Work in Washington Veterans Jobs

Job Information

Microsoft Corporation Senior Security Engineer in Redmond, Washington

Microsoft Azure is at the center of Microsoft’s cloud services strategy. Azure brings together virtualization, compute, storage, authentication, authorization, artificial intelligence and machine learning, media and more to enable anyone to bring their business in the cloud.

We are seeking a Senior Security Engineer to join our team and contribute to the discovery, diagnosis, analysis, quantification, characterization, and solution-driving for the most challenging security issues within Azure through variant hunting. Variant hunting is an inductive investigation technique, going from the specific to the general, which explicitly recognizes that vulnerabilities occur in patterns. Using newly discovered vulnerabilities as a jumping-off point, you will conduct detailed research looking for additional and similar vulnerabilities, generalize the learnings into patterns, and then partner with engineering, governance, and policy teams to develop holistic and sustainable defenses.

In this role, you will advance security by working with other Security Engineers, Program and Product Managers, and Developers, as well as business leaders throughout Microsoft to turn individual findings and vulnerabilities into patterns and insights that can be measured and managed through engineering, automation, and other appropriate mitigations.  You will identify the most demanding security problems through original research and data analysis and help design and deliver practical solutions at scale for select products and services. This role is not confined to any particular area of technology; rather, you will work up and down the stack, across platforms, operating systems, languages, and frameworks, using your broad security skills to solve problems in unfamiliar domains.

Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their best each day. In doing so, we create life-changing innovations that impact billions of lives around the world.

Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.

In alignment with our Microsoft values, we are committed to cultivating an inclusive work environment for all employees to positively impact our culture every day.

Responsibilities

  • Analyze and categorize newly discovered vulnerabilities to understand contributing causes

  • Using insights gained from the analysis, develop ways to discover similar vulnerabilities at scale in other Azure products and services

  • Partner with engineering teams to develop appropriate solutions and tools

  • Partner with policy and governance orgs to develop the right policies, metrics, and systems to ensure solutions and tools are adopted and applied broadly

Other

  • Embody our Culture (https://www.microsoft.com/en-us/about/corporate-values) and Values (https://careers.microsoft.com/us/en/culture)

Qualifications

Required/Minimum Qualifications

  • 5+ years of experience in software development lifecycle, large-scale computing, modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), and operations incident response

  • OR Bachelor's Degree in Statistics, Mathematics, Computer Science or related field.

Additional or Preferred Qualifications

  • 7+ years of experience in software development lifecycle, large-scale computing, modeling, cyber security, and anomaly detection

  • OR Master's Degree or Doctorate in Statistics, Mathematics, Computer Science or related field.

Other Qualifications: 

  • Data analytics and/or AI/ML skills

  • Sound judgement, integrity, accountability, and the ability to work in a very fast paced environment.

  • Excellent written and verbal communication skills

  • A demonstrated growth mindset, the ability to learn quickly, apply old lessons to new situations

  • Have a detailed understanding of common classes of vulnerabilities, including but not necessarily limited to one or more of the following: authentication and authorization failures, memory corruption, SQL injection, cryptographic failures, cross-site scripting, networking failures, and the OWASP top 10.

Penetration Testing IC4 - The typical base pay range for this role across the U.S. is USD $117,200 - $229,200 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $153,600 - $250,200 per year.

Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here: https://careers.microsoft.com/us/en/us-corporate-pay

Microsoft will accept applications for the role until June 22 2024.

#MSFTSecurity #DevSec #AzureSecurity #VariantHunting #PenTesting #SecurityAssurance #InfoSecJobs

Microsoft is an equal opportunity employer. Consistent with applicable law, all qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations (https://careers.microsoft.com/v2/global/en/accessibility.html) .

DirectEmployers