CrawlJobs Logo

Principal Security Researcher

https://www.microsoft.com/ Logo

Microsoft Corporation

Location Icon

Location:
United States , Multiple Locations

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

139900.00 - 274800.00 USD / Year

Job Description:

Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified solutions. The Microsoft Security organization accelerates Microsoft’s mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers’ heterogeneous environments, as well as ensuring the security of our own internal estate. Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their full potential each day. In doing so, we create life-changing innovations that impact billions of lives around the world. The Microsoft Threat Protection Research (MTP-R) Purple Team sits at the intersection of offense, defense, and intelligence, working across Microsoft Defender technologies to help ensure our telemetry, detections, and protections are effective against real-world cyberattacks. We are looking for a principal-level security researcher with deep experience in threat operations and Defender tooling to help design, execute, and analyze advanced adversary simulations, collaborate with engineering and detection teams, and translate attacker tradecraft into measurable defensive improvements across Microsoft’s security stack. This role is for someone who has lived in blue teams or SOCs, understands how detections succeed or fail in practice, and wants to influence security outcomes at a global scale. Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.

Job Responsibility:

  • Design and execute purple team simulations that emulate real-world threat actors, techniques, and campaigns across endpoint, identity, cloud, and email surfaces
  • Partner closely with Microsoft Defender engineering, research, and threat intelligence teams to evaluate detection coverage, investigation quality, and response effectiveness
  • Analyze telemetry using Kusto / KQL to validate detection logic, uncover gaps, and measure signal quality
  • Translate attacker tradecraft into actionable insights for defenders, including detection recommendations, telemetry requirements, and investigation improvements
  • Apply frameworks such as MITRE ATT&CK to map adversary behavior, identify coverage gaps, and communicate findings clearly to technical and non-technical audiences
  • Leverage threat intelligence to inform simulation design, prioritize scenarios, and ensure relevance to active and emerging threats
  • Contribute to high-quality written simulation reports, executive presentations, and technical documentation that influence product and security strategy
  • Act as an experienced technical voice within the Purple Team, helping shape methodology, standards, and long-term research direction

Requirements:

  • Doctorate in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection
  • OR Master's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection
  • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 6+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection
  • OR equivalent experience
  • Ability to meet Microsoft, customer and/or government security screening requirements
  • 8+ years of experience in cybersecurity, with hands-on background in blue team operations, SOC, incident response, or detection engineering
  • 5+ years of experience understanding of attacker techniques, post-exploitation behavior, and investigative workflows in enterprise environments
  • 5+ years of experience working with security telemetry and log data, including practical use of KQL or similar query languages
  • Experience with the Microsoft Defender suite of products
  • Prior purple team, threat hunting, or adversary emulation experience
  • 5+ years of experience working knowledge of MITRE ATT&CK and other threat modeling frameworks
  • Experience consuming or producing threat intelligence, including actor tracking, campaign analysis, or TTP-based reporting
  • 3+ years of Scripting or automation experience (e.g., Python, PowerShell) to support analysis or simulation workflows
  • Understanding of AI and agentic workflows for detection engineering, threat hunting or related activities
  • Familiarity with detection validation, signal quality analysis, or security metrics at scale
  • Proven ability to work across teams and influence outcomes without direct authority
  • Demonstrated ability to communicate complex security findings clearly through writing and presentations

Additional Information:

Job Posted:
March 19, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Principal Security Researcher

