Security Engineer, FedRamp/GovCloud at Autodesk
Atlanta, GA
$139,000–$249,260from the description
Jul 27, 2026
Atlanta, GA
Jul 29, 2026
What this job asks for AI summary
A Product Security Engineer role embedded in Autodesk's Fusion Platform organization, responsible for application security reviews, threat modeling, vulnerability assessments, and penetration testing across the product and infrastructure. The position also drives compliance with FedRAMP and SOC2 audit processes, leads cross-team security programs, and supports incident response and business continuity efforts. Suited to an experienced security practitioner comfortable working across engineering, product, and security operations teams.
Senior level · 5+ years · Full-time
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $132,021 (middle half $99,961–$167,095). This posting is about at that midpoint.
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 29, 2026. It is a model, not a headcount.
Why we read it this way (7)
The posting does not specify a work location city or state beyond 'U.S.-based'; no CBSA could be determined.
A Bachelor's degree in a relevant field is listed under Minimum Qualifications, but the posting explicitly accepts 'equivalent experience' as a substitute, so no formal degree is hard-required.
U.S. citizenship or lawful permanent residency is required due to FedRAMP/government contracting obligations, but no specific security clearance is gated — the role does not require holding or obtaining a clearance.
AWS is listed parenthetically as 'preferably' in the requirements block, so it is treated as preferred rather than a hard gate.
Compliance frameworks (ITAR, ISO 27000, GDPR, CCPA) are listed as examples alongside the hard-required SOC2/FedRAMP ('like: SOC2, FedRAMP, ITAR…'), suggesting familiarity with any equivalent standard satisfies the requirement; SOC2 and FedRAMP are called out explicitly in the responsibilities and are treated as hard gates, while the others are marked preferred.
The title carries no seniority level word; advertised seniority is Unspecified. The 5+ years requirement and cross-team leadership scope support a Senior classification.
Ignored 2 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): secure software development, security incident management.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.