Autodesk Logo

Autodesk

Security Engineer, Secure Posture Management

Posted Yesterday
Be an Early Applicant
In-Office
30 Locations
Senior level
In-Office
30 Locations
Senior level
The Security Engineer will develop and lead secure configuration efforts, implement security strategies, and collaborate with engineering teams to enhance security posture across cloud environments.
The summary above was generated by AI

Job Requisition ID #

25WD93489

Position Overview  

We are seeking experienced and motivated Security Engineer who will develop and lead secure configuration and hardening efforts within our Secure Posture Management team. In this role, you will design, implement and advance Autodesk’s Secure Posture Management strategy for secure configuration baselines, cloud hardening, IaC security, vulnerability visibility, and golden image pipelines. This role requires deep technical expertise, strong hands-on and automation skills, and the ability to influence engineering teams across the organization. You will collaborate and partner with diverse engineering teams across Autodesk.

Your expertise in secure configuration, system hardening, and cloud security will ensure that Autodesk’s systems, services, and platforms meet the highest security standards and align with industry best practices and regulatory requirements.

Job Responsibilities 

•                               Define and execute a unified security posture management strategy including CSPM, secure configuration, golden image pipelines, IaC templates, and vulnerability management. 

•                               Develop and refine standards for secure cloud configurations in alignment with industry frameworks, such as CIS or NIST benchmarks. 

•                               Develop and maintain hardened baselines (CIS, NIST) across cloud environments, Windows, Linux, and container platforms.

•                               Develop security artifacts, tooling and automations using tools such as Python, PowerShell, Groovy or Ruby.

•                               Use Cloud Security Posture Management (CSPM) tooling to continuously monitor multiple cloud environments (AWS, Azure, GCP) for misconfigurations, security gaps and compliance issues. 

•                               Operate and optimize CSPM tooling and drive remediation of cloud misconfigurations.

•                               Regularly reporting on security posture and mitigation progress to executive stakeholders. 

•                               Work with development teams to enhance features and ease of use for our golden image, Infrastructure as Code (IaC) pipelines, and embed secure configurations from design to runtime. 

•                               Monitor and remediate drift from security standards to ensure security across all environments. 

•                               Oversee the secure posture management program and lead remediation efforts across all cloud and data center assets. 

Minimum Qualifications 

•                               Bachelor's degree in computer science, information security, or a related field. 

•                               8+ years of experience in information security or development, with a focus on secure configuration, enterprise security, cloud security, posture management, and vulnerability management. 

•                               Deep understanding of secure configuration and hardening frameworks, such as CIS Benchmarks, DISA STIG, NIST 800-53/190. 

•                               Strong proficiency in development, building automation and security tooling, such as Git, Artifactory, Jenkins, Spinnaker, scripting languages such as Python, PowerShell, Groovy or Ruby.

•                               Extensive experience with CSPM tools and secure configuration tools and platforms such as Tenable, Prisma Cloud, Orca, or Wiz. 

•                               Experience in developing/managing golden image pipelines, CI/CD and IaC templates (Terraform). 

•                               Hands-on experience with cloud providers, AWS, Azure or GCP, and strong knowledge of native security services.

Preferred Qualifications 

•                               Master's degree in computer science, information security, or a related field. 

•                               Certifications such as CISSP, CCSP, OSCP, AWS Security Specialty, or similar.

•                               Hands-on experience across multiple cloud platforms: AWS, Azure, and GCP.

•                               Expertise in secure software development, API automation, and integrating security checks into CI/CD pipelines.

•                               Ability to design and deliver complex security automation at scale (IaC modules, policy-as-code, cloud guardrails).

•                               Strong understanding of compliance frameworks (SOC2, ISO 27001, FedRAMP, PCI-DSS) as they relate to configuration and vulnerability management.

•                               Proven ability to identify potential threats and vulnerabilities.

•                               Ability to lead complex security projects, with hands-on experience to create and develop systems and services. 

•                               Lifelong learner with a commitment to continuous improvement.

•                               Excellent written/verbal communication skills and ability to present complex security topics to non-technical stakeholders.

Learn More

About Autodesk

Welcome to Autodesk! Amazing things are created every day with our software – from the greenest buildings and cleanest cars to the smartest factories and biggest hit movies. We help innovators turn their ideas into reality, transforming not only how things are made, but what can be made.

We take great pride in our culture here at Autodesk – it’s at the core of everything we do. Our culture guides the way we work and treat each other, informs how we connect with customers and partners, and defines how we show up in the world.

When you’re an Autodesker, you can do meaningful work that helps build a better world designed and made for all. Ready to shape the world and your future? Join us!

Salary transparency

Salary is one part of Autodesk’s competitive compensation package. Offers are based on the candidate’s experience and geographic location. In addition to base salaries, our compensation package may include annual cash bonuses, commissions for sales roles, stock grants, and a comprehensive benefits package.

Diversity & Belonging
We take pride in cultivating a culture of belonging where everyone can thrive. Learn more here: https://www.autodesk.com/company/diversity-and-belonging

Are you an existing contractor or consultant with Autodesk?

Please search for open jobs and apply internally (not on this external site).

Top Skills

Artifactory
AWS
Azure
Cspm Tools
GCP
Git
Groovy
Jenkins
Orca
Powershell
Prisma Cloud
Python
Ruby
Spinnaker
Tenable
Terraform
Wiz

Similar Jobs

7 Hours Ago
Hybrid
28 Locations
Entry level
Entry level
Fintech • Machine Learning • Software • Financial Services
Join the HackaTUM challenge for a chance to win prizes. Team registration required; no CV needed. Insights sessions at specified times.
7 Hours Ago
Hybrid
Athens, GRC
Senior level
Senior level
Financial Services
As a Lead Software Engineer, you'll design and develop software solutions, lead technical evaluations, and enhance operational stability in an agile environment, focusing on financial services.
Top Skills: .NetAngularArtificial IntelligenceC#CloudHazelcastKafkaMachine LearningMobileMulti-Threaded ApplicationsRabbitMQReactRedisTypescript
Yesterday
Hybrid
28 Locations
Mid level
Mid level
Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
The AI Backend Python Engineer will design and develop backend systems for generative AI applications, overseeing API delivery and AWS infrastructure while mentoring junior engineers.
Top Skills: AWSCloudFormationDockerFastapiKubernetesLangchainLangfuseLitellmPythonTerraform

What you need to know about the Bristol Tech Scene

Along with Gloucester, Swindon and Bath, Bristol is part of the "Silicon Gorge" tech hub, a region in the U.K. renowned for its high-tech and research-driven industries, with a particular emphasis on sustainability and reducing environmental impact. As the European Green Capital, Bristol is home to 25,000 cleantech companies, including Baker Hughes and unicorn Ovo Energy. The city has committed to achieving net-zero emissions within the next decade.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account