Healthcare Assurance Specialist, AWS Compliance & Security Assurance
Job ID: 10402009 | Amazon Web Services, Inc.
Amazon Web Services (AWS) is seeking an Assurance and Compliance Specialist to join our Global Assurance function to provide assurance to Healthcare and Lifesciences customers. This role will ensure AWS maintains rigorous adherence to federal patient privacy and data security regulations (HIPAA/HITECH) and industry frameworks (HITRUST) across our cloud services portfolio, supporting customers and regulated entities that depend on AWS infrastructure.
Key Responsibilities
- Risk Assessment and Audit Management — Conduct, document, and manage internal HIPAA compliance audits to identify vulnerabilities across AWS services and infrastructure. Develop risk assessment frameworks that evaluate technical controls, administrative safeguards, and physical security measures against both HIPAA requirements and the HITRUST Common Security Framework (HITRUST CSF). Partner with internal stakeholders to ensure audit findings are remediated effectively, and control environments remain robust.
- HIPAA Security Rule Compliance Support — Partner with the HIPAA Security Official to oversee AWS's compliance with all requirements of the HIPAA Security Rule.
- Cross‐Functional Collaboration — Partner with AWS service teams, security architects, and compliance stakeholders to embed HIPAA requirements into product development lifecycles. Provide regulatory guidance during service launches, feature releases, and infrastructure changes that impact healthcare customers.
- Training and Awareness Programs — Design and deliver comprehensive training programs that educate AWS employees, service teams, and customer‐facing personnel on patient privacy obligations and data security best practices.
Basic Qualifications
- Bachelor's degree or equivalent in Information Security, Computer Science, Risk Management, Engineering, Math, Statistics, or a related discipline, or equivalent technology experience.
- Experience in one or more of the following domains: access‐control system and methodology, network security, application‐and system‐development security, security architecture and models, cryptography, and operations security.
- Experience creating and delivering written and oral communications for technical and non‐technical audiences.
- Experience that includes strong analytical skills, attention to detail, and effective communication abilities, or experience in deploying identity and access management systems.
- 5+ years of progressive experience in compliance roles, including direct ownership of a HIPAA compliance program at a technology company.
- Experience with maintaining HITRUST compliance.
Preferred Qualifications
- Knowledge of AWS or cloud computing.
- Experience in auditing, risk management, compliance, program management, or quality management systems.
- Experience working with a matrixed team of stakeholders to achieve a common goal or equivalent.
- Experience mentoring, coaching, and influencing colleagues, collaborators, and stakeholders.
- Professional certifications such as Certified in Healthcare Privacy Compliance (CHPC), Certified in Healthcare Information Security and Privacy Practitioner (HCISPP), Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP), or equivalent.
- Experience working with cloud service providers or technology companies serving healthcare customers.
- Knowledge of related healthcare regulations including HITECH Act, 21 CFR Part 11, and state privacy laws.
- Experience with regulatory examinations, audits, or enforcement actions.
- Experience implementing or significantly contributing to compliance automation or GRC tooling integrations.
Benefits
Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at https://amazon.jobs/en/benefits.
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner.
#J-18808-Ljbffr