MNC InsiderMNC Insider
Amazon logo

Regulatory Assurance Lead, Security & Privacy Regulatory Enablement (SPRe)

Amazon

Regulatory Assurance Lead, Security & Privacy Regulatory Enablement (SPRe)

full-timePosted: Jul 6, 2026Updated: Aug 27, 2026New York, New York, United States

Job Description

Amazon's Security & Privacy Regulatory Enablement (SPRe) team is the regulatory enablement engine for Amazon's security, privacy, and AI compliance assurance needs. We take any new regulatory requirement from initial publication to demonstrated compliance across three domains — Security, Privacy, and AI — using a repeatable, scalable operating model (Anticipate → Enable → Assure). We are seeking an experienced Assurance Operations Lead to manage and scale the operational delivery of all external audits and regulatory examinations across SPRe's security, privacy, and AI compliance domains. This is a people management role leading a team of assurance specialists across multiple jurisdictions (EU, UK, India, US, Singapore, Middle East), with responsibility for audit lifecycle management, operational excellence, team development, and delivery metrics. The ideal candidate brings deep expertise in both information security and privacy compliance, has led audit/assurance teams at scale, and can build a high-performing, geographically distributed team that delivers consistently across regulatory frameworks. You will be responsible for integrating security and privacy assurance functions under a unified operating rhythm — driving cross-domain efficiency, developing talent, and ensuring Amazon demonstrates compliance to regulators, auditors, and supervisory authorities globally. Key job responsibilities Audit & Assurance Delivery (Gear 3: Assure) Own operational delivery of all external audits and regulatory examinations across payments security, privacy (DMA, DSA, GDPR, CCPA, COPPA, DPDP), and emerging AI regulations. Manage the full external audit lifecycle from planning through to report issuance across all regulated entities globally Front-end external auditors and regulatory examiners as the senior operational point of contact Coordinate evidence collection, collation, and presentation — ensuring audit-readiness and delivery excellence Manage audit findings, remediation tracking, and formal closure across all domains Establish and track operational metrics for assurance delivery — audit cycle times, finding closure rates, evidence readiness, and quality benchmarks Strategic & Cross-Domain Leadership Drive methodology consistency across security and privacy assurance — identifying cross-domain synergies, shared control frameworks, and efficiency opportunities Own the go/no-go decision process for external examinations, ensuring leadership retains oversight of the external audit relationship Maintain C-level relationships with external auditors, regulators, and supervisory authorities Influence Security and Privacy Control Assessment automation efforts to achieve compliance at scale Communicate audit posture, risks, and programme health to executive leadership — escalating critical issues with precision and driving timely resolution Contribute to SPRe's strategic roadmap including expansion into RAI (Responsible AI) assurance as regulatory frameworks mature People Leadership & Team Development Lead, manage, and develop a team of assurance specialists spanning security and privacy domains across multiple geographies Build a high-performing, cohesive team culture that integrates previously separate security and privacy assurance functions under a unified operating model Drive career development, performance management, and succession planning — identifying and developing the next generation of assurance leaders Establish team operating rhythm including regular syncs, shared dashboards, clear ownership by jurisdiction or programme, and delivery metrics Attract, hire, and retain top assurance talent across both security and privacy disciplines About the team SPRe operates through three interconnected gears forming a continuous flywheel: **Anticipate** (regulatory engagement and horizon scanning), **Enable** (programme design and regulatory compliance monitoring), and **Assure** (external audit delivery and regulatory examination management). This role leads the Assure function — the execution engine that demonstrates Amazon's compliance to the outside world. Team members include security compliance specialists, privacy assurance specialists, and cross-domain flex resources operating across India, Europe, and the US. You will report to SPRe's Senior Manager and work closely with the Programme Enablement pillar, Legal, Technology, and Business teams across Amazon. Diverse Experiences Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying. Why Amazon Security? At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores. Inclusive Team Culture In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices. Training & Career Growth We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional. Work/Life Balance We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.

Locations

  • New York, New York, United States

Salary

171,800 - 300,700 USD / yearly

Skills Required

  • complianceintermediate
  • and scaling compliance/assurance functionsintermediate
  • securityintermediate
  • process improvementintermediate
  • payment industry regulationsintermediate
  • AI governance frameworksintermediate
  • GRC platformsintermediate

Required Qualifications

  • Bachelor's degree or equivalent in Computer Science, Information Systems Management, International Relations, Engineering, or other related fields (degree in equivalent in computer science)
  • Experience communicating and presenting to senior leadership (experience)
  • Experience managing multiple projects and priorities across teams in a fast-paced, deadline-driven environment (experience)
  • 10+ years of experience in compliance, regulatory assurance, audit, governance, or risk management — with meaningful depth in both information security and privacy/data protection domains (experience, 10 years)
  • Experience building and scaling compliance/assurance functions, integrating teams, and driving operational excellence across multiple regulatory frameworks simultaneously (experience)
  • Experience managing audit programmes across multiple jurisdictions with different regulatory regimes (experience)
  • Experience with security and privacy principles — risk-based thinking, control design, defence in depth, data protection by design (experience)

Preferred Qualifications

  • Experience in process improvement (experience)
  • Experience leading assurance/audit teams that span both information security and privacy — demonstrating cross-domain operational leadership (experience)
  • Professional auditing qualifications or relevant certifications (CISA, CISM, CISSP, CIPP/E, CIPP/US, CIPM, QSA, ISO 27001 Lead Auditor, or similar) (certification)
  • Experience managing compliance programmes for major technology companies or regulated entities (experience)
  • Experience with payment industry regulations and supervisory authorities across multiple jurisdictions (experience)
  • Knowledge of AI governance frameworks (EU AI Act, NIST AI RMF) and ability to stand up new assurance programmes for emerging regulatory domains (experience)
  • Experience with GRC platforms, audit management tools, and automation of evidence collection at scale (experience)

Target Your Resume for "Regulatory Assurance Lead, Security & Privacy Regulatory Enablement (SPRe)" , Amazon

Get personalized recommendations to optimize your resume specifically for Regulatory Assurance Lead, Security & Privacy Regulatory Enablement (SPRe). Takes only 15 seconds!

AI-powered keyword optimization
Skills matching & gap analysis
Experience alignment suggestions

Check Your ATS Score for "Regulatory Assurance Lead, Security & Privacy Regulatory Enablement (SPRe)" , Amazon

Find out how well your resume matches this job's requirements. Get comprehensive analysis including ATS compatibility, keyword matching, skill gaps, and personalized recommendations.

ATS compatibility check
Keyword optimization analysis
Skill matching & gap identification
Format & readability score

Tags & Categories

Project/Program/Product Management--Non-TechProject/Program/Product Management--Non-Tech

Answer 10 quick questions to check your fit for Regulatory Assurance Lead, Security & Privacy Regulatory Enablement (SPRe) @ Amazon.

Quiz Challenge
10 Questions
~2 Minutes
Instant Score

Related Books and Jobs

No related jobs found at the moment.