The Cloud & AI organization accelerates Microsoft’s mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers’ heterogeneous environments, as well as ensuring the security of our own internal estate. Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their best each day. In doing so, we create life-changing innovations that impact billions of lives around the world. Microsoft is one of the largest enterprise service companies in the world. Security represents one of the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. The Office of the Chief Information Security Officer (CISO) is accountable for managing and prioritizing cybersecurity risk for Microsoft. This team oversees the company’s overall cyber defense, including the security of Microsoft products and business operations, and collaborates with Engineering teams to advance Secure Future Initiative (SFI) objectives. Security is a core priority for Microsoft, and Identity and Access Management protections are essential to protecting Microsoft at global scale. We are seeking a Principal Security Engineering manager and leader to guide a team building identity protections that reduce lateral-movement attack surface across Microsoft infrastructure, services, and administrative environments. As a Principal Security Engineering Manager, you will lead a high-performing team of Security Operations Engineers and Technical Program Managers (TPMs) building identity protections that secure Microsoft infrastructure and reduce lateral-movement risk across cloud-critical administration paths. You will apply an engineering-driven approach to security leadership, using data, tooling, automation, and AI to improve team operations, scale protection delivery and operationalization, and establish defensible boundaries in Entra environments. A key part of this role is building a hybrid human and agentic operating model for identity protection engineering. You will define how engineers, TPMs, and AI-powered systems work together to identify lateral-movement risk, design scalable controls, improve protection quality, and accelerate delivery across Microsoft’s identity and access management estate. You will partner with identity engineering, product, security operations, and platform teams to turn protection requirements into durable capabilities that reduce attack surface and strengthen defensible boundaries. This role is ideal for a leader with deep identity security expertise, a track record of organizational leadership, and strong cross-functional influence to drive protection strategy from design through operationalization. Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond. In alignment with Microsoft values, we are committed to cultivating an inclusive work environment where all employees positively impact our culture every day.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Principal
Education Level
Ph.D. or professional degree