
Amazon Web Services (AWS) Middle East
Senior Assurance Consultant
- Permanent
- Dubai, United Arab Emirates
- Experience 5 - 10 yrs
Job expiry date: 04/06/2026
Job overview
Date posted
20/04/2026
Location
Dubai, United Arab Emirates
Salary
Undisclosed
Compensation
Job description
The Senior Assurance Consultant role within AWS Security Assurance Services (SAS) in Dubai focuses on delivering governance, risk, and compliance (GRC) solutions for enterprise customers migrating workloads to AWS cloud environments. The role supports AWS customers in operationalizing the shared responsibility model by ensuring security assurance, regulatory compliance, and risk management across cloud architectures. The consultant works with large enterprise organizations to design scalable compliance solutions that align with global standards such as NIST 800-53 and GDPR, while also supporting audit readiness and security posture evaluation. This position involves advising executives and technical stakeholders on enterprise risk management strategies and translating complex compliance requirements into automated, scalable cloud-native security solutions. The role includes conducting deep-dive assessments of security controls, producing audit evidence of control effectiveness, and helping customers meet compliance objectives in highly regulated environments. It also requires collaboration with AWS engineering, support, and business teams to provide customer and partner feedback that influences AWS technology roadmaps. The consultant leads engagements involving Amazonians, partners, and customers to enhance security assurance programs, define compliance strategies, and accelerate secure cloud adoption. The role requires hands-on engagement in compliance automation within AWS environments, strategic advisory on security architecture, and delivery of presentations and recommendations at executive levels. The position operates within AWS Security Assurance Services LLC, a PCI-QSAC and HITRUST External Assessor Firm, ensuring alignment with industry audit standards and security frameworks. The role also emphasizes customer-facing consulting, risk assessment, regulatory mapping, and continuous improvement of cloud security governance mechanisms.
Required skills
Key responsibilities
- Lead security assurance and compliance engagements with enterprise customers to support cloud migration and operationalization of the shared responsibility model.
- Define and implement scalable governance, risk, and compliance (GRC) frameworks aligned with standards such as NIST 800-53 and GDPR.
- Assess security posture of cloud environments and produce audit-ready evidence of control effectiveness across AWS infrastructure.
- Translate regulatory and compliance requirements into automated, scalable cloud security solutions and architectures.
- Conduct deep-dive risk and compliance assessments and provide strategic recommendations to executive stakeholders.
- Collaborate with AWS engineering, support, and business teams to communicate customer feedback and influence product and roadmap development.
- Lead customer-facing discussions, workshops, and presentations to address security assurance, compliance gaps, and risk mitigation strategies.
- Support automation of compliance processes within AWS environments using cloud-native security mechanisms.
- Guide customers in implementing enterprise risk management strategies for cloud-based workloads and regulated data.
- Travel to customer sites as required to support compliance advisory and assurance engagements.
Experience & skills
- Minimum 5+ years of experience in IT security, compliance, risk management, or security controls.
- At least 3+ years of experience advising customers on architectures aligned with regulatory standards such as NIST 800-53 and GDPR.
- Experience in enterprise risk management methodologies within global enterprise environments.
- Experience assessing security posture and producing audit evidence for cloud-based systems.
- Bachelor's degree in Computer Science, Information Systems, Information Security, or equivalent experience.
- Experience with security auditing of network, operating systems, application security, and IT processes.
- Understanding of Agile, CI/CD, and DevOps methodologies and their impact on risk and compliance.
- Experience with cloud compliance frameworks and security assurance programs.
- Ability to engage with executive stakeholders and translate technical compliance requirements into business outcomes.