Principal Security Research Manager
Redmond, Washington, United States
Full Time Senior-level / Expert USD 137K - 294K
Microsoft
Entdecken Sie Microsoft-Produkte und -Dienste für Ihr Zuhause oder Ihr Unternehmen. Microsoft 365, Copilot, Teams, Xbox, Windows, Azure, Surface und mehr kaufen
Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified solutions. The Microsoft Security organization accelerates Microsoft’s mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers’ heterogeneous environments, as well as ensuring the security of our own internal estate. Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their best each day. In doing so, we create life-changing innovations that impact billions of lives around the world.
Do you want to lead a team of highly motivated world-class security engineers responsible for researching security issues across Microsoft products. As a Principal Security Research Manager, you'll lead the Microsoft Security Response Center Vulnerabilities and Mitigations Team (MSRC V&M) Team, exploring new ways to find, eradicate, and prevent security flaws in our codebase. You'll have the opportunity to work across Microsoft with developers, pen testers and security personnel to get ahead of those that wish to do harm to our customers. This is a unique opportunity to impact every major product that Microsoft has running and learn to solve security at the scale and complexity of Microsoft.
Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.
In alignment with our Microsoft values, we are committed to cultivating an inclusive work environment for all employees to positively impact our culture every day.
Responsibilities
People ManagementManagers deliver success through empowerment and accountability by modeling, coaching, and caring. • Model - Live our culture; Embody our values; Practice our leadership principles. • Coach - Define team objectives and outcomes; Enable success across boundaries; Help the team adapt and learn. • Care - Attract and retain great people; Know each individual’s capabilities and aspirations; Invest in the growth of others. Conducting Research- Overseas the assessment of security vulnerabilities submitted to MSRC. Directs changes to internal and external standards for making assessments working with key stakeholders to continually update these standards.
- Provides direction and overseas the teams to ensure efforts are dedicated to prioritized Security Research efforts in multiple projects in different security areas. Collaborates across teams to appropriately address and mitigate issues. Advocates for follow through with senior leadership. Ensures feedback loops are active and inform future research efforts.
- Builds and maintains relationships with stakeholders who benefit from research insight. Drives change within organization based on research findings. Leads team and role models contribution to professional community by publishing, advancing the Microsoft brand, creating and patenting IP. Maintains sustained interaction with research partners (e.g., industry, academia, government).
- Ensures work of the team upholds standards of analysis and design. Recognizes and conveys the impact of security problems and threats. Provides thought leadership across teams and creates mechanisms for best practice sharing and strategic impact of insights generated by analyses. Drives Microsoft to be a visible leader in security expertise.
- Leads teams that develop enterprise governance on technical indicator sharing advanced analysis and synthesis of threat data that provides high impact insights. Guides teams to use insights to identify novel areas of threat and vulnerability analysis. Drives productization of tools for standard use across teams.
- • Leads the work of technical experts and leverages expertise across a spectrum of specialties to ensure work is properly resourced and prioritized.
- Conveys critical technical issues to upper management in actionable terms. Advocates for accomplishments and needs of the teams.
- Persuades others to support key priorities. Establishes and maintains ethical behavior for the team in areas of subject matter expertise, including coordinated disclosure and ethical hacking.
- Drives participation in conferences and industry events. Ensures best practices are shared within and across teams.
- Collaborates with leaders of other engineering teams to identify and propose potential business opportunities, services, and/or product offerings.
- Manages efforts to research, develop, and implement new tools, technologies, and/or processes that may improve the availability, reliability, efficiency, and/or performance of products.
- Leverages technical expertise to anticipate and identify trend changes and adapt work accordingly.
- Makes business recommendations, such as cost-benefit, invest-divest, forecasting, and impact analysis with effective presentations of findings.
Qualifications
Required Qualifications:
- 7+ years experience in software development lifecycle, large-scale computing, modeling, cybersecurity, and/or anomaly detection.
- OR Master's Degree in Statistics, Mathematics, Computer Science or related field.
- 1+ year(s) people management experience.
- 2+ years of experience with applicaion security.
Other Requirements:
Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include but are not limited to the following specialized security screenings:
- Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud Background Check upon hire/transfer and every two years thereafter.
Preferred Qualifications:
- 8+ years experience in software development lifecycle, large-scale computing, modeling, cybersecurity, and/or anomaly detection
- OR Doctorate in Statistics, Mathematics, Computer Science or related field.
- 2+ years people management experience.
Security Research M5 - The typical base pay range for this role across the U.S. is USD $137,600 - $267,000 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $180,400 - $294,000 per year.
Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here: https://careers.microsoft.com/us/en/us-corporate-pay
Microsoft will accept applications for the role until May 12, 2025.
Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. If you need assistance and/or a reasonable accommodation due to a disability during the application or the recruiting process, please send a request via the Accommodation request form.
Benefits/perks listed below may vary depending on the nature of your employment with Microsoft and the country where you work.
#MSRC #MSFTSecurity
Tags: Cloud Computer Science Ethical hacking Governance Mathematics SDLC Vulnerabilities
Perks/benefits: Career development Conferences Medical leave Startup environment Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.