热门公司

招聘

职位Autodesk

Principal Security Engineer, Secure Posture Management

Autodesk

Principal Security Engineer, Secure Posture Management

Autodesk

Croatia, EMEA

·

On-site

·

Full-time

·

3d ago

Job Requisition ID

26WD96862

Position Overview

We are seeking experienced and motivated Security Engineer who will develop and lead secure configuration and hardening efforts within our Secure Posture Management team. In this role, you will design, implement and advance Autodesk’s Secure Posture Management strategy for secure configuration baselines, cloud hardening, IaC security, vulnerability visibility, and golden image pipelines. This role requires deep technical expertise, strong hands-on and automation skills, and the ability to influence engineering teams across the organization. You will collaborate and partner with diverse engineering teams across Autodesk.

Your expertise in secure configuration, system hardening, and cloud security will ensure that Autodesk’s systems, services, and platforms meet the highest security standards and align with industry best practices and regulatory requirements.

Job Responsibilities

  • Define and execute a unified security posture management strategy including CSPM, secure configuration, golden image pipelines, IaC templates, and vulnerability management.

  • Develop and refine standards for secure cloud configurations in alignment with industry frameworks, such as CIS or NIST benchmarks.

  • Develop and maintain hardened baselines (CIS, NIST) across cloud environments, Windows, Linux, and container platforms.

  • Develop security artifacts, tooling and automations using tools such as Python, PowerShell, Groovy or Ruby.

  • Use Cloud Security Posture Management (CSPM) tooling to continuously monitor multiple cloud environments (AWS, Azure, GCP) for misconfigurations, security gaps and compliance issues.

  • Operate and optimize CSPM tooling and drive remediation of cloud misconfigurations.

  • Regularly reporting on security posture and mitigation progress to executive stakeholders.

  • Work with development teams to enhance features and ease of use for our golden image, Infrastructure as Code (IaC) pipelines, and embed secure configurations from design to runtime.

  • Monitor and remediate drift from security standards to ensure security across all environments.

  • Oversee the secure posture management program and lead remediation efforts across all cloud and data center assets.

Minimum Qualifications

  • Bachelor's degree in computer science, information security, or a related field.

  • 8+ years of experience in information security or development, with a focus on secure configuration, enterprise security, cloud security, posture management, and vulnerability management.

  • Deep understanding of secure configuration and hardening frameworks, such as CIS Benchmarks, DISA STIG, NIST 800-53/190.

  • Strong proficiency in development, building automation and security tooling, such as Git, Artifactory, Jenkins, Spinnaker, scripting languages such as Python, PowerShell, Groovy or Ruby.

  • Extensive experience with CSPM tools and secure configuration tools and platforms such as Tenable, Prisma Cloud, Orca, or Wiz.

  • Experience in developing/managing golden image pipelines, CI/CD and IaC templates (Terraform).

  • Hands-on experience with cloud providers, AWS, Azure or GCP, and strong knowledge of native security services.

Preferred Qualifications

  • Master's degree in computer science, information security, or a related field.

  • Certifications such as CISSP, CCSP, OSCP, AWS Security Specialty, or similar.

  • Hands-on experience across multiple cloud platforms: AWS, Azure, and GCP.

  • Expertise in secure software development, API automation, and integrating security checks into CI/CD pipelines.

  • Ability to design and deliver complex security automation at scale (IaC modules, policy-as-code, cloud guardrails).

  • Strong understanding of compliance frameworks (SOC2, ISO 27001, FedRAMP, PCI-DSS) as they relate to configuration and vulnerability management.

  • Proven ability to identify potential threats and vulnerabilities.

  • Ability to lead complex security projects, with hands-on experience to create and develop systems and services.

  • Lifelong learner with a commitment to continuous improvement.

  • Excellent written/verbal communication skills and ability to present complex security topics to non-technical stakeholders.

Learn More

About Autodesk

Welcome to Autodesk! Amazing things are created every day with our software – from the greenest buildings and cleanest cars to the smartest factories and biggest hit movies. We help innovators turn their ideas into reality, transforming not only how things are made, but what can be made.

