Microsoft

Senior Security Software Engineer

Redmond, WA US
USD 117k - 250k
C++ C# Azure AWS GCP API
Description
Security is foundational to all product and service offerings from Microsoft. As part of the Microsoft AI Engineering team, you will collaborate with product engineering to innovate software design to defend against a continued and emerging security threat landscape. You will also be working on revolutionary technology with the Open AI ChatGPT integration with Microsoft AI services.


We are seeking an experienced Senior Security Software Engineer specialized in Penetration Testing to join our rapidly growing team. The ideal candidate will have hands-on experience with native and managed code penetration testing (code audit, writing fuzzers, finding creative ways to break assumptions) and applying those skills to an online services portfolio, a clear understanding of security fundamentals, solid computer science skills, and a passion for keeping Microsoft customers safe.

It starts with an interest in security, a technical background, and an appetite to explore, learn and break things to protect our customers!

By applying to this Redmond, WA position, you  are required to be local to the  Seattle area and in office 3 days a week.  

 

Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.

Required Qualifications

  • 5+ years experience in identifying security vulnerabilities, software development lifecycle, large-scale computing, modeling, cyber security, and anomaly detection.
  • 5+ years professional experience in penetration testing/red-teaming, including familiarity with tools like Burp Suite, good knowledge of cloud, services, and network security.
  • 3+ years of programming experience in C/C++, C# or similar language.
  • Experience in common classes of software vulnerabilities such as XSS, CSRF, SQLi, OWASP Top 10, cryptographic attacks and beyond.

Other Requirements

 

Ability to meet Microsoft, customer and/or government security screening requirements that are required for this role. These requirements include, but are not limited to the following specialized security screenings:

 

Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud Background Check upon hire/transfer and every two years thereafter.

 

Preferred Qualifications

 

  • Experience exploiting bugs and bypassing security mitigations in online services.
  • Experience managing security compliance related engineering programs and security infrastructure.
  • Proven ability to collaborate and establish key threat intelligence partnerships to bolster information sharing and defenses.  
  • Experience with one or more of the following: Azure, AWS, GCP, or any other large cloud provider security best practices.

 

Penetration Testing IC4 - The typical base pay range for this role across the U.S. is USD $117,200 - $229,200 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $153,600 - $250,200 per year.

Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here: https://careers.microsoft.com/us/en/us-corporate-pay

Microsoft will accept applications for the role until January 29, 2025. 

 

 

Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances.  We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. If you need assistance and/or a reasonable accommodation due to a disability during the application or the recruiting process, please send a request via the Accommodation request form.

 

Benefits/perks listed below may vary depending on the nature of your employment with Microsoft and the country where you work.

 

#MicrosoftAI

  • Perform penetration testing activities on production and internal systems to identify unknown vulnerabilities. Define a plan for remediation and drive accountability with engineering to address.
  • Provide security guidance, specify app security controls, evaluate existing security controls for new services, apps, features, API’s, devices, and third-party connections.
  • Participate in threat hunting activities using tools and data available; make recommendations to enrich data sources for more accurate correlation.
  • Track sophisticated adversaries and use your technical knowledge of adversary capabilities, infrastructure, and techniques to enhance detections and provide actionable intelligence to partner teams. Identify new data sources for threat hunting to fill gaps and increase visibility
  • Proactively research new technologies, make technology recommendations.
  • Drive and cultivate a positive culture of security across the engineering teams. Train product engineering to recognize bad patterns and innovate ways for developers to learn to identify security bad practice. 
  • Collaborate with other security teams across Microsoft to design and develop new security mitigations and defenses, with a focus on strategy and scalability.

Microsoft
Microsoft
Data Management Developer Tools DevOps Enterprise Software Operating Systems

0 applies

0 views

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 452 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say