This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end-to-end, simplified solutions. The Microsoft Security organization accelerates Microsoft’s mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers’ heterogeneous environments, as well as ensuring the security of our own internal estate.
Job Responsibility:
Research emerging attack vectors and techniques
Analyze detection and prevention gaps and understand root cause
Design and develop detection, prevention and disruption solutions to thwart advanced attacks
Synthesize in-field telemetry to judge the state of threat coverage and share insights
Identify trends, foresee landscape direction and propose enhancements to meet the needs
Collaborate across teams to address systemic security issues
Guide design of AI based solutions to tackle hard security problems
Requirements:
Bachelor's Degree in Statistics, Mathematics, Computer Science or related field
OR 3+ years experience in software development lifecycle, large-scale computing, modeling, cybersecurity, and/or anomaly detection
3+ years in reverse engineering (debuggers, disassemblers, file formats)
3+ years experience with attacker kill chain analysis (MITRE ATT&CK and enterprise threat modeling)
3+ years of experience in scripting and automation (Python, PowerShell, or Bash) and proficiency in at least one compiled language (e.g. C, C++, C#, Go, Rust)
Working experience with cloud environments, OS internals, and hybrid attacks
Ability to meet Microsoft, customer and/or government security screening requirements
This position will be required to pass the Microsoft background and Microsoft Cloud background check upon hire/transfer and every two years thereafter
Nice to have:
Master's Degree in Statistics, Mathematics, Computer Science or related field
OR 4+ years experience in software development lifecycle, large-scale computing, modeling, cyber-security, and/or anomaly detection
3+ years working with OS internals (Windows and Linux preferred)
3+ years of experience in red-team/purple-team or blue-team operations across hybrid environments
3+ years authoring detection logic and security telemetry pipelines
3+ years with regex, Kusto, and/or SQL for log analysis
Experience in research publication and security tooling development
Working knowledge of AI workflows or generative AI/LLM frameworks
Experience in vulnerability analysis and exploit development