Manager, Security Incident Response Operations
Apply NowLocation:
New York, NY, US
Company:
Autodesk focuses on transforming how things are designed and made, empowering creators globally.
Summary:
The Manager, Security Incident Response Operations will lead a team managing security incident investigations and responses. Applicants should have extensive operational experience in security and knowledge of telemetry and incident response frameworks.
Requirements:
Hard Skills: Splunk proficiency, Telemetry integration management, Incident lifecycle management
Experience: Minimum of 5+ years in security operations and incident response, including 2+ years in a managerial role.
Job Description:
Manager, Security Incident Response Operations
Autodesk’s mission is to empower everyone, everywhere to design and make anything. We secure it.
Autodesk’s Security Incident Response department is growing, building a senior team of security analysts in the United States. They participate in a broader security organization, geographically load balanced across the US, EMEA, and India, and lead security investigations across our expansive global footprint.
As a Security Incident Response Manager, you will drive the strategic and operational excellence of our incident response capabilities. You will lead a team of talented security professionals through critical, high-impact investigations. As a recognized Splunk master, you will be responsible for constructing intricate queries to unify data streams from diverse telemetry sources, identifying and tracking IOCs to their root cause. Your experience in building effective data paths from telemetry generating services to SIEM/SOAR systems will empower your team to respond to incidents swiftly and decisively.
Responsibilities
-
Team Leadership & Development: Manage and mentor a domestic team of security analysts dedicated to incident detection, response, and remediation. Develop training programs and career development initiatives to grow junior personnel.
-
Incident Response Oversight: Coordinate and lead the investigation, containment, and resolution of security incidents, ensuring timely responses and accurate root cause analyses.
-
Splunk Expertise: Leverage your advanced Splunk skills to build and optimize queries that integrate multiple data sources, driving actionable intelligence from complex security events.
-
Telemetry Integration: Design and implement robust data pipelines, linking telemetry sources to our SIEM/SOAR systems to enhance real-time monitoring and detection capabilities.
-
Collaboration & Communication: Liaise with cross-functional teams across Autodesk to deliver comprehensive incident reporting and strategic guidance during high-severity incidents.
-
Continuous Improvement: Proactively research emerging threats, refine incident response procedures, and deploy innovative solutions to elevate our security posture.
Minimum Qualifications
-
Experience: Minimum of 5+ years in security operations and incident response, including 2+ years in a managerial role. Proven success in leading high-performing, global or 24/7 security operations teams under high-pressure conditions is essential.
-
Technical Skills: Advanced proficiency with Splunk, with demonstrated expertise in designing and executing intricate queries that integrate and analyze data from diverse sources. A proven track record in optimizing SIEM environments, including automating detection workflows and building effective telemetry pipelines, is highly valued.
-
Operational Expertise: Extensive experience in telemetry integration and managing the complete incident lifecycle—from initial detection to root cause analysis and remediation. Familiarity with incident response frameworks, threat detection methodologies, and advanced forensics techniques is required to drive continuous improvement and operational excellence. Work closely with our Detections Engineering team to help tune Risk Based alerts post investigation.
-
Soft Skills: Exceptional leadership, communication, and strategic thinking skills. A successful candidate will be an inspiring mentor capable of cultivating a collaborative team culture, articulating complex security concepts to both technical and non-technical stakeholders, and steering cross-functional initiatives.
-
Cloud Agnostic: Comprehensive knowledge of cloud security operations across Azure, AWS, and GCP. Experience in configuring and integrating security tools in hybrid or multi-cloud environments is essential to maintain robust security postures across diverse platforms.
Salary transparency
Salary is one part of Autodesk’s competitive compensation package. For U.S.-based roles, we expect a starting base salary between $140,100 and $226,600. Offers are based on the candidate’s experience and geographic location, and may exceed this range. In addition to base salaries, our compensation package may include annual cash bonuses, commissions for sales roles, stock grants, and a comprehensive benefits package.