Principal Software Security Engineer
AutodeskAbout the role
Job Requisition ID #
24WD84018Position Overview
Do you like computers? Do you like software? Do you enjoy dismantling code/devices/cars/and more? Do you love humans and want to protect them from computer criminals and themselves? Ever read 2600? Phrack? Did you collect all the BlackBadgeRaffle TCG cards at DEFCON32? Then have we got something for you...
At Autodesk, we help improve the designed and built world and make the world a little better with each project. We are committed to building software that empowers our customers to build more energy efficient, low-carbon-footprint buildings. We are leading the transformation of the Architecture, Engineering, and Construction fields by integrating AI technology into our products and building the industry’s first data-driven-connected platform. Autodesk is establishing itself as the Trusted Partner in the AEC industry.
Wouldn’t you love to be a part of this?
Better yet, wouldn’t you love to help keep it all safe and secure!?
Here is your opportunity!
Autodesk is looking for a Principal Product Security Engineer to join us on our journey to revolutionize the AEC industry. In this role, you will add your Offensive Security expertise to a team of passionate and driven technologists. You will be given opportunities to help uncover important security improvements in our products and identify creative ways to improve our systems, processes, and practices. You will have the flexibility to engage across multiple teams and geographies, providing your support, insight, and advice as they work through vulnerability remediation. You will be able to improve the vulnerability and 0-day response processes. You will own and mature the SSDLC (Secure Software Development Lifecycle) across AEC teams. Throughout the year, you will have the ability to attend various Security Conferences and training sessions to sharpen your skills and bring back new ideas, techniques, and approaches.
Responsibilities
Work with the Senior Distinguished Architect, Trust; to document, maintain, and improve the AEC Secure Software Development Lifecycle
Work with the Trust Organization in various Security Vulnerability Management and 0-day response capacities
Manage and mature the AEC security vulnerability and DoD response processes
Act as primary point of contact for AEC 0-day reports and assist in engaging Researchers and Engineers
Proactively fuzz, research, and investigate AEC Products and Processes for Security issues and improvements
Support all AEC Security incident BPM processes
Assist engineering teams in secure code development through expertise
Help with setting
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s