Application Security Engineer

Autodesk, Inc.

Bengaluru

On-site

INR 2,500,000 - 3,500,000

Full time

8 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Autodesk, Inc. seeks a security-focused professional to model threats for AI-enabled features and LLM-powered systems. You will evaluate risks like prompt injections and data leakage, and help craft secure development patterns across the product lifecycle.

You will build automation to scale threat modeling, collaborate with product and engineering teams, and contribute to security guidance and guardrails for AI applications.

Qualifications

  • Foundational understanding of application security principles.
  • Familiarity with STRIDE and threat modeling concepts.
  • Experience with AI/ML security risks and constraints.
  • Ability to develop automation using Python or Go.
  • Hands-on experience with AI-assisted IDEs or coding agents.
  • Experience with Git-based version control and CI/CD practices.
  • Curiosity, ownership, and collaborative mindset.

Responsibilities

  • Lead threat modeling sessions for AI/LLM features with engineering teams.
  • Evaluate AI systems for prompt injection, data leakage, and access controls.
  • Develop and maintain AI security guidance and secure patterns.
  • Create automation to scale threat modeling and security reviews.
  • Collaborate with Product and Platform teams to implement mitigations.

Skills

Threat modeling
AI security
Python
Go
CI/CD
Git
Automation tooling
Security testing

Education

Bachelor's degree in Computer Science or related field

Tools

Git
CI/CD tooling
AI IDEs / coding agents

Job description

Position Overview

Our team of security experts helps Autodesk design, build, deploy, and maintain secure products. We embed security throughout the product development lifecycle, from inception, design, development, and testing to cloud operations and our response to existing and emerging threats. Our goal is to stay ahead of evolving security threats by combining deep expertise, technology, and automation to protect Autodesk products and the environments in which they operate. We maintain a strong focus on protecting customer data and investments by strengthening our applications, underlying services, and networks. As part of this team, you will help Autodesk build and deliver Artificial Intelligence (AI)-powered products securely. You will partner with Product and Platform teams to threat model new features and systems, with a particular focus on applications that use Large Language Models (LLMs), AI agents, and AI-assisted workflows. You will also develop code and automation to scale security practices, using modern AI-assisted development tools as part of your daily workflow. This is an opportunity to develop your product security expertise at the forefront of AI while helping Autodesk stay ahead of emerging security threats.

Responsibilities
  • Conduct and facilitate threat modeling sessions with Engineering teams to identify assets, trust boundaries, attack paths, security risks, and appropriate mitigations for new and evolving product capabilities.
  • Threat model AI and Large Language Model (LLM)-powered systems, including agentic workflows, Retrieval-Augmented Generation (RAG) pipelines, tool and plugin integrations, and Model Context Protocol (MCP) servers.
  • Evaluate AI systems for security risks such as prompt injection, data leakage, excessive agency, insecure output handling, and inappropriate data access.
  • Develop and maintain Autodesk’s AI security guidance, reference architectures, and secure design patterns using established frameworks such as the Open Worldwide Application Security Project (OWASP) Top 10 for Large Language Model Applications and MITRE Adversarial Threat Landscape for Artificial-Intelligence Systems (ATLAS).
  • Perform security reviews and hands‑on testing of AI capabilities, including adversarial prompt testing and validation of security guardrails, permissions, and data access controls.
  • Develop automation and tooling that scale threat modeling and AI security reviews, including templates, intake workflows, analysis scripts, and LLM‑assisted tools.
  • Use AI‑assisted development tools such as Cursor, GitHub Copilot, and Claude Code to accelerate security tooling development while helping teams adopt these technologies securely.
  • Track findings from threat models and security reviews through remediation, partnering with Product and Engineering teams to implement practical, risk‑based solutions.
  • Contribute to technical documentation, training, and security best practices that help developers design and build secure AI‑enabled products.
  • Collaborate with developers, security professionals, and cross‑functional stakeholders to continuously improve Autodesk’s product security practices.
Minimum Qualifications
  • Foundational understanding of application security principles and secure software design.
  • Familiarity with threat modeling concepts and methodologies such as Spoofing, Tampering, Repudiation, Information Disclosure, Denial of Service, and Elevation of Privilege (STRIDE), data flow diagrams, and attack trees.
  • Working knowledge of how Large Language Model (LLM)-based applications are designed and developed, including an understanding of their unique security risks.
  • Ability to develop automation and security tooling using Python, Go, or an equivalent programming language.
  • Hands‑on experience using AI‑assisted Integrated Development Environments (IDEs) or coding agents as part of a software development workflow.
  • Familiarity with modern software development practices, including Git‑based version control and Continuous Integration and Continuous Deployment (CI/CD).
  • Strong ownership, curiosity, problem‑solving skills, and willingness to learn in a collaborative environment.
Preferred Qualifications
  • Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent professional experience.
  • Experience performing threat modeling or security testing for Artificial Intelligence and Machine Learning (AI/ML) systems.
  • Experience with AI red teaming or adversarial security testing.
  • Experience developing tools or integrations using Large Language Model (LLM) Application Programming Interfaces (APIs), agent frameworks, or Model Context Protocol (MCP).
  • Familiarity with AI security frameworks such as the OWASP Top 10 for Large Language Model Applications, MITRE ATLAS, or the National Institute of Standards and Technology Artificial Intelligence Risk Management Framework (NIST AI RMF).
  • Experience working with cloud‑native or containerized environments.
  • Strong written and verbal communication skills with the ability to collaborate effectively with developers and security stakeholders.
The Ideal Candidate

