Principal Security Engineer

Posted 3 Days Ago
Be an Early Applicant
Redmond, WA, USA
In-Office
143K-304K Annually
Senior level
Software • Quantum Computing • Metaverse • Infrastructure as a Service (IaaS)
The Role
Perform deep security reviews of Azure-hosted service ecosystems, assess risks, and develop secure-by-design guidance, architectures, and remediation strategies. Influence engineers, architects, and product leaders to improve cloud security at scale. Leverage AI and automation for security assessments, mentor engineering teams, and promote secure development. The role requires expertise in cloud security or related technical areas, security assessments, penetration testing, and coding or scripting.
Summary Generated by Built In
Overview

The Cloud & AI organization accelerates Microsoft’s mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers’ heterogeneous environments, as well as ensuring the security of our own internal estate. Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their best each day. In doing so, we create life-changing innovations that impact billions of lives around the world. Microsoft is one of the largest enterprise service companies in the world.

Are you ready to take your career to another level at Microsoft? The Azure Security DevSec team is looking for a Principal Security Engineer to join us in securing services in the Microsoft Cloud. We work with service teams across Microsoft to evaluate and improve their security posture in the cloud, continuously moving the needle across multiple dimensions of their design, development and deployment security. In this role, you will collaborate with teams across Microsoft Azure to dive deep and evaluate the Security promises and risk posed by and to service ecosystems, recommend systemic mitigations, innovate on remediations for new issue The Azure Security DevSec team is looking for a Principal Security Engineer to join us in securing services in the Microsoft Cloud. We work with service teams across Microsoft to evaluate and improve their security posture in the cloud, continuously moving the needle across multiple dimensions of their design, development and deployment security. In this role, you will collaborate with teams across Microsoft Azure to dive deep and evaluate the Security promises and risk posed by and to service ecosystems, recommend systemic mitigations, innovate on remediations for new issue ecosystems, recommend systemic mitigations, innovate on remediations for new issue classes, contributing to the feedback loop that can help achieve these outcomes at scale. 

Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.

In alignment with our Microsoft values, we are committed to cultivating an inclusive work environment for all employees to positively impact our culture every day.


Responsibilities
  • Perform security reviews and deep dives for on cloud-hosted service ecosystems in Microsoft Azure, helping understand the security promise posture, risks to the target ecosystem and broader Azure.
  • Security expertise in at least one of the following Core areas: virtualization, memory safety (C/C++), Networking protocols, Cloud security, Kernel security, etc.
  • Drive secure-by-design improvements by developing security guidance, reference architectures, and practical remediation strategies that help teams address systemic security challenges and architectural anti-patterns.
  • Bring a growth mindset to tackle new and challenging problems every day, in an inclusive team environment Innovate new approaches to solving security at cloud scale.
  • Ability to be a strong technical communicator, lead stakeholder discussions and drive long-term partnerships across Azure organizations.
  • Influence security outcomes across high-impact Microsoft services by working directly with engineers, architects, and product leaders to prioritize risks and accelerate security improvements.
  • Leverage AI and automation capabilities to scale security assessments, improve risk identification, and increase security coverage across complex product portfolios.
  • Champion security excellence by mentoring engineering teams, enabling self-service security capabilities, and fostering secure development practices across the organization. 

Qualifications

Required Qualifications:

  • Master's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 4+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
    • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 6+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
      • OR equivalent experience. 
 
Other Requirements:
Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings: Microsoft Cloud Background Check:
  • This position will be required to pass the Microsoft background and Microsoft Cloud background check upon hire/transfer and every two years thereafter.

Preferred Qualifications:

  • Demonstrated hands-on experience with identifying and exploiting security vulnerabilities across cloud (Azure/AWS/GCP), identity (Entra ID / Active Directory), Windows and Linux endpoints, network.
  • Experience in customer-facing or consulting roles delivering security outcomes to executive audiences; ability to move fluently between deep technical detail and business impact.  
  • 5+ years experience performing security assessments and penetration testing. 
  • 5+ years experience securing cloud computing environments across known across one of the known Cloud providers (Azure/AWS/GCP).
  • 5+ years of experience with coding or scripting in languages such as Python, C#, C++, Go, PowerShell, .NET, Rust, or other comparable programming languages, including building and maintaining security tooling.

#MSSecurity #CISOOrg #CloudSecurity #AzureSecurity


Security Assurance IC5 - The typical base pay range for this role across the U.S. is USD $142,800 - $274,800 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $188,000 - $304,200 per year.

Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:
https://careers.microsoft.com/us/en/us-corporate-pay


This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.



Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.

Skills Required

  • Master's degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or a related field, plus 4 or more years of relevant experience; alternatively, equivalent experience.
  • Bachelor's degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or a related field, plus 6 or more years of relevant experience; alternatively, equivalent experience.
  • Relevant experience in software development lifecycle, large-scale computing, threat modeling, cybersecurity, or anomaly detection.
  • Ability to pass Microsoft background and Microsoft Cloud background checks upon hire or transfer and every two years thereafter.
  • Hands-on experience identifying and exploiting security vulnerabilities across cloud platforms, identity systems, Windows and Linux endpoints, and networks.
  • Experience in customer-facing or consulting roles delivering security outcomes to executive audiences.
  • Five or more years of experience performing security assessments and penetration testing.
  • Five or more years of experience securing cloud computing environments on Azure, AWS, or GCP.
  • Five or more years of coding or scripting experience with languages such as Python, C#, C++, Go, PowerShell, .NET, or Rust, including security tooling development.

Microsoft Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Microsoft and has not been reviewed or approved by Microsoft.

  • Fair & Transparent Compensation — Pay is presented as broadly competitive overall, with clear role/level/location variation and an emphasis on using posted ranges and band information for apples-to-apples comparisons.
  • Retirement Support — Retirement benefits are described as a standout, highlighted by a strong 401(k) match structure and immediate vesting, plus additional plan features for tax-advantaged saving.
  • Parental & Family Support — Family-oriented benefits are portrayed as a meaningful strength, with substantial paid parental leave and added supports like back-up care and adoption/surrogacy assistance.

Microsoft Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Redmond, WA
206,870 Employees
Year Founded: 1975

What We Do

At Microsoft, our mission is to empower every person and every organization on the planet to achieve more. Our mission is grounded in both the world in which we live and the future we strive to create. Today, we live in a mobile-first, cloud-first world, and the transformation we are driving across our businesses is designed to enable Microsoft and our customers to thrive in this world.

Similar Jobs

Zscaler Logo Zscaler

Sales Engineer

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
USA
8697 Employees
176K-251K Annually

DigitalOcean Logo DigitalOcean

Principal Engineer

Artificial Intelligence • Cloud • Software • Infrastructure as a Service (IaaS)
In-Office or Remote
Seattle, WA, USA
1400 Employees
230K-288K Annually

Remitly Logo Remitly

Security Engineer

eCommerce • Fintech • Payments • Software • Financial Services
In-Office
Seattle, WA, USA
2800 Employees
256K-320K Annually

Microsoft Logo Microsoft

Principal Security Operations Engineer

Software • Quantum Computing • Metaverse • Infrastructure as a Service (IaaS)
In-Office
Redmond, WA, USA
206870 Employees
143K-304K Annually

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account