Senior Security Technical Program Manager
MicrosoftAbout the role
Security is foundational to all product and service offerings from Microsoft. We need an experienced security professional with a deep-rooted passion in identifying security issues before they impact millions of users.
The Bing Offensive Security Team is part of Microsoft AI and leads offensive security operations, especially code reviews, Penetration Testing and variant hunting across services with globally distributed engineering teams.
Our team is looking for a Senior Security Technical Program Manager, who will help shape the offensive security program to consistently apply offensive tactics and remediation measures that improve both our security engagements as well as tooling. This position offers an unparalleled experience in utilizing technical expertise from penetration testing and security to solve operational problems and problems of scale across teams.
The candidate should possess experience with online services and penetration testing (including code audits, SAST/DAST, and critical thinking) and have a solid grasp of service security fundamentals, proficient computer science skills, and committed security program management skills.
Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees, we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.
In alignment with our Microsoft values, we are committed to cultivating an inclusive work environment for all employees to positively impact our culture every day.
Responsibilities
- Identify and help remediate vulnerabilities in Microsoft AI products utilizing code reviews, offensive security assessments, design reviews and driving penetration testing engagements.
- Utilize comprehensive and up-to-date knowledge of security to design innovative protections.
- Work closely with product teams to enhance security measures and clearly communicate the business benefits of security testing.
- Help define a clear vision and roadmap for the team’s responsibilities and scope, identifying opportunities for innovative tactics and scalable variant hunts.
- Partner with teams outside Microsoft AI to leverage and contribute to product security practices as well as Secure SDLC.
- Help define objectives and key results (OKRs) to track progress against goals, iterating and optimizing as necessary.
- Embody our culture and values
Qualifications
Required Qualifications
- Bachelor's Degree AND 4+ years experience in engineering, product/technical program management, data analysis, or product development
- OR equivalent experience.
- 2+ years experience managing cross-functional and/or cross-team projects.
- 4+ years of experience with Security threat modeling.
- 4+ years of experience conducting security assessments on Web Applications, Mobile Applications, and Cloud Services running on variety of operating systems including containers.
Preferred Qualifications
- 2+ years of experience driving penetration testing or Red Team engagement
- 1+ year(s) experience reading and/or writing code (e.g., sample documentation, product demos).
- Experience in cybersecurity assurance and program management,
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s