The ideal candidate is a curious and technically driven security professional who combines foundational application security expertise with a strong interest in Artificial Intelligence security and secure software development.

  • Applies application security principles and threat modeling methodologies to identify and mitigate risks across modern software systems.
  • Analyzes security challenges using structured problem‑solving approaches and established security practices.
  • Exercises sound judgment when evaluating security risks and determining appropriate mitigation strategies.
  • Takes ownership of assigned security reviews, tooling, and remediation activities while seeking guidance on unfamiliar or highly complex situations.
  • Develops practical automation and tooling that improve the efficiency and scalability of security processes.
  • Demonstrates curiosity about emerging Artificial Intelligence technologies and continuously develops expertise in AI security threats and mitigation techniques.
  • Collaborates effectively with Product, Engineering, Platform, and Security teams to develop practical and secure solutions.
  • Communicates security risks and recommendations clearly to both security and engineering audiences.
  • Incorporates feedback from experienced team members to continuously strengthen technical and security expertise.
  • Balances innovation with responsible security practices when using Artificial Intelligence‑assisted development tools.
  • Contributes to documentation, knowledge sharing, and continuous improvement across the Product Security organization.
  • Demonstrates accountability, adaptability, and a strong commitment to protecting Autodesk products and customer data.
Salary Transparency

Salary is one part of Autodesk’s competitive compensation package. Offers are based on the candidate’s experience and geographic location. In addition to base salaries, our compensation package may include annual cash bonuses, commissions for sales roles, stock grants, and a comprehensive benefits package.

Belonging

We take pride in cultivating a culture of belonging where everyone can thrive. Learn more here: https://www.autodesk.com/company/global-belonging

In-Person Onboarding and Identity Verification

This role may require in-person onboarding and/or in-person ID verification.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Application Security Engineer
Application Security Engineer

Joinimagine • Bengaluru

On-site
INR 1,800,000 - 2,400,000
Application Security Engineer
Application Security Engineer

Autodesk, Inc. • Karnataka

On-site
INR 2,000,000 - 3,200,000
Principal Network Security Engineer
Principal Network Security Engineer

Autodesk • India

On-site
INR 3,000,000 - 6,000,000
Senior Principal Applications Engineer
Senior Principal Applications Engineer

Autodesk, Inc. • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Principal Network Security Engineer
Principal Network Security Engineer

Joinimagine • India

On-site
INR 4,500,000 - 7,000,000
Senior Product Manager - Identity & Access Management Platform
Senior Product Manager - Identity & Access Management Platform

Autodesk India Pvt Ltd. • Bengaluru

Hybrid
INR 4,500,000 - 7,500,000
Principal Network Security Engineer
Principal Network Security Engineer

Autodesk • Bengaluru

On-site
INR 3,000,000 - 6,000,000
Technical Support Manager
Technical Support Manager

Joinimagine • Bengaluru

On-site
INR 2,600,000 - 4,200,000
Principal Technical Consultant - Full Stack (.NET + React) , AEC
Principal Technical Consultant - Full Stack (.NET + React) , AEC

Autodesk • Bengaluru

On-site
INR 3,000,000 - 5,500,000
Senior Technical Consultant – Full Stack (.NET, React), AEC / D&M
Senior Technical Consultant – Full Stack (.NET, React), AEC / D&M

Autodesk • Bengaluru

On-site
INR 1,500,000 - 2,400,000