Principal Applied Researcher AI/NLP

At PointClickCare our mission is simple: to help providers deliver exceptional c...
Location
Location
United States
Salary
Salary:
195800.00 - 217500.00 USD / Year
pointclickcare.com Logo
PointClickCare
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • PhD or comparable level of experience in Computer Science, Math, Physics, Engineering or a related field
  • 4-10+ year industry experience building solutions in commercial SaaS, including at least 4 years working in applications of NLP, Search or AI/ML technologies for healthcare
  • Strong interest in applying AI/ML/NLP to healthcare related problems and data
  • Expert-level practical, hands-on experience developing and applying a wide range of techniques in Natural Language Processing, including fine tuning of LLMs and other Transformer models, plus one or more additional AI/ML or Search related areas of expertise to solve real-world problems at scale
  • Demonstrated ability to lead and perform research and experimentation to select appropriate approaches, algorithms, evaluation methods, and frameworks, as well as tasks such as feature selection, language modeling, evaluation and fine tuning or training models, applying standard approaches or developing new tools or workflows as needed to meet project requirements
  • Significant experience building and deploying AI/machine learning and NLP models for large-scale SaaS products, including familiarity with industry standard software development concepts such as scaling issues, version control, CI/CD pipelines, and security
  • Solid understanding and experience with transformer models and multiple kinds of NLP and ML models and approaches including logistic regression, random forest, ensemble methods, SVM, KNN, reinforcement learning, and other ML techniques
  • Proficiency in Python and Java required. Proficiency in JavaScript or TypeScript and modern UI frameworks for building prototype or tool front ends desired
  • Proficiency doing data engineering for ML and NLP applications, including exposure to database systems and proficiency with SQL
  • Proficiency building models from big data using modern packages, models and data analysis stacks such as NumPy, SciPy, Pandas, Scikit-learn, PyTorch, Keras, LightGBM, fastText, NLTK, and spaCy. Proficiency fine tuning Hugging Face Transformers required
Job Responsibility
Job Responsibility
  • You will be applying NLP including GenAI and other AI/ML techniques to develop model systems and solutions, collaborating across functions to scale and integrate advanced solutions into successful end user experiences in large-scale cloud based SaaS production environments for healthcare
  • You will be working with product leaders, clinical informaticists, data scientists, UI/UX researchers and designers, other AI and machine learning and domain experts, engineering teams and others, including work with customers and users who are healthcare professionals
  • Design, build and evaluate solutions that may involve structured or unstructured data including speech or natural language for healthcare use cases, delivering capabilities such as summarization, predictive models, recommenders, semantic search, extraction, classification or other NLP, AI or machine learning based techniques
  • You will be performing research and experimentation to select appropriate approaches, algorithms, evaluation methods and frameworks and doing the R&D to deliver model systems
  • You will perform, oversee and assist in data collection, data cleaning, data analysis, algorithm selection or design, prompt tuning, parameter fine tuning, training, development and evaluation of systems that deliver responsible AI solutions at scale, using existing or developing new tools or workflows as needed
  • As a principal applied researcher, you will bring deep technical expertise and also provide mentorship on advanced AI, NLP, data science, statistical and machine learning methods and technologies, helping the organization develop new capabilities for innovative solutions
  • You will have substantial independence and responsibility from day one
What we offer
What we offer
  • Benefits starting from Day 1
  • Retirement Plan Matching
  • Flexible Paid Time Off
  • Wellness Support Programs and Resources
  • Parental & Caregiver Leaves
  • Fertility & Adoption Support
  • Continuous Development Support Program
  • Employee Assistance Program
  • Allyship and Inclusion Communities
  • Employee Recognition … and more
  • Fulltime
Read More
Arrow Right

Principal Investigator, Federal Research Projects

We are seeking a Principal Investigator (PI) to support proposal development and...
Location
Location
United States
Salary
Salary:
Not provided
daqscribe.com Logo
DaqScribe Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong background in embedded computing systems and real-time signal processing
  • Experience in Artificial Intelligence (AI) and Machine Learning (ML)
  • Proven leadership in conducting research projects and managing small teams
  • Skilled in data analysis and research methodologies
  • Excellent problem-solving and critical thinking abilities
  • Strong written and verbal communication skills
  • Ability to work independently and in a remote environment
  • Master’s or Ph.D. in Computer Science, Computer Engineering, Electrical Engineering, or a related technical field
  • U.S. citizenship is required
  • Must be able to obtain and obtain a security clearance at the Secret (S) and Top Secret (TS) levels
Job Responsibility
Job Responsibility
  • Lead proposal development for federal research opportunities in relevant topic areas or related domains
  • Manage and guide a multidisciplinary research team through concept, execution, and delivery
  • Design, implement, and evaluate novel signal processing and machine learning methodologies
  • Contribute to commercialization strategies stemming from federally sponsored R&D projects
  • Interface with government sponsors, collaborators, and internal teams throughout the research lifecycle
  • Participate in the “Technology Transfer” and commercialization process for all prototypes and technologies developed through government-funded research projects
  • Fulltime
Read More
Arrow Right

Principal Security Researcher - Cloud & AI (Cortex Cloud)

