Source description
About the role
As a Senior Security Researcher, you will: Research emerging attack vectors and techniques. Analyze detection and prevention gaps and understand root cause. Design and develop detection, prevention and disruption solutions to thwart advanced attacks. Synthesize in-field telemetry to judge the state of threat coverage and share insights. Identify trends, foresee landscape direction and propose enhancements to meet the needs. Collaborate across teams to address systemic security issues. Guide design of AI based solutions to tackle hard security problems. Bachelor's Degree in Statistics, Mathematics, Computer Science or related field. OR 3+ years experience in software development lifecycle, large-scale computing, modeling, cybersecurity, and/or anomaly detection. 3+ years in reverse engineering (debuggers, disassemblers, file formats). 3+ years experience with attacker kill chain analysis (MITRE ATT&CK and enterprise threat modeling). 3+ years of experience in scripting and automation (Python, PowerShell, or Bash) and proficiency in at least one compiled language (e.g. C, C++, C#, Go, Rust). Working experience with cloud environments, OS internals, and hybrid attacks. These requirements include, but are not limited to the following specialized security screenings: Master's Degree in Statistics, Mathematics, Computer Science or related field. OR 4+ years experience in software development lifecycle, large-scale computing, modeling, cyber-security, and/or anomaly detection. 3+ years working with OS internals (Windows and Linux preferred). 3+ years of experience in red-team/purple-team or blue-team operations across hybrid environments. 3+ years authoring detection logic and security telemetry pipelines. 3+ years with regex, Kusto, and/or SQL for log analysis. Experience in research publication and security tooling development. Working knowledge of AI workflows or generative AI/LLM frameworks. Experience in vulnerability analysis and exploit development.
More at Microsoft
Related open roles
Program Manager, Global Security Access Management (GSAM)
Seattle · Onsite
Principal Technical Advisor for Cybersecurity Incident Response
Seattle · Dallas–Fort Worth · Onsite
Senior Security Researcher
Seattle · Washington DC · Onsite
Security Engineer
London · Dublin · Onsite
Security Cloud Solution Architect- CTJ - Poly
Washington DC · Onsite
Senior Cloud Solution Architect - Security / Global Solutions
Tokyo · Onsite