hirly

Amazon

Supply Chain Security Compliance Specialist, Supply Chain Intellectual Property Security

Hanoi, VNM

Apply through hirly

Upload your resume and get a version tailored to this job, plus a cover letter, in about thirty seconds — before you create an account.

Apply with hirly

hirly's read of this role

Role family
Supply chain
Seniority
Mid level
Country
VN
Work mode
On-site / unstated
First seen by hirly
27 Sept 2026

Derived automatically from the posting. Sign up to see how the role scores against your own resume.

the posting

  • Overview: We're seeking a Security Supply Chain Assessor to help protect Amazon's global supply chain through comprehensive security assessments and risk management. This role requires international travel (up to 75%) across the APAC Regions.
  • The Supply Chain Security Assessor plays a critical role in evaluating and strengthening the security posture of third-party manufacturing and supplier partners across the global supply chain. This position involves conducting on-site Physical and cybersecurity assessments of supplier facilities, verifying adherence to corporate and industry security standards, and identifying risks related to data protection, software provisioning, and hardware production environments.
  • The ideal candidate will have deep technical expertise in cybersecurity controls, understanding of physical security controls, a strong understanding of manufacturing and supplier ecosystems, and the ability to collaborate cross-functionally with internal and external stakeholders across multiple time zones and regions.
  • Key job responsibilities
  • Conduct on-site physical and cybersecurity assessments of suppliers and contract manufacturers across APAC.
  • Evaluate supplier environments against company and industry security standards (e.g., ISO 27001, NIST 800-171, TAPA, and internal security frameworks).
  • Assess security domains including but not limited to:
  • o Network segmentation and access control
  • o Data encryption and protection mechanisms
  • o Endpoint and server security
  • o Secure software provisioning and storage
  • o Incident response and monitoring practices
  • o CCTV Coverage and Monitoring
  • o Physical and environmental security controls
  • Document findings, develop risk ratings, and provide actionable remediation guidance to suppliers.
  • Partner with internal security, compliance, and supply chain teams to ensure continuous improvement of supplier risk management programs.
  • Track, monitor, and verify closure of remediation actions through follow-up assessments or evidence reviews.
  • Contribute to the development and enhancement of standardized assessment frameworks, methodologies, and automation tools.
  • Provide training and knowledge-sharing sessions for suppliers and internal stakeholders to improve overall security maturity.
  • Maintain awareness of evolving global cybersecurity regulations, threats, and best practices relevant to the manufacturing and supply chain ecosystem.

Basic qualifications

  • - Experience in Incident Management, Threat Management, Corporate Investigations, Law Enforcement, Security Operations, Crisis Management or a related field that involves conducting threat assessments, workplace investigations, and/or incident response
  • - 5+ years in cybersecurity assessments, audits, or supplier security evaluations.
  • - Experience performing on-site assessments or audits in manufacturing, hardware, or software supply chain environments.
  • - Strong knowledge of security frameworks (ISO 27001, or similar).
  • - Demonstrated ability to communicate complex security concepts to both technical and non-technical audiences.
  • - Excellent analytical, documentation, and reporting skills.
  • - Fluency in both Mandarin and English languages

Preferred qualifications

  • - 5+ years of supply chain operations and logistics experience
  • - Certifications such as CISSP, CISA, CISM, or ISO 27001 Lead Auditor.
  • - Experience working with or assessing suppliers in regulated industries (e.g., electronics manufacturing, cloud hardware, or software supply chain).
  • - Understanding of software and firmware provisioning security practices.
  • - Experience with risk management tools and assessment automation platforms.
  • - Knowledge of NIST CSF

Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner.

Original posting on Amazon's site ↗

Want this one?

Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.

Tailor my resume for this job