Home
/
Comprehensive
/
​​Principal Security Engineer​
​​Principal Security Engineer​-March 2024
Redmond
Mar 28, 2026
About ​​Principal Security Engineer​

  Microsoft is a company where passionate innovators come to collaborate, envision what can be and take their careers further. This is a world of more possibilities, more innovation, more openness, and the sky is the limit thinking in a cloud-enabled world.

  Microsoft’s Azure Data engineering team is leading the transformation of analytics in the world of data with products like databases, data integration, big data analytics, messaging & real-time analytics, and business intelligence. The products our portfolio include Microsoft Fabric, Azure SQL DB, Azure Cosmos DB, Azure PostgreSQL, Azure Data Factory, Azure Synapse Analytics, Azure Service Bus, Azure Event Grid, and Power BI. Our mission is to build the data platform for the age of AI, powering a new class of data-first applications and driving a data culture.

  ​​Within Azure Data, the databases team builds and maintains Microsoft's operational Database systems. We store and manage data in a structured way to enable a multitude of applications across various industries. We are on a journey to enable developer friendly, mission-critical, AI enabled operational Databases across relational, non-relational and OSS offerings.​

  ​​Microsoft’s Azure Data databases red team is hiring a Principal Security Engineer. Our team utilizes a variety of offensive security techniques to continuously evaluate and enhance the security posture of the organization and its offerings. We are dedicated to maintaining customer trust by staying one step ahead of the external attacker. We participate in both pre-release and post-release activities, conducting security reviews, penetration tests, and other ethical hacking exercises. Our team is highly collaborative. We partner with a corresponding blue team to improve monitoring and detection in the classic attack/defend paradigm. We partner with the databases’ product teams to drive security improvements in their products and processes. We even partner outside of our organization with other red teams across the company to identify systemic risks and share knowledge of attacks and techniques. As a Principal Security Engineer, you will be at the forefront of such engagements and collaborations.

  ​​

  We do not just value differences or different perspectives. We seek them out and invite them in so we can tap into the collective power of everyone in the company. As a result, our customers are better served.

  By applying to this U.S. based position, while remote work is possible, relocation does not apply/is not provided for the role.

  Responsibilities

  Security Assurance

  Understand current security trends and vulnerabilities.

  Participate in security design reviews and threat model reviews prior to the release of new products or features, communicating clearly the different security options and tradeoffs.

  Deliver broadly available security trainings based on learnings from previous exercises or incidents.

  Penetration testing

  Ramp up and understand new designs, systems, and technology as they are built.

  Participate in comprehensive assessments of features and large-scale applications and environments. This includes mapping out the surface area and assessing prioritization based on time, resource, and general importance tradeoffs.

  Find vulnerabilities in various spaces such as web applications, native applications, database systems, authentication flows, distributed systems and designs, and protocols. Pulling from a flexible knowledge base of topics such as OWASP, memory corruption, privilege escalation, networking, and etc. to find both common and uncommon issues.

  Red teaming

  Participate in targeted campaigns (planning, scoping, approval, reconnaissance & discovery, execution of attacks, pivoting, persistence, and remediation) against both pre-production and production environments.

  Navigate through an ecosystem of multiple domains, technologies, protocols, and stakeholders.

  Embody our culture (https://careers.microsoft.com/v2/global/en/culture) and values (https://www.microsoft.com/en-us/about/corporate-values)

  Qualifications

  Required/Minimum Qualifications

  ​​ 7+ years experience in identifying security vulnerabilities, software development lifecycle, large-scale computing, modeling, cyber security, and anomaly detection.

  Fundamental understanding of security knowledge around native applications, web applications, distributed and database systems.

  Other Requirements

  Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings: Microsoft Cloud Background Check:

  This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter.

  Preferred/Additional Qualifications

  Bachelor's Degree in Cybersecurity, Computer Science, or related field AND 8+ years experience in identifying security vulnerabilities, software development lifecycle, large-scale computing, modeling, cyber security, and anomaly detection

  OR Master's Degree in Cybersecurity, Computer Science, or related field.

  Understanding of security issues for large scale cloud services and network infrastructures.

  Deep and broad understanding of security vulnerabilities and attacks (Hardware, Firmware, Software, Network, and People), and the ability to understand new ones based on new technology being developed.

  Proficiency in Programming languages (C/C++, dotnet, js, python, sql, others) with expertise in troubleshooting and debugging skills.

  ​​High enthusiasm, integrity, ingenuity, results-orientation, self-motivation, and resourcefulness in a fast-paced competitive environment. 

  Have a deep desire to work collaboratively, solve problems with groups, find win/win solutions and celebrate successes.

  Penetration Testing IC5 - The typical base pay range for this role across the U.S. is USD $133,600 - $256,800 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $173,200 - $282,200 per year.

  Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here: https://careers.microsoft.com/us/en/us-corporate-pay

  #azdat

  #azuredata

  ​​#cloud #databases #offsec #appsec #pentest #redteam​

  Microsoft is an equal opportunity employer. Consistent with applicable law, all qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations (https://careers.microsoft.com/v2/global/en/accessibility.html) .

Comments
Welcome to zdrecruit comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
SIMILAR JOBS
Network Developer 3 - FastConnect
Job Description Supports the design, deployment, and operations of a large-scale global Oracle cloud computing environment (Oracle Cloud Infrastructure - OCI). Primarily focused on development and su
Oracle NetSuite - Account Executive - GB East - Mid-market
Job Description About Oracle NetSuite Do you want to advance your career with the world’s first cloud company? Since 1998, Oracle NetSuite has been on a mission to deliver an agile, unified applicati
Senior Bridge Safety Inspection Structural Engineer
Senior Bridge Safety Inspection Structural Engineer Req ID 17497 Senior Bridge Safety Inspection Structural Engineer Who We Are At WSP, we are driven by inspiring future-ready pioneers to innovate. W
FPGA Technical Marketing Manager
Job Description As part of Intel, the Programmable Solutions Group (PSG) is poised to deliver high-quality, timely and differentiating FPGA solutions to our customers. In line with that, PSG is looki
Personal Banker
Location: 3301 South Winton Rd - Rochester, New York 14623 Job Summary Be a problem solver, trusted advisor, and partner to the people and businesses in our Key Bank communities. Personal Bankers eng
Office Assistant II - Ear, Nose, & Throat
Responsible for making and scheduling patient appointments in an efficient and timely manner. Assists clients in person and on the phone, providing information and communicating with various departme
Technical Analyst 1-Support
Job Description Come and join us! We’re on a journey to advance how health happens with technologies that empower patients, support clinicians, inspire innovation, and save lives. Our mission? To bui
Patient Representative PRN
Description This position is incentive eligible. Introduction Do you have the PRN career opportunities as a(an) Patient Representative PRN you want with your current employer? We have an exciting opp
Software Engineer II
Office on Mobile team is focused on redefining productivity on mobile, bringing the best of the rich content models of Word, Excel, and PowerPoint along with a host of mobile optimized experiences ta
EBD Teacher
EBD Teacher Full Time Minimum Qualifications: Requires EBD or ABS License. (Anoka-Hennepin will make every effort to hire teachers with full standard licenses in the assigned subject and grade level.
Copyright 2023-2026 - www.zdrecruit.com All Rights Reserved