About The Position

The Microsoft Windows Security team is seeking a 'learn-it-all' security engineer to enhance the security of Microsoft Windows products and devices, with a focus on offensive security, security engineering, and mitigations for Windows. This team is responsible for securing Windows client and server operating systems used by billions of customers and businesses worldwide. Their work includes security design reviews, code reviews, penetration testing, vulnerability research, and driving systematic mitigations to ensure Windows meets the highest security standards and proactively defends against cybersecurity threats. This is a hands-on, technically demanding role crucial for strengthening the security posture of OS platforms. In this Security Engineer II position, you will uncover novel attack vectors, develop proof-of-concept mitigations, and collaborate directly with Windows product engineering teams to design durable and scalable defenses. The ideal candidate will possess hands-on experience with native code (C/C++), penetration testing skills (code audit, fuzzing, creative problem-solving), a clear understanding of OS security fundamentals, solid computer science skills, and a passion for keeping Microsoft customers safe. Microsoft's mission is to empower every person and organization to achieve more, fostering a culture of inclusion built on values of respect, integrity, and accountability.

Requirements

  • Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 1+ year(s) experience in security or related field OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 2+ years experience in security or related field OR equivalent experience.
  • Ability to meet Microsoft, customer and/or government security screening requirements are required for this role.
  • This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter.

Nice To Haves

  • 2+ years identifying vulnerabilities in operating systems and/or native (C/C++) applications.
  • 5+ years of experience in a software engineering or security-related engineering.
  • Public track record of relevant security research, especially around vulnerability discovery.
  • Experience exploiting bugs and bypassing security mitigations in operating systems.
  • Familiarity with Microsoft Windows architecture.

Responsibilities

  • Participate in security reviews to identify and mitigate risk in Microsoft products, including design reviews, code reviews, and fuzzing.
  • Be the security contact for teams building new innovative products and technologies in the next version of Windows and devices.
  • Identify security vulnerabilities in a wide variety of key OS features such as network protocols, security features, and Microsoft devices.
  • Leverage a broad and current understanding of security to devise new protections.
  • Interact with the external security community and security researchers.
  • Collaborate with product teams to improve security, and articulate the business value of security investments.

Benefits

  • Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here: https://careers.microsoft.com/us/en/us-corporate-pay

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service