Security Compliance Specialist, Leo External Security Assurance
Listed on 2026-02-15
-
IT/Tech
Cybersecurity, Information Security
Security Compliance Specialist, Leo External Security Assurance
Job | Services LLC
We are open to hiring candidates to work out of one of the following locations:
Arlington, VA, USA | Redmond, WA, USA.
Amazon Leo (previously known as Project Kuiper) is an initiative to increase global broadband access through a constellation of over 3,000 Low Earth Orbit (LEO) satellites. Its mission is to bring fast, affordable broadband to unserved and underserved communities worldwide.
Export Control RequirementDue to applicable export control laws and regulations, candidates must be a U.S. citizen or national, U.S. permanent resident (i.e., current Green Card holder), or lawfully admitted into the U.S. as a refugee or granted asylum.
Key Job Responsibilities- Design and drive scalable processes within a GRC (Governance, Risk, and Compliance) framework to ensure compliance with Leo's regulatory and contractual security and privacy requirements.
- Build and maintain compliance certifications such as ISO 27001, ISO 22301, NIST 800-53, ISO 27701, SOC 2, GDPR, CCPA, etc., identifying applicable security controls, assessing compliance gaps and readiness, developing remediation strategies, and driving remediation activities to completion.
- Drive certifications and assurance programs by liaising with external auditors and other Amazon security teams, articulating control implementation and impact, and establishing considerations for applying security and risk concepts to a highly technical and complex environment.
- Communicate to key stakeholders and leadership on controls implementation, audit results, compliance program metrics, key risks, and areas of program improvement; seek diverse opinions and coordinate improvement efforts.
- Work closely with engineering, compliance, security, bizdev, and Legal teams to identify future compliance and regulatory requirements and define compliance solutions.
- Serve as an advisor on assurance issues.
- Understand and manage cross‑functional GRC requirements, translating them into the GRC tool.
- Be comfortable with hands‑on day‑to‑day problem solving and implementing quick and effective action plans to meet short‑ and long‑term priorities.
Have you wanted an opportunity to secure an advanced satellite‑based broadband telecom service? The Leo Security team owns the security of product and operations of Leo end‑to‑end. We provide the necessary infrastructure and mechanisms to ensure the security of our satellite constellation and provide assurance to our customers and regulators on our security, privacy and resiliency programs. Our team drives the implementation of compliance programs, owns the collaboration with external auditors and regulators.
You will work in a start‑up like environment, backed by Amazon’s infrastructure to bootstrap security mechanisms, and help instill the security culture in the organization.
About the TeamAmazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness.
Basic Qualifications- Bachelor's degree or above.
- 3+ years of professional experience in governance, risk, and compliance designing and implementing controls or performing audits over ISO 27001, NIST 800-53, SOC 1 / SOC 2 and other globally recognized compliance programs.
- CISSP, CISA, CISM…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).