This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Microsoft Teams is the hub for teamwork used by millions of users to be more engaged and productive – every day. It is the primary collaboration app in many enterprises as well as a remote learning tool in many schools and universities. Teams Security team focuses on keeping Microsoft Teams and its users safe and secure – across the full stack and all dimensions. We are seeking a talented and passionate Security Engineer II to join our team and help drive security and safety improvements within Microsoft Teams. If you live and breathe product security and safety, can navigate complex systems and data, crave learning new things, and would like your work to have positive impact on millions of users then this role is for you.
Job Responsibility:
Identifies and addresses underlying causes of security shortcomings
Develops security guidance to address shortcomings and to build best practices
Ensures identified vulnerabilities are resolved correctly
Leverages latest tools and technologies (e.g., artificial intelligence) to identify and mitigate security issues with minimal guidance
Investigates, diagnoses, and triages security incidents with minimal guidance
Contributes to postmortem and root cause analyses for security incidents
Collaborates with others to create repair items, tools, and/or systems to support incident management
Begins to leverage Incident Management System(s) to update stakeholders during and after incidents as directed
Leads security reviews, including architectural and design reviews, and documents findings in analysis reports
Applies best practices in security architecture, design, and development across feature areas
Identifies security risks and potential impact and collaborates with others to mitigate risks, escalating when needed
Helps monitor and respond to security events, potential vulnerabilities, exposures, and policy compliance issues, escalating as needed
Contributes to efforts to ensure the correct processes are followed to achieve a high degree of security, privacy, safety, and accessibility
Checks for visible evidence (e.g., audit trail) to demonstrate compliance for product areas
Develops and holds an understanding of the implications of onboarding new technologies following expectations of compliance at Microsoft
Demonstrates and maintains an up-to-date understanding of both global and local regulations for technologies and system applications to ensure regulations are met
Uses appropriate artificial intelligence (AI) tools and practices across the software development lifecycle (SDLC) in a disciplined manner
Takes responsibility for the content of their AI-generated changes to artifacts, reviewing all changes and applying appropriate tooling and processes with minimal guidance
Exhibits subject matter expertise in class or set of security issues, tools, mitigations, and processes (e.g., architecture, failure modes, attack chain, threat modeling, vulnerabilities)
Provides guidance to others in areas of expertise
Maintains current knowledge by investing time and effort
Proactively seeks opportunities to learn
Requirements:
Master's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 1+ year(s) experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 2+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
OR equivalent experience
Preferred: Master's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 3+ years of experience in software development lifecycle, large scale computing, threat modeling, cyber security, anomaly or detection (enterprise experience)
OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 5+ years of experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection (enterprise experience)