top 10 U.S., top 8 European, top 5 Canadian, and top...


  • bangalore, India Siemens Healthcare Private Limited Full time

    Profile: SoftwareCompliance Engineer – Third Party Software Overview: A SoftwareCompliance Engineer focusing on third-party software ensures that anorganization complies with software licensing requirements, manages third-partysoftware risks, and maintains software license inventory. This role requires amix of technical knowledge,...


  • Bangalore Urban, India Smarsh Full time

    Smarsh is the leader in communications compliance, archiving, and analytics. We provide compliance across the broadest set of communications channels with insights on what’s being captured. Smarsh customers manage over 500 million daily conversations across 80 channels and growing. Customers include the top 10 U.S., top 8 European, top 5 Canadian, and top...


  • Bangalore Urban, India Smarsh Full time

    Smarsh is the leader in communications compliance, archiving, and analytics. We provide compliance across the broadest set of communications channels with insights on what’s being captured. Smarsh customers manage over 500 million daily conversations across 80 channels and growing. Customers include the top 10 U.S., top 8 European, top 5 Canadian, and top...


  • bangalore, India Deloitte Full time

    What impact will you make?Every day, your work will make an impact that matters, while you thrive in a dynamic culture of inclusion, collaboration and high performance. As the undisputed leader in professional services, Deloitte is where you’ll find unrivaled opportunities to succeed and realize your full potentialAbout AssuranceProvides an independent...


  • bangalore, India WELLS FARGO BANK Full time

    About this role: Wells Fargo is seeking an Analyst in the area of Information and Cyber Security for the Technology Third Governance function. The role activities includes Identifying, Analyzing and responding to Incidents related to third party service providersIn this role, you will: Provide information security consultation to improve awareness and...


  • bangalore, India HSBC Full time

    Some careers have more impact than others. If you’re looking for a career where you can make a real impression, join HSBC and discover how valued you’ll be. HSBC is one of the largest banking and financial services organisations in the world, with operations in 62 countries and territories. We aim to be where the growth is, enabling businesses...