
Application Security Engineer
Autodesk · Posted Oct 1
3D design, engineering, architecture, and entertainment software solutions
Get a personal compatibility score
Add a resume for personal matches
About the role
Autodesk's product security team helps the company design, build, deploy, and maintain secure products by embedding security across the product development lifecycle, from design and testing to cloud operations and threat response. The team combines deep expertise, technology, and automation to protect Autodesk products, customer data, and the environments in which they run, with a growing focus on AI-powered products. This role partners with Product and Platform teams to threat model new features and systems — particularly LLM, AI agent, and AI-assisted workflows — and to build code, automation, and security guidance that scale product security practices.
What you will do
- Conduct and facilitate threat modeling sessions with Engineering teams to identify assets, trust boundaries, attack paths, security risks, and appropriate mitigations for new and evolving product capabilities
- Threat model AI and Large Language Model (LLM)-powered systems, including agentic workflows, Retrieval-Augmented Generation (RAG) pipelines, tool and plugin integrations, and Model Context Protocol (MCP) servers
- Evaluate AI systems for security risks such as prompt injection, data leakage, excessive agency, insecure output handling, and inappropriate data access
- Develop and maintain Autodesk's AI security guidance, reference architectures, and secure design patterns using established frameworks such as the Open Worldwide Application Security Project (OWASP) Top 10 for Large Language Model Applications and MITRE Adversarial Threat Landscape for Artificial-Intelligence Systems (ATLAS)
- Perform security reviews and hands-on testing of AI capabilities, including adversarial prompt testing and validation of security guardrails, permissions, and data access controls
- Develop automation and tooling that scale threat modeling and AI security reviews, including templates, intake workflows, analysis scripts, and LLM-assisted tools
- Use AI-assisted development tools such as Cursor, GitHub Copilot, and Claude Code to accelerate security tooling development while helping teams adopt these technologies securely
- Track findings from threat models and security reviews through remediation, partnering with Product and Engineering teams to implement practical, risk-based solutions
- Contribute to technical documentation, training, and security best practices that help developers design and build secure AI-enabled products
- Collaborate with developers, security professionals, and cross-functional stakeholders to continuously improve Autodesk's product security practices
Skills used in this role
What the employer is looking for
- Foundational understanding of application security principles and secure software design
- Familiarity with threat modeling concepts and methodologies such as Spoofing, Tampering, Repudiation, Information Disclosure, Denial of Service, and Elevation of Privilege (STRIDE), data flow diagrams, and attack trees
- Working knowledge of how Large Language Model (LLM)-based applications are designed and developed, including an understanding of their unique security risks
- Ability to develop automation and security tooling using Python, Go, or an equivalent programming language
- Hands-on experience using AI-assisted Integrated Development Environments (IDEs) or coding agents as part of a software development workflow
- Familiarity with modern software development practices, including Git-based version control and Continuous Integration and Continuous Deployment (CI/CD)
- Strong ownership, curiosity, problem-solving skills, and willingness to learn in a collaborative environment
Preferred qualifications
- Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent professional experience
- Experience performing threat modeling or security testing for Artificial Intelligence and Machine Learning (AI/ML) systems
- Experience with AI red teaming or adversarial security testing
- Experience developing tools or integrations using Large Language Model (LLM) Application Programming Interfaces (APIs), agent frameworks, or Model Context Protocol (MCP)
- Familiarity with AI security frameworks such as the OWASP Top 10 for Large Language Model Applications, MITRE ATLAS, or the National Institute of Standards and Technology Artificial Intelligence Risk Management Framework (NIST AI RMF)
- Experience working with cloud-native or containerized environments
- Strong written and verbal communication skills with the ability to collaborate effectively with developers and security stakeholders
Benefits and support
- Annual cash bonuses
- Stock grants
About Autodesk
Autodesk is a global leader in 3D design, engineering, and entertainment software, providing solutions for architecture, engineering, construction, product design, and media creation. Its flagship products, such as AutoCAD, Revit, and Fusion 360, empower professionals across industries to imagine, design, and make a better world. As a pioneer in the space, the company continues to drive innovation through cloud collaboration, digital twins, and AI-powered design workflows.
- Industry
- Software
- Company size
- 10001+ employees
- Founded
- 1982
- Location
- San Francisco, California, USA
- Funding stage
- Public Company
Leadership
President and Chief Executive Officer
Executive Vice President and Chief Financial Officer
Executive Vice President and Chief Technology Officer
Executive Vice President and Chief Operating Officer
Chief Marketing Officer
Recent coverage
Autodesk PR
Autodesk Advances Agentic AI in Its Three Industry Clouds2026-10-06
Autodesk PR
Autodesk names Diana Colella to lead architecture, engineering and construction business2026-10-06
Autodesk PR
MotionMaker in Maya named to Fast Company's 2026 Next Big Things in Tech list2026-10-06
Autodesk
Closing the gap between what we can imagine and what we can build: Autodesk University highlights Autodesk AI2026-09-15