Do you want to help organizations secure the way modern software is built, delivered, and operated
Modern software development has fundamentally changed. Open-source dependencies, AI-assisted development, cloud-native architectures, automated build pipelines, and software supply chains now span thousands of developers, systems, repositories, and services. While these innovations dramatically increase productivity, they also create new attack surfaces that organizations struggle to understand and secure.
We are building the next generation of Microsoft Defender capabilities that protect the entire software development lifecycle, from source code and dependencies through build systems, development environments, AI-assisted workflows, deployment pipelines, runtime environments, and incident response.
As a Principal Product Manager, you will help define product strategy, customer scenarios, roadmap investments, and platform direction for Microsoft's software supply chain protection portfolio. You will work across Microsoft Defender, GitHub, Azure, security research teams, engineering organizations, and customers to turn emerging security challenges into category-defining products.
This is a highly strategic and deeply technical product role. Success requires strong product instincts, the ability to influence across organizational boundaries, and a passion for solving complex security problems at industry scale.
Responsibilities
- Shape product strategy and roadmap priorities for Microsoft Defender’s software development life cycle capabilities.
- Develop a deep understanding of customer needs, market shifts, and emerging threats, and translate that insight into clear product direction.
- Partner across Microsoft Defender, GitHub, Azure, Windows, AI, and security research teams to align strategy and execution.
- Define differentiated product experiences that help customers secure code, dependencies, build systems, developer environments, AI-assisted workflows, and deployment pipelines.
- Represent Microsoft with customers, executives, and industry audiences as a credible voice on secure software development and supply chain security.
Qualifications
Required Qualifications
- Bachelor's Degree in Computer Science, Engineering, Cybersecurity, or related technical field AND 8+ years of experience in product management, program management, software engineering, security engineering, or related disciplines.
- Experience defining and delivering products or platforms in cybersecurity, developer tools, cloud services, or enterprise software.
- Demonstrated ability to lead complex initiatives across multiple teams without direct authority.
- Experience translating technical concepts into customer value and business outcomes.
- Written, verbal, and executive communication skills.
Preferred Qualifications
- Deep experience in software supply chain security, application security, DevSecOps, open-source ecosystems, or developer platform security.
- Strong working knowledge of source control, CI/CD pipelines, package management, build systems, SBOMs, and secure development lifecycle practices.
- Experience applying threat intelligence, security operations, or incident response insights to developer and software security scenarios.
- Familiarity with AI-assisted software development and the security implications of generated code, agents, models, and development workflows.
- Relevant security certifications such as CISSP or CSSLP.
Product Management IC5 - The typical base pay range for this role across the U.S. is USD $142,800 - $274,800 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $188,000 - $304,200 per year.
Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:
https://careers.microsoft.com/us/en/us-corporate-pay
This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.
Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.
Skills Required
- Bachelor's degree in Computer Science, Engineering, Cybersecurity, or related technical field AND 8+ years of experience in product management, program management, software engineering, security engineering, or related disciplines.
- Experience defining and delivering products or platforms in cybersecurity, developer tools, cloud services, or enterprise software.
- Demonstrated ability to lead complex initiatives across multiple teams without direct authority.
- Experience translating technical concepts into customer value and business outcomes.
- Strong written, verbal, and executive communication skills.
- Deep experience in software supply chain security, application security, DevSecOps, open-source ecosystems, or developer platform security.
- Working knowledge of source control, CI/CD pipelines, package management, build systems, SBOMs, and secure development lifecycle practices.
- Experience applying threat intelligence, security operations, or incident response insights to developer and software security scenarios.
- Familiarity with AI-assisted software development and the security implications of generated code, agents, models, and development workflows.
- Relevant security certifications such as CISSP or CSSLP.
Microsoft Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Microsoft and has not been reviewed or approved by Microsoft.
-
Fair & Transparent Compensation — Pay is presented as broadly competitive overall, with clear role/level/location variation and an emphasis on using posted ranges and band information for apples-to-apples comparisons.
-
Retirement Support — Retirement benefits are described as a standout, highlighted by a strong 401(k) match structure and immediate vesting, plus additional plan features for tax-advantaged saving.
-
Parental & Family Support — Family-oriented benefits are portrayed as a meaningful strength, with substantial paid parental leave and added supports like back-up care and adoption/surrogacy assistance.
Microsoft Insights
What We Do
At Microsoft, our mission is to empower every person and every organization on the planet to achieve more. Our mission is grounded in both the world in which we live and the future we strive to create. Today, we live in a mobile-first, cloud-first world, and the transformation we are driving across our businesses is designed to enable Microsoft and our customers to thrive in this world.

.png)







