Principal Penetration Testing
London, London, United Kingdom
Microsoft
Entdecken Sie Microsoft-Produkte und -Dienste für Ihr Zuhause oder Ihr Unternehmen. Microsoft 365, Copilot, Teams, Xbox, Windows, Azure, Surface und mehr kaufenResponsibilities
- Plan, research, and execute testing of computer systems and applications to simulate real world attacks on Microsoft’s services and infrastructure.
- Assess existing security capabilities to detect and respond to emerging threats.
- Outline and document risk impacts in executive summary reports and communications to relevant stakeholders.
- Perform research to stay current with penetration testing tools, methodologies, tactics, and mitigations.
- Participate as an infrastructure/operation specialist in overt penetration testing engagements, where we emulate real-world adversaries, During Purple Team engagements
- Develop and maintain penetration testing procedures and methodologies.
- Conduct research to remain updated with the latest in application security, both offensive and defensive techniques. Use these findings to educate and raise awareness within the Microsoft Security Community
Qualifications
• Experience in identifying security vulnerabilities, software development lifecycle, large-scale computing, modeling, cyber security, and anomaly detection.• Experience on penetration testing/red-teaming, cloud, services and network security.• Strong coding skills, including any of the following languages: C#, Python, C++, Go, PowerShell, ASP.NET, JavaScript Preferred Qualifications: • Master’s degree in computer science, software engineering, information security or equivalent work experience.• GPEN, GWAPT, GXPN, OSCP, OSCE, or similar certifications• Proven ability to quickly learn about new attack vectors and creativity to identify new threats.• Effective collaboration skills and ability to deal with ambiguity.• Experience with Advanced Persistent Threat (APT) emulation, purple teaming, and/or working with threat intelligence• Experience exploiting bugs and bypassing security mitigations in operating systems Other RequirementsAbility to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to, the following specialized security screenings:• Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check and credit history analysis upon hire/transfer and every year thereafter #RISO #RIPENTT #MSFTSecurity
Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or the recruiting process, please send a request via the Accommodation request form.
Benefits/perks listed below may vary depending on the nature of your employment with Microsoft and the country where you work.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Application security APT ASP.NET C Cloud Computer Science Ethical hacking GPEN GWAPT GXPN JavaScript Network security OSCE OSCP Pentesting PowerShell Python SDLC Threat intelligence Vulnerabilities
Perks/benefits: Medical leave
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.