> Markdown version of [/jobs/ext/2182039-security-engineer](https://www.wearedevelopers.com/jobs/ext/2182039-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** BINGHAMTOM UNIVERSITY - **Location:** United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Automation of Tests, Microsoft Azure, PCI Data Security Standards, Software Engineering, Systems Integration, Software Vulnerability Management, Scripting, Autodesk Autocad, Security Orchestration, Automation & Response - **Published:** August 22, 2026 - **Apply:** https://www.themuse.com/jobs/autodesk/midlevel-security-engineer-secure-posture-management?utm_source=uconnect ## About the Role * Bachelor's degree in computer science, information security, or a related field. * 2 - 5 years of experience in information security, DevOps or development, with a good understanding of automation, CI/CD and orchestration tooling like Spinnaker, Ansible, Harness, Kubernetes, etc., golden image pipelines, IaC templates (Terraform), or could security. * Experience in development, scripting languages, building and testing automation. Using tools such as Git, Artifactory, Jenkins, Spinnaker, or scripting languages such as Python, PowerShell, Groovy or Ruby. * Experience with cloud providers, AWS, Azure or GCP. * Familiarity with secure configuration and hardening frameworks, such as CIS Benchmarks, DISA STIG or NIST 800-53/190. * Familiarity with CSPM tools and secure configuration tools and platforms such as Tenable, Prisma Cloud, Orca, or Wiz. Preferred Qualifications * Certifications such as AWS Associate level certificates, Azure Associate level certificates or similar security focused certificates (Security+, etc.). * Knowledge of secure software development, API automation, and integrating security checks into CI/CD pipelines. * Ability to develop security automation at scale (IaC modules, policy-as-code, cloud guardrails). * Ability to identify potential threats and vulnerabilities and recommend the path to fixing them. * Understanding of compliance frameworks (SOC2, ISO 27001, FedRAMP, PCI-DSS) as they relate to configuration and vulnerability management. * Lifelong learner with a commitment to continuous improvement. ## Description We are seeking motivated Security Engineer who will work on secure configuration and hardening efforts within our Secure Posture Management team. In this role you will implement and support Autodesk's Secure Posture Management strategy for secure configuration baselines, cloud hardening, IaC security, vulnerability management, and golden image pipelines. This role requires hands-on skills, and the ability to work with and learn from engineering teams across the organization. You will collaborate and partner with diverse engineering teams across Autodesk., * Support the unified security posture management strategy including CSPM, secure configuration, golden image pipelines, IaC templates, and vulnerability management. * Contribute to standards for secure cloud configurations in alignment with industry frameworks, such as CIS or NIST benchmarks. * Develop and maintain hardened baselines (CIS, NIST) across cloud environments, Windows, Linux, and container platforms. * Develop security artifacts, tooling and automations using tools such as Python, PowerShell, Groovy or Ruby. * Use Cloud Security Posture Management (CSPM) tooling to continuously monitor multiple cloud environments (AWS, Azure, GCP) for misconfigurations, security gaps and compliance issues. * Work with development teams to enhance features and ease of use for our golden image, Infrastructure as Code (IaC) pipelines, and embed secure configurations from design to runtime. * Monitor and remediate drift from security standards to ensure security across all environments. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Developer Tools for Microsoft Azure](https://www.wearedevelopers.com/videos/450-developer-tools-for-microsoft-azure) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [Develop enterprise-ready applications for Microsoft Teams with Azure resources on modern web technologies](https://www.wearedevelopers.com/videos/187-develop-enterprise-ready-applications-for-microsoft-teams-with-azure-resources-on-modern-web-technologies) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)