招聘
Job Requisition ID
26WD96862
Position Overview
We are seeking experienced and motivated Security Engineer who will develop and lead secure configuration and hardening efforts within our Secure Posture Management team. In this role, you will design, implement and advance Autodesk’s Secure Posture Management strategy for secure configuration baselines, cloud hardening, IaC security, vulnerability visibility, and golden image pipelines. This role requires deep technical expertise, strong hands-on and automation skills, and the ability to influence engineering teams across the organization. You will collaborate and partner with diverse engineering teams across Autodesk.
Your expertise in secure configuration, system hardening, and cloud security will ensure that Autodesk’s systems, services, and platforms meet the highest security standards and align with industry best practices and regulatory requirements.
Job Responsibilities
-
Define and execute a unified security posture management strategy including CSPM, secure configuration, golden image pipelines, IaC templates, and vulnerability management.
-
Develop and refine standards for secure cloud configurations in alignment with industry frameworks, such as CIS or NIST benchmarks.
-
Develop and maintain hardened baselines (CIS, NIST) across cloud environments, Windows, Linux, and container platforms.
-
Develop security artifacts, tooling and automations using tools such as Python, PowerShell, Groovy or Ruby.
-
Use Cloud Security Posture Management (CSPM) tooling to continuously monitor multiple cloud environments (AWS, Azure, GCP) for misconfigurations, security gaps and compliance issues.
-
Operate and optimize CSPM tooling and drive remediation of cloud misconfigurations.
-
Regularly reporting on security posture and mitigation progress to executive stakeholders.
-
Work with development teams to enhance features and ease of use for our golden image, Infrastructure as Code (IaC) pipelines, and embed secure configurations from design to runtime.
-
Monitor and remediate drift from security standards to ensure security across all environments.
-
Oversee the secure posture management program and lead remediation efforts across all cloud and data center assets.
Minimum Qualifications
-
Bachelor's degree in computer science, information security, or a related field.
-
8+ years of experience in information security or development, with a focus on secure configuration, enterprise security, cloud security, posture management, and vulnerability management.
-
Deep understanding of secure configuration and hardening frameworks, such as CIS Benchmarks, DISA STIG, NIST 800-53/190.
-
Strong proficiency in development, building automation and security tooling, such as Git, Artifactory, Jenkins, Spinnaker, scripting languages such as Python, PowerShell, Groovy or Ruby.
-
Extensive experience with CSPM tools and secure configuration tools and platforms such as Tenable, Prisma Cloud, Orca, or Wiz.
-
Experience in developing/managing golden image pipelines, CI/CD and IaC templates (Terraform).
-
Hands-on experience with cloud providers, AWS, Azure or GCP, and strong knowledge of native security services.
Preferred Qualifications
-
Master's degree in computer science, information security, or a related field.
-
Certifications such as CISSP, CCSP, OSCP, AWS Security Specialty, or similar.
-
Hands-on experience across multiple cloud platforms: AWS, Azure, and GCP.
-
Expertise in secure software development, API automation, and integrating security checks into CI/CD pipelines.
-
Ability to design and deliver complex security automation at scale (IaC modules, policy-as-code, cloud guardrails).
-
Strong understanding of compliance frameworks (SOC2, ISO 27001, FedRAMP, PCI-DSS) as they relate to configuration and vulnerability management.
-
Proven ability to identify potential threats and vulnerabilities.
-
Ability to lead complex security projects, with hands-on experience to create and develop systems and services.
-
Lifelong learner with a commitment to continuous improvement.
-
Excellent written/verbal communication skills and ability to present complex security topics to non-technical stakeholders.
Learn More
About Autodesk
Welcome to Autodesk! Amazing things are created every day with our software – from the greenest buildings and cleanest cars to the smartest factories and biggest hit movies. We help innovators turn their ideas into reality, transforming not only how things are made, but what can be made.
We take great pride in our culture here at Autodesk – it’s at the core of everything we do. Our culture guides the way we work and treat each other, informs how we connect with customers and partners, and defines how we show up in the world.
When you’re an Autodesker, you can do meaningful work that helps build a better world designed and made for all. Ready to shape the world and your future? Join us!
Salary transparency
Salary is one part of Autodesk’s competitive compensation package. Offers are based on the candidate’s experience and geographic location. In addition to base salaries, our compensation package may include annual cash bonuses, commissions for sales roles, stock grants, and a comprehensive benefits package.
Diversity & Belonging
We take pride in cultivating a culture of belonging where everyone can thrive. Learn more here: https://www.autodesk.com/company/diversity-and-belonging
Are you an existing contractor or consultant with Autodesk?
Please search for open jobs and apply internally (not on this external site).
总浏览量
0
申请点击数
0
模拟申请者数
0
收藏
0
相似职位

