This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The OneFuzz team is part of Microsoft’s Security Fundamentals R&D organization, focused on advancing automated security testing through fuzzing. Our mission is to empower developers to identify and remediate vulnerabilities early by providing a scalable, integrated fuzzing platform. Key priorities include: Fuzzing Infrastructure Development: Maintain and evolve OneFuzz, an open-source, cloud-based fuzzing service for continuous security testing. Workflow Integration: Embed fuzzing into CI/CD pipelines to reduce friction and improve security posture. Security Research & Innovation: Explore new fuzzing techniques (coverage-guided, grammar-based) and integrate them into OneFuzz. Reliability & Operational Excellence: Ensure high availability, robust monitoring, and incident response for the service.
Job Responsibility:
Drive development of Microsoft’s cloud-based fuzzing platform to enable scalable, integrated security testing
Designing and implementing core fuzzing infrastructure for performance and reliability
Building CI/CD integrations to streamline developer workflows
Advancing fuzzing techniques through research and production-ready features
Ensuring service reliability with robust monitoring and incident response
Collaborating across teams and contributing to the open-source community
Requirements:
Strong programming skills in languages like Python, C#, or Rust
Experience with distributed systems or cloud services (Azure preferred)
Solid understanding of software engineering fundamentals and secure coding practices
Ability to work in collaborative environments and deliver high-quality code
Nice to have:
Familiarity with fuzzing technologies, vulnerability research, or security testing
Experience with CI/CD pipelines and DevOps practices
Knowledge of containerization (Docker/Kubernetes) and scalable service design
Contributions to open-source projects or community engagement in security tooling