This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Customer Security Management Office (CSMO), within the Office of the Chief Information Security Officer (OCISO), is responsible for building trust and transparency with customers and other stakeholders regarding Microsoft’s security posture, practices, and response to cybersecurity issues and incidents. We are seeking a Senior Director to re envision how Microsoft communicates externally about cybersecurity issues and incidents and to strengthen the internal systems that enable those communications. This role will focus on the communications architecture, workflows, and execution that translate complex security activity into clear, credible, and consistent external engagement.
Job Responsibility:
Architect and evolve the cybersecurity communications system
Evolve the vision, scope, and operating model for how Microsoft communicates externally with customers on cybersecurity issues
Design pragmatic, scalable processes that enable clarity, speed, and consistency across complex, cross functional workflows
Identify bottlenecks, friction points, and signal loss across teams, and implement targeted improvements that increase effectiveness without unnecessary overhead
Lead execution during high-risk moments
Orchestrate cross functional v teams spanning security, engineering, communications, legal, and others to develop and deliver external communications during high visibility cybersecurity events
Ensure that technical context, timelines, and constraints provided by subject matter owners are accurately reflected and clearly translated for external audiences
Partner with executives to ensure readiness for external engagement, including briefings, messaging frameworks, and supporting materials
Shape communications with contextual awareness
Maintain awareness of regulatory and government expectations and feedback related to Microsoft’s cybersecurity communications, incorporating that signal into strategy and execution
Contribute thought leadership on cybersecurity transparency and engagement that strengthens Microsoft’s credibility as a trusted partner
Build durable capability and team strength
Develop and maintain playbooks, SOPs, and decision frameworks that enable consistent, high quality execution across scenarios
Define and implement measures to evaluate program effectiveness and continuously improve how the communications system performs
Build and lead a team capable of orchestrating external communications for the highest risk and highest visibility cybersecurity issues facing Microsoft
Requirements:
10+ years experience in program management and/or digital content publishing and management OR equivalent experience
5+ years people management experience
Ability to meet Microsoft, customer and/or government security screening requirements
Microsoft Cloud Background Check
This role will require access to information that is controlled for export under export control regulations
To meet this legal requirement, and as a condition of employment, the successful candidate’s citizenship will be verified with a valid passport
5+ years of experience in cybersecurity
5+ years of experience advising on, supporting, or contributing to cybersecurity incident-related external communications to U.S. or foreign government agencies and/or regulators
5+ years of experience effectively interact with stakeholders at all levels of the organization,working directly with incident response leaders, investigators, and teams
5+ experience working directly with senior cybersecurity sales executives, research team and cybersecurity sales teams
Active U.S. government security clearance
A track record of delivering complex projects and developing consensus with a variety of internal stakeholders that have high external visibility or PR implications