This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified solutions. The Microsoft Security organization accelerates Microsoft’s mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers’ heterogeneous environments, as well as ensuring the security of our own internal estate. Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their best each day. In doing so, we create life-changing innovations that impact billions of lives around the world. Microsoft PKI Services (MPS) provides the trust infrastructure that enables secure communications across Microsoft’s cloud platforms and services. MPS designs, builds, and operates publicly trusted Certificate Authorities (CAs) that issue and manage digital certificates used to authenticate services, establish encrypted communications, and protect data for Microsoft and millions of customers worldwide. The team is responsible for the full lifecycle of Public Key Infrastructure (PKI) operations, including certificate issuance, key management, revocation, incident response, auditing, and adherence to globally recognized trust requirements. MSPKI operates in a highly transparent and externally governed environment, where compliance with browser root programs, industry standards, and public reporting expectations is required to maintain trust in Microsoft’s services.
Job Responsibility
Own MPS compliance with global public trust requirements to ensure the continued trustworthiness of Microsoft's public CAs
Define and execute Microsoft’s PKI long term compliance strategy including alignment with evolving browser root program policies, audit frameworks (e.g., WebTrust), and emerging industry requirements
Lead external incident response and reporting for compliance incidents involving Microsoft's public CAs including coordinating engagement with root programs, auditors, and industry stakeholders
Serve as Microsoft’s primary technical representative to the CA/Browser Forum and related groups
Drive standards advancement to improve global Internet trust
Requirements
Bachelor's Degree AND 12+ years experience in product/service/program management or software development OR equivalent experience
Ability to meet Microsoft, customer and/or government security screening requirements
Must pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter
Nice to have
8+ years experience contributing to consensus-driven technical industry standards bodies
Experience operating or overseeing a publicly trusted CA
Working knowledge of the CA/Browser Forum governance model
Background in applied cryptography, security engineering, identity infrastructure, or internet-scale security operations
Experience navigating or leading response to publicly disclosed compliance or operational incidents
Familiarity with emerging developments in PKI and cryptographic standards, such as certificate transparency, algorithm agility, short-lived certificates, or post-quantum cryptography
Track record of producing high-quality technical documentation suitable for external publication, including policy documents, audit artifacts, or incident reports