Staff Information Security Engineer (Vulnerability Management)
Zscaler · Crystal City, Virginia, USA

Senior Technical Recruiter - Cybersecurity
JPMorgan Chase · Jersey City, NJ, United States, US

Principal Security Engineer, Infrastructure Security
OpenAI · Remote - US

Cyber Architect (Mid-Level or Senior)
Spirit AeroSystems · Wichita, Kansas

Staff Software Development Engineer - DevSecOps
Zscaler · San Jose, California, USA
关于Autodesk

Autodesk
PublicAutodesk, Inc. is an American multinational software corporation that provides software products and services for the architecture, engineering, construction, manufacturing, media, education, and entertainment industries.
10,001+
员工数
San Francisco
总部位置
$50B
企业估值
评价
3.0
3条评价
工作生活平衡
3.0
薪酬
2.5
企业文化
2.8
职业发展
3.2
管理层
2.5
35%
推荐给朋友
优点
Strong brand recognition in industry
Career advancement opportunities
Promotion to leadership roles
缺点
Lower compensation packages
Poor location/undesirable area
Exclusion from decision-making processes
薪资范围
929个数据点
Junior/L3
Mid/L4
Senior/L5
Junior/L3 · Associate Business Intelligence Analyst
2份报告
$131,955
年薪总额
基本工资
$101,504
股票
-
奖金
-
$131,955
$131,955
面试经验
2次面试
难度
3.0
/ 5
时长
14-28周
录用率
50%
面试流程
1
Application Review
2
Recruiter Screen
3
Technical Phone Screen
4
Onsite/Virtual Interviews
5
Team Matching
6
Offer
常见问题
Coding/Algorithm
Technical Knowledge
Behavioral/STAR
Past Experience
Culture Fit
新闻动态
[Hiring] Account Executive Assigned 5 - KSA | Autodesk | Riyadh, Saudi Arabia
**Autodesk** — Riyadh, Saudi Arabia, 🇸🇦 **Work Model:** On-site **Experience:** Mid-level · 7–10 years **Type:** Full-time **Category:** Marketing & Sales **Skills:** SaaS, Salesforce, Construction Tech, Account Management, B2B Sales **Benefits:** Flights, Medical, Gratuity --- **Role overview** Motivated Account Executive needed for Construction Tech sales in KSA, managing the sales cycle from prospect to close. **Key requirements** - 7-10 years of experience in SaaS sales
·
2w ago
·
1
Am I a liar? I got hired for a high-paying 3D design job and they think I’m using hardcore CAD software. I’m not.
I need some outside perspective because this is starting to keep me up at night. A few weeks ago I got hired at a company to help design a new product. The pay is honestly way higher than anything I expected. During interviews they mostly focused on my portfolio and how quickly I could iterate concepts. They seemed really impressed. Now that I’m here, everyone seems to assume I’m some kind of industrial desing/mechanical engineering CAD expert. I'm actually self-taught from YouTube. People i
·
6w ago
·
419
·
164
[Video Games] Darkstalkers Are Not Dead: the story of Yoshinori Ono's failed attempt at necromancy
# How we got here In the mid-to-late 2000s, Japan's video game scene went through some serious troubles: although plenty of beloved games still came out, the Lost Decade crash had driven several Japanese companies into bankruptcy or consolidation, and several development tools had been deprecated (most famously Autodesk Maya). Because of this, some Japanese designers, like Tecmo's **Tomonobu Itagaki** (3D *Ninja Gaiden*, *Dead or Alive*) and Capcom's **Keiji Inafune** (*Mega Man*), instead turn
·
8w ago
·
376
·
46
Autodesk, Inc. $ADSK Shares Sold by Truist Financial Corp - MarketBeat
Source: MarketBeat
News
·
11w ago