PTC Logo

PTC

Principal SaaS Security Engineer

Posted 2 Days Ago
Be an Early Applicant
In-Office
Boston, MA
118K-165K Annually
Senior level
In-Office
Boston, MA
118K-165K Annually
Senior level
As a Principal SaaS Security Engineer, you'll oversee security operations, compliance, incident response, and vulnerability management in cloud environments, particularly focusing on FedRAMP compliance.
The summary above was generated by AI

Our world is transforming, and PTC is leading the way. Our software brings the physical and digital worlds together, enabling companies to improve operations, create better products, and empower people in all aspects of their business. 

Our people make all the difference in our success. Today, we are a global team of nearly 7,000 and our main objective is to create opportunities for our team members to explore, learn, and grow – all while seeing their ideas come to life and celebrating the differences that make us who we are and the work we do possible.  

Principal Security Engineer-SaaS

JR110938

Onshape is a next-generation, global Software-as-a-Service (SaaS) product development platform that helps businesses of all sizes modernize and accelerate their design and manufacturing processes. The cloud-native platform is the only all-in-one system that combines robust computer-aided design (CAD) with powerful data management and collaboration tools. Onshape helps extended design teams work together faster from any location and helps executives make better decisions with real-time business analytics and unprecedented visibility into their company’s operations.

We are seeking a Principal Security Engineer-SaaS to lead the design, implementation, and continuous improvement of security for our cloud-native SaaS platform. This role is deeply technical and hands-on, focused on threat detection, vulnerability management, secure architecture, and SecOps integration. Compliance knowledge (e.g., FedRAMP, NIST) is a plus but secondary to strong security engineering expertise.

Key Responsibilities

  • Secure Architecture & Design
    • Architect and implement security controls for multi-tenant SaaS environments for both commercial and US federal customers
    • Harden cloud infrastructure (AWS preferred) and enforce least-privilege IAM policies.
    • Integrate encryption and key management solutions for data at rest and in transit.
  • Threat Detection & Incident Response
    • Configure and monitor security tools like Wiz and Crowdstrike. Guide remediation efforts.
    • Develop and maintain SIEM rules and dashboards for real-time threat monitoring.
    • Lead incident response efforts, including root cause analysis and remediation.
  • Vulnerability Management
    • Own vulnerability scanning, prioritization, and remediation across services.
    • Tune automated scanning in CI/CD pipelines using tools like Black Duck, or Checkmarx.
  • DevSecOps & Automation
    • Build scripts and automation for security posture validation and drift detection.
  • Collaboration & Leadership
    • Partner with engineering teams to integrate security best practices early in development.
    • Mentor junior engineers and advocate for secure coding principles.

Required Qualifications

  • 8+ years in security engineering, with at least 3 years in SaaS or cloud-native environments (DevSecOps).
  • Deep expertise in AWS security services (IAM, KMS, Security Hub, GuardDuty).
  • Strong background in vulnerability management, SIEM tools (Splunk, Opensearch), and automation scripting (Terraform, Ansible, Python).
  • Experience with container security and orchestration (Docker, Kubernetes).
  • Experience securing Linux deployments.

Nice-to-Have

  • Working knowledge of FedRAMP, NIST SP 800-53, or similar compliance processes.
  • Relevant certifications: CISSP, CCSP, AWS Security Specialty.

Why Join Us?

  • Work on cutting-edge SaaS security challenges.
  • Influence architecture and security strategy at scale.
  • Collaborate with a team passionate about building secure, resilient systems.

Work Environment:

The candidate may be required to participate in an on-call rotation to respond to security incidents.

The SecOps Engineer position will be a member of the Onshape Technical Operations team. This is a primarily US-based operations, site reliability, compliance, and security team. The team is part of Onshape Engineering and works very closely with other teams in engineering to deliver a reliable, secure service to our customers.

