Principal Security Engineer

Microsoft - United States

Hiring: Principal Security Engineer Company: Microsoft Location: United States Job Posted Time: 2026-09-16 16:31:09 Target Skills & Keywords : Risk Management About the job Experience: •4+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection •6+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection Required Skills: •As a Principal Security Engineer •In alignment with our Microsoft values, we are committed to cultivating an inclusive work environment for all employees to positively impact our culture every day. •Partner with engineering teams to identify and mitigate security risks early in the development lifecycle through threat modeling, security design reviews, and architecture assessments for cloud and AI-powered services. •Drive secure-by-design improvements by developing security guidance, reference architectures, and practical remediation strategies that help teams address systemic security challenges and architectural anti-patterns. •Influence security outcomes across high-impact Microsoft services by working directly with engineers, architects, and product leaders to prioritize risks and accelerate security improvements. •Leverage AI and automation capabilities to scale security assessments, improve risk identification, and increase security coverage across complex product portfolios. •Investigate emerging technologies, cloud architectures, and AI workloads to uncover novel attack paths, security weaknesses, and opportunities to strengthen Microsoft's security posture. •Champion security excellence by mentoring engineering teams, enabling self-service security capabilities, and fostering secure development practices across the organization. Qualifications: •Master's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 4+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection •OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 6+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection •Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter. •Knowledge of secure software development practices, common attack techniques, security controls, and risk mitigation strategies. •Proven track record identifying systemic security risks and driving organization-wide risk reduction initiatives. •Security Assurance IC5 - The typical base pay range for this role across the U.S. is USD $142,800 - $274,800 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $188,000 - $304,200 per year. •This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled. Compensation: •$142,800 - $274,800 / year Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!