3P Security Specialist III, Third Party Security, Third Party Security
1 month ago
The Third Party Security (TPS) team looking for a highly motivated Security Specialist III. TPS is responsible for assessing the security of third party who get access to Amazon’s data, to determine if the third party meets Amazon’s security bar. If you enjoy working at scale in a rapidly changing environment and influencing the protection of our customers within a large global organization, this position will provide you with a challenging opportunity.
Key job responsibilities
- Acting as subject matter expert on risk-based security reviews and assessments
- Conducting peer reviews and sample testing to maintain a high-bar of quality for risk assessments
- Ensuring the risk assessment framework is up to date on the latest industry controls and applicable threats
- Coordinating contractors, employees, and vendors in conducting assessments, testing controls, and implementing remediation
- Collecting/reviewing data from multiple sources to assess a third party's security
- Building, evolving, and improving sustainable processes and measurement systems to ensure that security policy requirements are maintained
- Preparing reports for senior management on the state of vendor compliance
- Reviewing exceptions to Amazon policy and determining risk and impact
- Serving as an advisor on security & compliance issues for operations staff
- Maintaining a broad understanding of the global regulatory landscape impacting Amazon
- Advising project and legal teams on ensuring the required security terms are in contracts and participate in contract negotiations with sensitive external partners at a global level
- Determining strategy for highly sensitive and/or high profile assessments
- Maintaining metrics on global vendor security and compliance
- Ensuring the team delivers on security goals, and make recommendations for incremental process improvement
- Occasional travel may be required
About the team
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.
Why Amazon Security
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.
Inclusive Team Culture
In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.
Mentorship and Career growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.
We are open to hiring candidates to work out of one of the following locations:
Bangalore, KA, IND
BASIC QUALIFICATIONS
- 5-7+ years of technical risk assessment experience and bachelor’s degree in information security, computer science, risk Management, or additional equivalent technology experience.
- Experience running complex assessments across multiple security domains, creating findings, and reviewing remediation items.
- Excellent leadership, verbal and written communication skills with the ability to work well on a largely geographically distributed.
- Ability to effectively coordinate between and communicate with technical teams and business (non-tech) stakeholders.
- Strong customer focus, ownership, sense of urgency and drive, demonstrate innovative security approaches in non-traditional IT environments.
PREFERRED QUALIFICATIONS
- CISSP, CISA, or related Information Security certification.
- Consistent demonstration of utilizing automation to solve recurring problems at scale.
-
Cyber Manager
4 weeks ago
bangalore, India Maersk Full timeCyber Manager – Third Party Risk Company Name: A.P. Moller – Maersk Location: Bangalore, India We offer Joining Maersk T&L will embark you on a great journey with career development in a global organisation. As a Cyber Security Manager, you will gain broad business knowledge of the company’s activities globally, as well as understand how...
-
RSA - Application Security Engineer
4 weeks ago
bangalore, India RSA Security Full timeRSA - Application Security Engineer Location: Remote India RSA offers mission-driven security solutions that provide organizations with a unified approach to managing digital risk that hinges on integrated visibility, automated insights and coordinated actions. RSA solutions are designed to effectively detect and respond to advanced attacks;...
-
RSA - Application Security Engineer
1 month ago
bangalore, India RSA Security Full timeRSA - Application Security Engineer Location: Remote India RSA offers mission-driven security solutions that provide organizations with a unified approach to managing digital risk that hinges on integrated visibility, automated insights and coordinated actions. RSA solutions are designed to effectively detect and respond to advanced attacks;...
-
RSA - Application Security Engineer
4 days ago
bangalore, India RSA Security Full timeRSA - Application Security Engineer Location: Remote India RSA offers mission-driven security solutions that provide organizations with a unified approach to managing digital risk that hinges on integrated visibility, automated insights and coordinated actions. RSA solutions are designed to effectively detect and respond to advanced attacks;...
-
Spec, IT
5 days ago
bangalore, India Baxter Full timeThis is where you save and sustain lives At Baxter, we are deeply connected by our mission. No matter your role at Baxter, your work makes a positive impact on people around the world. You'll feel a sense of purpose throughout the organization, as we know our work improves outcomes for millions of patients. Baxter's products and therapies are found...
-
Information Security Specialist
1 month ago
bangalore, India Mindtickle Full timeWho we are Mindtickle is the market-leading revenue productivity platform that combines on-the-job learning and deal execution to get more revenue per rep. Mindtickle is recognized as a market leader by top industry analysts and is ranked by G2 as the #1 sales onboarding and training product. This year, Mindtickle was recognized for its outstanding...
-
Information Security Specialist
4 weeks ago
bangalore, India Mindtickle Full timeWho we are Mindtickle is the market-leading revenue productivity platform that combines on-the-job learning and deal execution to get more revenue per rep. Mindtickle is recognized as a market leader by top industry analysts and is ranked by G2 as the #1 sales onboarding and training product. This year, Mindtickle was recognized for its outstanding...
