Product Security Incident Response Manager at Autodesk responsible for external security assessments, penetration testing, and team leadership. Balancing technical work with mentorship to improve security posture.
Responsibilities
Lead and evolve Autodesk’s external security assessments program, including penetration testing, vulnerability disclosure, security advisories, and the bug bounty program
Manage and mentor a team of application security engineers, setting clear goals, providing technical guidance, and supporting career growth
Plan, execute, and oversee penetration testing activities across Autodesk products and services, including scoping, execution, reporting, and remediation tracking
Own Autodesk’s vulnerability disclosure process, including intake, triage, coordination with product teams, and publication of security advisories
Partner closely with PSIRT, Legal, Trust, and Product teams to ensure vulnerabilities are handled consistently and responsibly
Manage and continuously improve the bug bounty program, including researcher engagement, triage workflows, reward strategy, and signal-to-noise optimization
Requirements
Strong experience in application security, offensive security, or vulnerability management
Hands-on experience conducting penetration tests for web applications, APIs, or cloud services
Experience managing or significantly contributing to a vulnerability disclosure program and/or bug bounty platform
Prior experience leading, mentoring, or managing engineers in a technical security role
Solid understanding of common vulnerability classes and exploitation techniques (e.g., OWASP Top 10)
Strong communication skills and comfort working with customers, engineers, product managers, and executive stakeholders
Cyber Defender protecting Ontinue’s AI - powered MXDR customers through SOC threat detection and response. Investigating threats across identity, endpoint, network, and cloud environments.
Security Operations Team Lead building Safe Software’s cybersecurity operations for FME, its enterprise data integration platform. Leading incident response, security tooling, compliance, and team growth.
SOC analyst monitoring and responding to cyber threats for Wepoint’s digital transformation clients. Investigating escalated alerts and improving 24×7 security operations.
SOC cybersecurity analyst monitoring and responding to cyber threats for Wepoint’s digital transformation clients. Improving 24×7 detection, investigation, and incident response capabilities.
Senior Security Operations Engineer monitoring incidents and leading forensics for Samsara’s IoT - connected operations platform. Building security automation and supporting insider - threat investigations.
Senior SOC analyst leading threat detection, investigations, and incident response for Financeit, a Canadian point - of - sale financing provider. Building its new SOC’s automation, AI - threat coverage, and operational standards.