As a Principal Security Researcher on the Cortex Cloud research team, you’ll lea...
Location
Location
Israel , Tel Aviv
Salary
Salary:
Not provided
paloaltonetworks.com Logo
Palo Alto Networks
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum of 6 years in security research, including at least 2 years focused on cloud security
  • Deep understanding of IAM, network, and data services posture in AWS, Azure, or GCP Research
  • Strong understanding of the attacker’s mindset and proven experience in applying defensive tactics
  • Hands-on experience in programming and scripting with C++/Python
  • Experience with AI / Web/ Cloud/ K8S vulnerability research
  • Proven ability to conceptualize, plan, and execute research from ideation through POC to full implementation
  • Excellent communication and teamwork skills, with the ability to lead initiatives and work collaboratively across the organization
Job Responsibility
Job Responsibility
  • Research and uncover vulnerabilities and abuse paths in cloud services, with a strong focus on AI, identity, and data pipelines
  • Collaborate with product and engineering to ship detections and logic based on your findings
  • Research-driven impact - drive innovation from idea to execution: Identify emerging security gaps, build proof-of-concepts, and partner with engineering, product and marketing to translate research into actual product features and detection logic
  • Represent the team through public blogs, conferences and research collaborations with cloud vendors
  • Publish internal or external research and represent the team at industry events or blogs
  • Lead the discovery of novel attack vectors- e.g., cross-tenant access, NHI abuse, RAG poisoning, privilege escalation
Read More
Arrow Right

Principal Security Engineering Manager - Edge Browser

The Microsoft Edge Browser Security Team is responsible for securing Edge client...
Location
Location
United States , Redmond
Salary
Salary:
139900.00 - 274800.00 USD / Year
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Doctorate in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection
  • OR Master's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection
  • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 6+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection
  • OR equivalent experience
  • 1+ year(s) people management experience
Job Responsibility
Job Responsibility
  • Provide line management to a team of engineers located in Redmond. Embody Microsoft’s management philosophy of Model, Coach & Care
  • Be fully invested helping to develop and grow our engineers
  • Be able to help plan and execute strategies for growing Edge’s capabilities. Drive initiatives to identify and mitigate security risk for our customers
  • Oversee our security response work, acting on reports from vulnerability researchers
  • Monitor and alert the security health of Edge and plan remedial actions
  • Collaborate with other security teams across Microsoft to design and develop new security mitigations and defences
  • Work closely with our partners in the Chromium community to improve browser security
  • Leverage curiosity and learn new skills to operate in a fast-paced and ever-changing environment
  • Interact with the external security community, researchers and security conference presenters
  • Excel in cross-group and interpersonal skills, with the ability to articulate the business need for security
  • Fulltime
Read More
Arrow Right

Associate Vice President for Research Computing

The Associate Vice President (AVP) for Research Computing serves as the senior e...
Location
Location
United States of America , Rochester
Salary
Salary:
205245.00 - 328392.00 USD / Year
urmc.rochester.edu Logo
University of Rochester
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in a relevant field of study.
  • Doctoral or advanced degree in a relevant field of study, advanced strongly preferred.
  • Minimum of 10 years of experience in informatics and computational research, with at least 5 years in a leadership role preferred.
  • Experience as a faculty member in higher education preferred.
  • Experience working in research-intensive higher education environment preferred.
  • Deep understanding of the research lifecycle and advanced knowledge of HPC architectures, scientific software, cloud-based research environments, and large-scale data storage.
  • Working knowledge of scientific concepts in fields such as biology, biochemistry, genomic, imaging, chemistry, physics and data science / AI
  • Proven ability to lead large technical teams, foster faculty partnerships, and manage multimillion-dollar research computing portfolios.
  • Strong communication skills and ability to interact effectively at all organization levels.
  • Broad IT experience including solutions architecture, application development, engineering, business analysis, and project management.
Job Responsibility
Job Responsibility
  • Lead the development and execution of a long-range strategic plan for research computing that supports the university’s R1 research mission, including investments in HPC, research storage, AI/ML environments, cloud platforms, secure data enclaves and staffing.
  • Collaborate with the Vice President for Research and IT, Deans, and faculty leaders to define institutional priorities, align resources, and support cutting-edge, interdisciplinary research initiatives.
  • Represent the University in national and international consortia focused on research computing infrastructure, research data governance, and secure research computing.
  • Serve as a strategic advisor to executive leadership on research policy, funding, and risk management related to advanced research computing.
  • Oversee Operations, performance, and lifecycle management of the University’s research computing environment, including HPC clusters and cloud platforms.
  • Lead cross-functional technical teams responsible for system design, user support, research application integration, and compliance with research security standards (e.g.NIST 800-171, FISMA)
  • Oversee service-level agreements, uptime metrics, downtime and maintenance procedures and communications and annual investment planning to ensure the environment remains resilient, scalable, and aligned with faculty needs.
  • Act as a campus-wide leader and trusted advisor to faculty and research teams across disciplines, proactively identifying research needs and aligning computational services accordingly.
  • Lead outreach, onboarding, and education programs that expand awareness of research computing services and improve access and usability for all research teams, especially those in emerging or underserved disciplines.
  • Oversee consultation and proposal development services that support grant applications, including effort related to compute budgeting, data management planning, and infrastructure letters of support.
  • Fulltime
Read More
Arrow Right

