Padmi
Microsoft logo
Microsoft

cloud computing (Azure) · AI and machine learning (Copilot, CoreAI)

Senior Security Research- Microsoft Security

Israel · OnsitePosted 1 month ago
SecuritySeniorFull Time
Apply at Microsoft

Opens the source posting on apply.careers.microsoft.com

Source description

About the role

View original

Own end-to-end large research projects that deliver identity protection against the most prevalent threats in the landscape, from initial threat hypothesis to shipped detection and customer protection impact. Conduct in-depth investigation and research of data across multiple identity and additional sources to identify threats and sophisticated attack incidents. Keep up to date with the latest trends in cyber-attacks and create robust, sophisticated detection logics across the entire kill-chain. Collaborate with product management, security, and engineering teams across the company to design innovative solutions and new identity protection capabilities and validate their effectiveness using a data-driven approach. Collaborate with data science teams to understand, identify, and implement detection gaps, capabilities, assumptions, and improvements. Leverage Generative AI tooling to scale research throughput — accelerating data triage, hypothesis generation, code and KQL authoring, literature review, and the synthesis of attacker tradecraft into shippable detections. Demonstrate thought leadership and engage and enlighten others through compelling, meaningful content and informative sessions. You have at least 6+ years of cyber security experience, including 2+ years working hands-on with identity-based attacks (research, hunting, or detection engineering) on top of the modern attacker kill-chain and MITRE ATT&CK. You have pssion for defensive work - hunting, investigation, detection authoring, and protection enforcement design — with a track record of owning research end-to-end, from threat hypothesis to shipped detection and customer impact. You have Windows internals knowledge, along with working knowledge of the main identity protocols (e.g., Kerberos, NTLM, LDAP, OAuth 2.0, SAML). You demonstrated fluency leveraging Generative AI tools (e.g., GitHub Copilot, Security Copilot, ChatGPT/Claude) to multiply daily research output — including prompt design, model-output validation, and integrating AI assistance into investigation, coding, and detection authoring. B.Sc./M.Sc. in Computer Science or related technical discipline. Good knowledge of at least one programming language such as C# (preferred), Python, or C++, and at least one query language such as KQL, SQL, or Cypher. Experience with Windows and/or Cloud forensics — key artifacts around credential theft and lateral movement across on-prem and hybrid identity environments. Experience authoring security research (papers, blogs, conference talks such as BlueHat / Black Hat / DEF CON, or CVEs). Experience building or applying AI/LLM-assisted workflows for security research, detection engineering, or threat intelligence at scale. Excellent cross-group, leadership, and interpersonal skills, with a drive to tackle ambiguous problems.

More at Microsoft

Related open roles

View all roles