Sr. Principal IAM Security Engineer

Autodesk

Remote

Quick summary

Work type
Remote
Location
Remote
Salary
$153,000–$273,460 / yr
Posted
3 days ago

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $187k
This role $213k
$123k most similar roles pay here $290k

This role pays more than 70% of similar roles. Most pay $153,607–$220,000 — the shaded band above. At the midpoint, this role pays about $213k versus about $187k for comparable roles.

Based on 240 similar postings.

Employer

About Autodesk

Autodesk is a global leader in 3D design, engineering, and entertainment software, enabling users to imagine, design, and create a better world.

Autodesk currently has 45 open roles on FindRole.

Listed pay typically runs $139,000–$249,260 across 44 roles with salary data.

Most-posted roles

View all roles at Autodesk

At a glance

TL;DR · Sr. Principal IAM Security Engineer

Autodesk’s Cyber Defense team seeks a Sr. Principal IAM Security Engineer to lead the strategy and execution of modern Identity and Access Management (IAM) for both human and non-human identities, including service accounts, workloads, and AI/agent identities. This role involves designing secure-by-default identity guardrails that enable engineering teams to operate efficiently while minimizing systemic risks. Key responsibilities include establishing IAM strategies, building controls for non-human identities, enabling secure AI identity behaviors, embedding AI into IAM platforms, and ensuring operational excellence through threat detection and response. The ideal candidate has over 10 years of experience in IAM/security engineering, expertise in OAuth2, OIDC, SAML, JWT, and cloud IAM ecosystems, and strong software engineering fundamentals. This strategic role drives measurable risk reduction and alignment with Zero Trust principles across multiple business units.

What you'll do

  • Define enterprise IAM strategy for human and non-human identities, including lifecycle management.
  • Build and operationalize controls for service accounts and workload identities across environments.
  • Implement secure patterns for AI acting on behalf of users or services with least privilege access.
  • Embed AI capabilities into IAM platforms to enable automated identity governance and threat detection.
  • Drive consistent authorization models and policy as code across workforce and product systems.
  • Improve detection and response mechanisms for identity threats, creating metrics for platform adoption.

What we're looking for

  • 10+ years of IAM/security engineering experience at enterprise scale.
  • Proven expertise in securing non-human identities across cloud environments.
  • Deep knowledge of authentication standards including OAuth2, OIDC, SAML, JWT.
  • Strong authorization design skills with RBAC/ABAC models and policy enforcement.
  • Experience designing systems where software agents act on behalf of users/services.
  • Familiarity with cloud IAM ecosystems and privileged access management practices.
  • Ability to define guardrails for agentic actions and ensure measurable risk reduction.

More like this

Similar roles

Principal Security Engineer

Zillow

Remote (Remote-Usa, US) 44 days ago $168,600$269,400
AWS GCP Azure Threat Modeling Secure Design Reviews Penetration Testing AI Security Data Protection Identity Management Networking Application Security Standards Cloud-Native Security Python Java Go Security Tooling CI/CD
Remote

Principal Security Engineer

Levi Strauss & Co

Remote (San Francisco, Ca, Usa, US) 15 days ago $135,200$198,300
Python CI/CD Semantic Kernel LangChain KQL SPL YARA-L MITRE ATT&CK Terraform AWS Azure Docker Prometheus Grafana PostgreSQL GitLab Key Vault Infrastructure-as-Code
Remote

Principal Security Engineer

Cboe Global Markets

Chicago, IL 9 days ago $148,750$192,500
Databahn Google Secops Bindplane ProofPoint Microsoft Security Defender for Endpoint Defender for Identity Defender for CloudApps Purview DLP Intune Linux Unix Windows Active Directory EntraID CI/CD Python PowerShell Bash Prometheus Grafana Kubernetes Terraform AWS Azure CISSP CASP
Hybrid

Sr. Security Engineer

CoStar Group

Arlington, VA +1 30 days ago
AWS NGFW Python CASB SSE Terraform Azure DevOps CI/CD Subnetting Routing Network Isolation SSO OAuth API Tokens Service Principals Prometheus Grafana
Hybrid

Sr. Engineer, Information Security

Green Dot Corp

Los Angeles, CA 43 days ago $113,400$162,000
IAM Sailpoint Saviynt Okta PCI DSS SOC2 ISO 27001 CIS Benchmarks MITRE ATT&CK Terraform AWS Azure GCP Python Bash Kubernetes Docker CI/CD Prometheus Grafana
Hybrid

Sr. Engineer, Information Security

Green Dot Corp

Los Angeles, CA 43 days ago $113,400$162,000
IAM Sailpoint Saviynt Okta PCI DSS SOC2 ISO 27001 CIS Benchmarks MITRE ATT&CK Terraform AWS Kubernetes Python CI/CD
Hybrid