Senior Security Engineer
MicrosoftAbout the role
The Cloud & AI organization accelerates Microsoft’s mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers’ heterogeneous environments, as well as ensuring the security of our own internal estate. Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their best each day. In doing so, we create life-changing innovations that impact billions of lives around the world. Microsoft is one of the largest enterprise service companies in the world.
We are looking for a reliable and collaborative Senior Security Engineer with excellent judgment and a well-rounded background in security and software engineering to help tackle complex security challenges in Azure through a data - and product-driven lens. In this role, you will advance security by working with other Security Engineers, Program and Product Managers, Developers, and business leaders throughout Microsoft to turn individual findings and vulnerabilities into patterns and insights that can be measured and managed through engineering, automation, and other appropriate mitigations. You will provide technical security leadership both inside and outside of Microsoft and stay on top of current developments for the benefit of Microsoft products and services.
This is a US-based role and a flexible work opportunity that can be fully remote, hybrid, or full-time onsite.
Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond. In alignment with our Microsoft values, we are committed to cultivating an inclusive work environment for all employees to positively impact our culture every day.
In alignment with our Microsoft values, we are committed to cultivating an inclusive work environment for all employees to positively impact our culture every day.
Responsibilities
Vulnerability discovery, variant hunting, and penetration testing: Using the best available and most appropriate methodologies - such as threat modeling, penetration testing, security design analysis, fuzzing, SAST and DAST - you will conduct in-depth assessments of selected target systems in detail to identify vulnerabilities and weaknesses. You'll also perform variant hunting looking for larger patterns, conduct qualitative and quantitative analysis over those patterns, and drive solutions upstream in a data-driven, shift-left fashion.
Solution design and delivery: You will help design solutions for security problems, partner with service teams and other security stakeholders to ensure rapid adoption of solutions and mitigation of threats from beginning to end.
Threat modeling / Architecture reviews: You will review the design of services from a security perspective to identify vulnerabilities and weaknesses in the architecture, make appropriate recommendations, and guide teams to implement those recommendations.
Software Development: You will prototype and create tools and scanners to automate the discovery and prevention of vulnerabilities across Azure services.
Follow through and closure: You will partner with engineers, product and program managers, and leaders around the company to ensure the successful completion of work to address your findings.
Other : Embody our Culture and Values
Qualifications
Required Qualifications:
Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 3+ years experience in security or related field
OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in security or related field
OR equivalent experience.
3+ years of experience in identifying security vulnerabilities, software development lifecycle, large-scale computing, modeling, cyber security, and anomaly detection.
3+ years of experience in a hands-on security role, with demonstrable software engineering
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s