This role guides, defines, and implements the overarching technical data protection strategies and partners across multiple functions as a trusted leader to champion and implement leading data security solutions. You will collaborate with other leaders to shape data security strategies across the company and serve a diverse audience that includes developers and end-users. You will play a crucial role in ensuring that Autodesk's systems and services meet the highest data security standards and align with our industry-leading practices and regulatory requirements. We ask that you have expertise in data security, security engineering, and cloud security to safeguard data across Autodesk.
This is a technical, hands-on position. You may be located anywhere in the United States. You will report to the Sr. Director, Information Security Engineering.
Responsibilities
- Design, implement, and operationalize solutions to ensure data security of infrastructure, applications, and systems, including the selection and deployment of cybersecurity technologies.
- Oversee data security throughout the entire lifecycle of infrastructure and services, from design to runtime.
- Create and establish data security standards, best practices, and assurance processes.
- Build a comprehensive data catalog and implement data governance strategies.
- Collaborate with TPMs and influence users to define and prioritize backlog related to data protection efforts.
- Ensure the data security strategy is aligned with business objectives and reviewed for effectiveness.
- Lead efforts to mature capabilities for data classification and inventory, strengthen security baselines for data protection and handling, and ensure solutions meet rigorous data security and compliance requirements.
- Research new services and emerging technologies that will enhance data security capabilities.
- Establish security metrics and define KPIs for data protection programs.
Minimum Qualifications
- Bachelor's degree in computer science, information security, or a related field (Master's degree preferred).
- 5-7 years of experience in information security with a focus on hands-on security engineering, data protection, enterprise security, cloud security, and solutions architecture.
- Proficiency in designing data protection solutions, such as DSPM, DLP systems, encryption technologies, and data masking/anonymization techniques.
- Familiarity with industry-standard data protection frameworks and best practices.
- In-depth knowledge of IAM principles, including user provisioning, authentication, authorization, and privilege management, with hands-on experience with LDAP, Active Directory, SAML, OAuth, or similar technologies.
- Proficiency in cloud security and experience with cloud providers like AWS, Azure, Google Cloud, or O365, including secure cloud architecture and cloud data protection mechanisms.
- Programming and scripting experience in Python, PowerShell, Shell Scripting, Ruby, or Go.
- Ability to create and develop systems and services to operationalize data protection technologies, requiring a mix of security and solutions engineering skills.
- Strong collaboration skills to work with multiple partners and align teams in security decision-making and solution implementation.
- A commitment to continuous learning and improvement.