This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Authorization and Root of Trust (ART) team builds the foundational security services that underpin Microsoft's identity and platform trust fabric. We own core capabilities including authorization policy enforcement, public key infrastructure (PKI) and certificate trust, secrets and key management, and supply chain security. Our services enable secure access control, protect signing keys and credentials, and provide end-to-end cryptographic assurance for code, services, and devices across Microsoft and its customers. By operating at the heart of zero-trust architecture, ART ensures that every request, identity, and artifact can be verified and trusted at global scale. We are looking for a Principal Architect who drives the improvement of artificial intelligence tools across the software development lifecycle, guides to anticipate and determine customer/user requirements for complex scenarios, oversees and owns efforts for the architecture of complex products ensuring high standards for solution quality, mentors in identifying dependencies and extending code functionalities across teams.
Job Responsibility
Define end-to-end security architecture across signing services, supply chain systems, ensuring a cohesive trust model for Microsoft services and platforms
Drive cryptographic and trust design decisions, including certificate issuance, key protection, and Post Quantum strategies that underpin global service security
Lead Zero Trust architecture adoption, ensuring identity, access, and artifacts are continuously verified across service-to-service and platform interactions
Align cross-org technical direction, partnering with Azure, Identity, and platform teams to unblock dependencies and ensure scalable, interoperable solutions
Own long-term evolution of the trust ecosystem, including readiness for emerging areas like post-quantum cryptography and secure supply chain assurances
Guide engineering execution, setting architectural standards, reviewing designs, and driving consistency, reliability, and compliance across services
Requirements
Bachelor's Degree in Computer Science or related technical field AND 8+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python OR equivalent experience
Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter.
Nice to have
Master's Degree in Computer Science or related technical field AND 12+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python OR Bachelor's Degree in Computer Science or related technical field AND 15+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python OR equivalent experience
Experience with modern cryptography and PKI systems, including signing, trust chains, and secure key management practices
Exposure to cloud-scale secrets management platforms (e.g., HSM-backed services, secure key storage, rotation and governance)