We take great pride in our culture here at Autodesk – it’s at the core of everything we do. Our culture guides the way we work and treat each other, informs how we connect with customers and partners, and defines how we show up in the world.

When you’re an Autodesker, you can do meaningful work that helps build a better world designed and made for all. Ready to shape the world and your future? Join us!

Salary transparency

Salary is one part of Autodesk’s competitive compensation package. Offers are based on the candidate’s experience and geographic location. In addition to base salaries, our compensation package may include annual cash bonuses, commissions for sales roles, stock grants, and a comprehensive benefits package.

Diversity & Belonging

We take pride in cultivating a culture of belonging where everyone can thrive. Learn more here: https://www.autodesk.com/company/diversity-and-belonging

Are you an existing contractor or consultant with Autodesk?

Please search for open jobs and apply internally (not on this external site).

总浏览量

0

申请点击数

0

模拟申请者数

0

收藏

0

关于Autodesk

Autodesk

Autodesk

Public

Autodesk, Inc. is an American multinational software corporation that provides software products and services for the architecture, engineering, construction, manufacturing, media, education, and entertainment industries.

10,001+

员工数

San Francisco

总部位置

$50B

企业估值

评价

3.0

3条评价

工作生活平衡

3.0

薪酬

2.5

企业文化

2.8

职业发展

3.2

管理层

2.5

35%

推荐给朋友

优点

Strong brand recognition in industry

Career advancement opportunities

Promotion to leadership roles

缺点

Lower compensation packages

Poor location/undesirable area

Exclusion from decision-making processes

薪资范围

929个数据点

Junior/L3

Mid/L4

Senior/L5

Junior/L3 · Associate Business Intelligence Analyst

2份报告

$131,955

年薪总额

基本工资

$101,504

股票

-

奖金

-

$131,955

$131,955

面试经验

2次面试

难度

3.0

/ 5

时长

14-28周

录用率

50%

面试流程

1

Application Review

2

Recruiter Screen

3

Technical Phone Screen

4

Onsite/Virtual Interviews

5

Team Matching

6

Offer

常见问题

Coding/Algorithm

Technical Knowledge

Behavioral/STAR

Past Experience

Culture Fit

新闻动态

[Hiring] Account Executive Assigned 5 - KSA | Autodesk | Riyadh, Saudi Arabia

**Autodesk** — Riyadh, Saudi Arabia, 🇸🇦 **Work Model:** On-site **Experience:** Mid-level · 7–10 years **Type:** Full-time **Category:** Marketing & Sales **Skills:** SaaS, Salesforce, Construction Tech, Account Management, B2B Sales **Benefits:** Flights, Medical, Gratuity --- **Role overview** Motivated Account Executive needed for Construction Tech sales in KSA, managing the sales cycle from prospect to close. **Key requirements** - 7-10 years of experience in SaaS sales

Reddit

·

2w ago

·

1

Am I a liar? I got hired for a high-paying 3D design job and they think I’m using hardcore CAD software. I’m not.

I need some outside perspective because this is starting to keep me up at night. A few weeks ago I got hired at a company to help design a new product. The pay is honestly way higher than anything I expected. During interviews they mostly focused on my portfolio and how quickly I could iterate concepts. They seemed really impressed. Now that I’m here, everyone seems to assume I’m some kind of industrial desing/mechanical engineering CAD expert. I'm actually self-taught from YouTube. People i

Reddit

·

6w ago

·

419

·

164

[Video Games] Darkstalkers Are Not Dead: the story of Yoshinori Ono's failed attempt at necromancy

# How we got here In the mid-to-late 2000s, Japan's video game scene went through some serious troubles: although plenty of beloved games still came out, the Lost Decade crash had driven several Japanese companies into bankruptcy or consolidation, and several development tools had been deprecated (most famously Autodesk Maya). Because of this, some Japanese designers, like Tecmo's **Tomonobu Itagaki** (3D *Ninja Gaiden*, *Dead or Alive*) and Capcom's **Keiji Inafune** (*Mega Man*), instead turn

Reddit

·

8w ago

·

376

·

46

Autodesk, Inc. $ADSK Shares Sold by Truist Financial Corp - MarketBeat

Source: MarketBeat

News

·

11w ago