This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Cloud & AI organization accelerates Microsoft’s mission is to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers’ heterogeneous environments, as well as ensuring the security of our own internal estate. Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their best each day. In doing so, we create life-changing innovations that impact billions of lives around the world. Microsoft is one of the largest enterprise service companies in the world. Are you interested in identifying and exploiting security vulnerabilities that impact hundreds of millions of users across the world? Join the Microsoft Red Team (MRT) organization, where you will emulate real-world advanced persistent threats against Microsoft. Our mission is to ensure Microsoft is prepared to face and respond to even the most determined adversaries by exploring innovative ways to identify and prevent security flaws. MRT is seeking talented individuals focused on identifying, exploiting, and emulating real-world threats, ensuring the security and resilience of Microsoft. As a Principal Security Engineer you will lead operations and collaborate with other experienced red teamers in identifying and exploiting vulnerabilities across all layers of services, including application, cloud, network, hardware, and operational security domains. You will work closely with developers and security personnel from multiple teams across Microsoft. Additionally you will be responsible for fostering the team's growth both technically and culturally, as we build and retain the next generation of top talent at Microsoft. By adopting the tactics, techniques, and procedures of potential attackers, you will provide critical insights that empower our security teams to strengthen defenses and protect against the evolving landscape of digital threats.
Job Responsibility:
Discover and exploit vulnerabilities end-to-end in order to assess the security of services
Execute and lead Red Team operations using real world adversarial tactics and techniques to validate a production service's ability to detect, investigate, and respond
Research and experiment with new and emerging adversarial techniques
Lead security change across the company through articulating risks and partnering for correct solutions
Prototype tools and techniques to scale and accelerate offensive emulation and vulnerability discovery
Collaborate with Blue Teams to improve readiness and produce solutions for defenders and customers
Analyze simulated adversary tactics and communications, enriching our defensive tactics and threat intelligence
Enhance Security Incident Response by providing expert insight and help when assisting Microsoft's defensive actions against adversaries
Embody our culture and values
Requirements:
Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 6+ years experience in security or related field
OR equivalent experience
OR Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in security or related field
6+ years of experience in identifying security vulnerabilities, software development lifecycle, large-scale computing, modeling, cyber security, or anomaly detection
6+ years of experience with coding or scripting in languages such as C#, Python, C++, Go, PowerShell, .NET, Rust, or other comparable programming languages
Ability to meet Microsoft, customer and/or government security screening requirements
Must pass the Microsoft Cloud Background Check upon hire/transfer and every two years thereafter