Job description
Microsoft is a company where passionate innovators come to collaborate, envision what can be and take their careers to levels they cannot achieve anywhere else. This is a world of more possibilities, more innovation, more openness, and the sky is the limit thinking a cloud-enabled world.
We are looking for a Principal Security Researcher in the Identity and Posture research team to partner across Microsoft to up-level customer understanding of and protection against identity-based threats.
Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.
Identity & Posture Security Research within the Microsoft Security group performs innovative research to uncover the latest identity-based threats and attack techniques and how to defend against them. We partner across the company including with Entra and Microsoft 365 Defender product and engineering teams to protect Microsoft customers through our security product portfolio. We consider how to detect and disrupt attacks, but also how we can prevent them from occurring in the first place.
Are you an expert in identity threats across on-premise and cloud and the interplay between these in sophisticated hybrid attacks? Do you want to apply your research at truly global scale to make a meaningful difference in protecting customers large and small? Are you an excellent communicator, able to convey complex threat concepts to a range of audiences? Are you excited at the challenge of the scale we operate at – over 600 million monthly active users of our identity services?
Responsibilities
We are looking for a security researcher with exceptional technical understanding of the identity domain, combined with the passion and drive to apply this in very concrete ways to protect customers against real-world attacks.
Responsibilities include:
- Articulate the identity threat in an accessible and actionable manner for customers.
- Increase customer mastery in tackling identity threats through driving changes in our security product portfolio
- Identify new adversary techniques in the identity domain, and partner across research and engineering to implement effective protections.
- Build a comprehensive understanding of the identity threat landscape through your own research, incident analysis, and security community partnerships.
- Deliver new detections, security recommendations, and attack disruption scenarios that run at scale across large and complex customer environments.
Qualifications
- Deep understanding of identity attack techniques used in real-world scenarios, spanning both large-scale and targeted attacks.
- Track record in identifying multiple new attack techniques in the identity domain
- Extensive published research and ability to collaborate across the research community
- Proficiency in C# / Python / Powershell development
- Excellent cross-group and interpersonal skills
Other Requirements
- Passion for protecting customers from cybersecurity threats
- Large scale data processing and analysis
- Understanding of Microsoft Azure and third-party cloud providers, in particular services related to identity and secret management.
- Experience working with SOCs and incident lifecycle
- This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter.
#MSFTSecurity #MSecR