-
Specialist,IT Security
4 weeks ago
bangalore, India ResMed Full timeThe Information Technology (IT) team plays a key role in providing business enablement throughout ResMed. We are focused on application, infrastructure, and user productivity solutions, with innovation, efficiency and security. Our goal is providing customer oriented agile delivery, effective business partnership and state-of-the-art technology solutions. ...
-
Analyst, Third-Party Risk Management
5 days ago
bangalore, India Thomson Reuters Full timeAbout the Role In this opportunity as Senior Analyst, Third-Party Risk Management, you will: Assess the inherent and residual risk associated with third parties to TR including vendors, suppliers, partners and more, using standardized methodology, process, and toolset. Screening third parties for potential red flags using both open and...
-
Engineer - Network Security I On-site, Bangalore
4 weeks ago
bangalore, India Optiv Security Inc. Full timeWe're looking for knowledge-seeking candidates who will be eager to dive into new things in a fast-paced and ever-changing environment. This role is fitting for those looking to trailblaze their career in network security.Operating as the first impression for Optiv clients in many cases, engineers deliver both third-party Authorized Support and Technology...
-
Information Security Analyst
4 weeks ago
bangalore, India Smarsh Full timeSmarsh is the leader in communications compliance, archiving, and analytics. We provide compliance across the broadest set of communications channels with insights on what’s being captured. Smarsh customers manage over 500 million daily conversations across 80 channels and growing. Customers include the top 10 U.S., top 8 European, top 5 Canadian, and top...
-
Sr. Third Party Risk Manager, RCS
5 days ago
bangalore, India ADCI - BLR 14 SEZ Full timeAre you ready to apply your risk and compliance expertise to Amazon's unique environment? We are looking for a candidate with demonstrated Third Party Risk Management expertise who will play a key role in building out new exciting programs across Amazon’s different organizations. The Sr. Risk Manager will accelerate a broad TPRM framework, drive risk...
-
Analyst 5, IT Security
4 weeks ago
bangalore, India Western Digital Full timeCompany Description At Western Digital, our vision is to power global innovation and push the boundaries of technology to make what you thought was once impossible, possible. At our core, Western Digital is a company of problem solvers. People achieve extraordinary things given the right technology. For decades, we’ve been doing just that. Our...
-
Information Security Analyst
4 weeks ago
bangalore, India Smarsh Full timeSmarsh is the leader in communications compliance, archiving, and analytics. We provide compliance across the broadest set of communications channels with insights on what’s being captured. Smarsh customers manage over 500 million daily conversations across 80 channels and growing. Customers include the top 10 U.S., top 8 European, top 5 Canadian, and top...
-
bangalore, India Siemens Healthcare Private Limited Full timeProfile: SoftwareCompliance Engineer – Third Party Software Overview: A SoftwareCompliance Engineer focusing on third-party software ensures that anorganization complies with software licensing requirements, manages third-partysoftware risks, and maintains software license inventory. This role requires amix of technical knowledge,...
-
Information Security Analyst
4 weeks ago
Bangalore Urban, India Smarsh Full timeSmarsh is the leader in communications compliance, archiving, and analytics. We provide compliance across the broadest set of communications channels with insights on what’s being captured. Smarsh customers manage over 500 million daily conversations across 80 channels and growing. Customers include the top 10 U.S., top 8 European, top 5 Canadian, and top...
-
Information Security Analyst
4 weeks ago
Bangalore Urban, India Smarsh Full timeSmarsh is the leader in communications compliance, archiving, and analytics. We provide compliance across the broadest set of communications channels with insights on what’s being captured. Smarsh customers manage over 500 million daily conversations across 80 channels and growing. Customers include the top 10 U.S., top 8 European, top 5 Canadian, and top...
-
Risk Advisory | Third Party Assurance
4 weeks ago
bangalore, India Deloitte Full timeWhat impact will you make?Every day, your work will make an impact that matters, while you thrive in a dynamic culture of inclusion, collaboration and high performance. As the undisputed leader in professional services, Deloitte is where you’ll find unrivaled opportunities to succeed and realize your full potentialAbout AssuranceProvides an independent...
-
Senior Information Security Analyst
2 weeks ago
bangalore, India WELLS FARGO BANK Full timeAbout this role: Wells Fargo is seeking an Analyst in the area of Information and Cyber Security for the Technology Third Governance function. The role activities includes Identifying, Analyzing and responding to Incidents related to third party service providersIn this role, you will: Provide information security consultation to improve awareness and...
-
bangalore, India HSBC Full timeSome careers have more impact than others. If you’re looking for a career where you can make a real impression, join HSBC and discover how valued you’ll be. HSBC is one of the largest banking and financial services organisations in the world, with operations in 62 countries and territories. We aim to be where the growth is, enabling businesses...