PTC carefully considers a wide range of factors when determining compensation. The anticipated annual salary range for this position is between $118,000 - 165,000. The anticipated annual salary range encompasses both the base salary and the on-target incentive compensation that may be attained in this role. The salary range reflects a good-faith estimate of compensation at the time of posting. 

Actual compensation may vary based on a candidate's skills, qualifications, experience, and location. Eligible employees also have the opportunity to become a PTC shareholder through our employee share purchase program (ESPP) which allows for the purchase of discounted PTC stock. Certain roles may also be eligible for participation in our equity programs. Employees may be eligible for medical, dental and vision insurance, paid time off and sick leave, tuition reimbursement, 401(k) contributions and employer match, flexible spending accounts, life insurance, disability coverage and if you are an office-assigned employee, a generous commuter subsidy. All total rewards and benefits programs are subject to plan eligibility and other terms and conditions.  

For more information about PTC’s comprehensive benefits, please visit our Careers Page. 

Applications will be accepted on an on-going basis. 

At PTC, we believe in the power of diverse ideas and perspectives. As a global company that values and respects all identities, cultures, and perspectives, we strive to create an inclusive PTC for ALL through an environment where everyone feels like they belong and are empowered to bring their true, authentic selves to work. Proud to be an Equal Opportunity Employer, we welcome applicants from all backgrounds and hire without regard to race, national origin, religion, age, color, ethnicity, ancestry, marital status, sex (including pregnancy), sexual orientation, gender identity, gender expression, genetic information, disability, veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

PTC endeavors to make ptc.com/careers accessible to all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact PTC's Talent Acquisition team at [email protected]. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications.

Life at PTC is about more than working with today’s most cutting-edge technologies to transform the physical world. It’s about showing up as you are and working alongside some of today’s most talented industry leaders to transform the world around you. 

If you share our passion for problem-solving through innovation, you’ll likely become just as passionate about the PTC experience as we are. Are you ready to explore your next career move with us?

We respect the privacy rights of individuals and are committed to handling Personal Information responsibly and in accordance with all applicable privacy and data protection laws. Review our Privacy Policy here."

Top Skills

AWS
Crowdstrike
Fedramp
Itar
Nist Sp 800-53
Opensearch
SIEM
Sumologic
Wiz
HQ

PTC Boston, Massachusetts, USA Office

121 Seaport Blvd, Boston, MA, United States, 02210

Similar Jobs

4 Hours Ago
Hybrid
Cambridge, MA, USA
Internship
Internship
Artificial Intelligence • Fintech • Machine Learning • Natural Language Processing • Software • Generative AI
As a Machine Learning Intern, you'll apply advanced NLP techniques, design scalable ML systems, and collaborate on automating ML workflows with a diverse team.
Top Skills: Agentic OrchestrationAirflowAmazon EksArizeAWSAws AthenaContainerizationDeep ResearchDeepspeedDglDvcGnnsGradioGrafanaHuggingfaceInformation RetrievalJenkinsJupyterLabelboxLangfuseLanggraphLightgbmLitellmLlm Code GenerationLlm Tool UtilizationMatplotlibMulti-Turn ConversationalityOpensearchPandasPostgres/PgvectorPyTorchRayS3SklearnSqliteStreamlitTextual Rag SystemsTransformersVllmWeights & BiasesXgboost
4 Hours Ago
Hybrid
3 Locations
Entry level
Entry level
Automotive • eCommerce • Hardware • Music • Retail • Software • Wearables
Bose's Global Supply Chain Rotational Program offers recent graduates a two-year experience with rotations in several functional areas to enhance their understanding of supply chain management.
Top Skills: Ai ToolsConfluenceExcelJIRAPowerPointSAP
6 Hours Ago
Easy Apply
In-Office or Remote
2 Locations
Easy Apply
135K-200K Annually
Senior level
135K-200K Annually
Senior level
Healthtech • Software
Drive strategic insights and operational efficiency in the Commercial organization by developing strategies, analyzing data, and leading initiatives to enhance market effectiveness.
Top Skills: LookerSalesforceTableau

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account