Microsoft Security organization aims to secure digital technology platforms, devices, and clouds in customers' heterogeneous environments and ensure the security of Microsoft's internal estate.
Requirements
Coding experience in languages including, but not limited to, C, C++, Java, JavaScript, or Python
Experience with cloud security, including Azure or other cloud platforms
Knowledge of security automation and tooling, such as Terraform or CloudFormation
Experience with infrastructure security controls, such as network segmentation or encryption
Familiarity with CI/CD pipeline security and compliance checks
Experience with security scanning and compliance checks, such as SAST or DAST
Knowledge of log ingestion, analysis, and forensic readiness using tools like CloudTrail or SIEM platforms
Responsibilities
Design and implement secure cloud-native applications and services across cloud platforms.
Develop and maintain security automation and tooling to detect, prevent, and respond to threats.
Implement infrastructure security controls such as network segmentation, encryption, key management, and secure service-to-service communication.
Collaborate with architecture teams to integrate security into system design and service lifecycles.
Define and enforce secure coding standards, conduct peer code reviews with a security-first mindset.
Build and maintain CI/CD pipeline security, incorporating SAST, DAST, container scanning, and compliance checks.
Develop systems for real-time monitoring, alerting, and anomaly detection within cloud environments.
Other
Bachelor's Degree in Computer Science or related technical field
2+ years technical engineering experience
U.S. Government Top Secret Clearance with access to Sensitive Compartmented Information (SCI) based on a Single Scope Background Investigation (SSBI) with Polygraph
Ability to meet Microsoft, customer and/or government security screening requirements
U.S. citizenship due to citizenship-based legal restrictions