The Conditional Access team builds the policy engine at the heart of Microsoft Entra and the Zero Trust security model. Every time a user or workload attempts to access a Microsoft or third-party resource, Conditional Access evaluates the full context of that request — user, device, location, application, real-time risk, and more — and makes the critical decision to grant, block, or challenge access. We are the enforcement point that turns "verify explicitly" from a principle into reality for hundreds of thousands of organizations and billions of authentications every day. Operating at extreme scale and with zero tolerance for downtime, our team owns the design, delivery, and live-site health of a mission-critical service that sits in the authentication hot path. We tackle hard problems across distributed systems, low-latency policy evaluation, security, and resilience — where correctness and availability directly protect our customers from real-world attacks. As identity increasingly becomes the security perimeter, and as we converge with Global Secure Access to protect network traffic as well as identity, our work is central to how Microsoft secures the modern enterprise. We're a team of engineers who care deeply about customer trust, operational excellence, and raising the bar for security across the industry. We move fast, own our outcomes end to end, and take pride in defending customers at a scale few teams in the world operate at. Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond. #MSFTSecurity #ConditionalAccess
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Principal