Principal AI Security Researcher

Microsoft Sentinel Platform NEXT R&D labs is the strategic incubation engine beh...
Location
Location
United States , Multiple Locations
Salary
Salary:
139900.00 - 274800.00 USD / Year
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Doctorate in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection
  • OR Master's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection
  • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 6+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection
  • OR equivalent experience
  • Ability to meet Microsoft, customer and/or government security screening requirements
  • Microsoft Cloud Background Check
  • 5+ years of experience in cybersecurity, AI, software development lifecycle, large-scale computing, modeling, and/or anomaly detection
  • 5+ years of professional experience in security operations, pen-testing, researching cyber threats, understanding attacker methodology, tools, and infrastructure
  • Demonstrated autonomy and success driving zero-to-one (0→1) initiatives
  • ML background and hands-on experience
Job Responsibility
Job Responsibility
  • Security AI Research: be the security expert to our AI-focused team, helping evaluate our systems on real data, improve system inputs, triage and investigate AI-based findings, leverage AI and security experience to incubate and transform our products, educate applied scientists in cybersecurity
  • Collaboration: Partner with engineering, product, and research teams to translate scientific advances into robust, scalable, and production-ready solutions
  • AI/ML Research: design, development, and analysis of novel AI and machine learning models and algorithms for security and enterprise-scale applications
  • Experimentation & Evaluation: Design and execute AI experiments, simulations, and evaluations to validate models and system performance, ensuring measurable improvements
  • Customer Impact: Engage with enterprise customers and field teams to co-design solutions, gather feedback, and iterate quickly based on real-world telemetry and outcomes
  • Fulltime
Read More
Arrow Right

Senior Security Engineer and Principal Security Engineer

The Microsoft Windows Security team is looking for a learn-it-all security engin...
Location
Location
United States , Redmond
Salary
Salary:
119800.00 - 234700.00 USD / Year
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 3+ years experience in security or related field OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in security or related field OR equivalent experience
  • Ability to meet Microsoft, customer and/or government security screening requirements
  • Microsoft Cloud Background Check upon hire/transfer and every two years thereafter
  • 2+ years identifying vulnerabilities in operating systems and/or native (C/C++) applications
  • 5+ years of experience in a software engineering or security-related engineering
  • Demanstrated experience in security research, especially around vulnerability discovery
  • Experience exploiting bugs and bypassing security mitigations in operating systems
  • Familiarity with Microsoft Windows architecture
Job Responsibility
Job Responsibility
  • Participate in security reviews to identify and mitigate risk in Microsoft products, including design reviews, code reviews, and fuzzing
  • Be the security contact for teams building new innovative products and technologies in the next version of Windows and devices
  • Identify security vulnerabilities in a wide variety of key OS features such as network protocols, security features, and Microsoft devices
  • Leverage a broad and current understanding of security to devise new protections
  • Interact with the external security community and security researchers
  • Collaborate with product teams to improve security, and articulate the business value of security investments
  • Fulltime
Read More
Arrow Right

Principal Security Research Manager

Security represents the most critical priorities for our customers in a world aw...
Location
Location
United States , Multiple Locations
Salary
Salary:
139900.00 - 274800.00 USD / Year
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Doctorate in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection
  • OR Master's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection
  • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 6+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection
  • OR equivalent experience
  • 1+ year(s) people management experience
  • Ability to meet Microsoft, customer and/or government security screening requirements
  • This position will be required to pass the Microsoft background and Microsoft Cloud background check upon hire/transfer and every two years thereafter
Job Responsibility
Job Responsibility
  • Lead our simulation team, responsible for building the simulation environment and capture-the-flag (CTF) challenges that comprise the game board for AI red versus AI blue
  • Lead a multi-disciplinary team including security researchers, applied scientists, and engineers to design and implement large-scale virtual environments representing real world network design, breach paths, and benign traffic patterns
  • Design and plant end-to-end CTF challenges within these environments, working together with our larger team to challenge and grow both AI red team and AI blue team capabilities
  • Partner with research and engineering to implement agentic wargames and self-driven learning approaches, improving both AI red and AI blue team solutions
  • Fulltime
Read More
Arrow Right