Product Security Incident Response Manager at Autodesk responsible for external security assessments, penetration testing, and team leadership. Balancing technical work with mentorship to improve security posture.
Responsibilities
Lead and evolve Autodesk’s external security assessments program, including penetration testing, vulnerability disclosure, security advisories, and the bug bounty program
Manage and mentor a team of application security engineers, setting clear goals, providing technical guidance, and supporting career growth
Plan, execute, and oversee penetration testing activities across Autodesk products and services, including scoping, execution, reporting, and remediation tracking
Own Autodesk’s vulnerability disclosure process, including intake, triage, coordination with product teams, and publication of security advisories
Partner closely with PSIRT, Legal, Trust, and Product teams to ensure vulnerabilities are handled consistently and responsibly
Manage and continuously improve the bug bounty program, including researcher engagement, triage workflows, reward strategy, and signal-to-noise optimization
Requirements
Strong experience in application security, offensive security, or vulnerability management
Hands-on experience conducting penetration tests for web applications, APIs, or cloud services
Experience managing or significantly contributing to a vulnerability disclosure program and/or bug bounty platform
Prior experience leading, mentoring, or managing engineers in a technical security role
Solid understanding of common vulnerability classes and exploitation techniques (e.g., OWASP Top 10)
Strong communication skills and comfort working with customers, engineers, product managers, and executive stakeholders
Security Engineer enhancing cybersecurity tools and solutions for The Walt Disney Company. Performing system analyses and developing security configurations for improved protection against cyber threats.
Security Operations Lead responsible for security operations aligning with policies and compliance. Handling incident response, vulnerability management, and supporting IT teams with security expertise.
Cyber Security Specialist protecting digital estate from threats at the University of Edinburgh. Focused on identifying and mitigating cyber risks while supporting teaching and research services.
Lead Specialist in Security Operations, enhancing detection engineering and incident response at Pearson. Collaborate with teams and drive process improvements in a high - paced environment.
Cybersecurity Incident Response Analyst detecting and responding to cyber threats at NOV. Collaborating using AI tools to enhance cybersecurity operations across IT, cloud, and OT environments.
Security Engineer II at AvidXchange enhancing security operations and incident response. Collaborating with teams to develop, tune and improve security monitoring and automation capabilities.
Director leading security operations strategy and overseeing investigations at Ford Motor Company. Responsible for global investigations, crisis management, and team leadership.
Lead global Cyber Detect and Respond team at Assa Abloy, ensuring timely incident response and security compliance. Oversee operations while collaborating across IT and business functions for effective threat management.