1,324,044open jobs
78,015companies
211,522added this week
Browse all
Salary
$143k – $275k per year
Location
In office (Redmond)
Seniority
Architect · 12+ years exp

Confirmed on the employer's own hiring board on Oct 7, 2026. First seen by Alion on Sep 15, 2026. Microsoft scores B on the Alion truth index.

Overview
Company
Impact
Profile match
Microsoft is an American multinational technology corporation founded in 1975 by Bill Gates and Paul Allen and headquartered in Redmond, Washington. It built the personal computing era around the Windows operating system and the Office productivity suite, and now generates the largest share of its revenue from Azure cloud infrastructure and commercial subscriptions. The company also owns GitHub, LinkedIn and the Xbox gaming business, and has invested heavily in artificial intelligence through its partnership with OpenAI and the Copilot assistants embedded across its products.
Overview

The Microsoft Red Team (MRT) attacks Microsoft services and technologies to identify critical and systemic security risks, demonstrate authentic attack paths, and help engineering teams, investigators, and incident responders improve their ability to protect, detect, investigate, and respond to real attacks.

Red Team operations create a unique security engineering challenge. Authorized operators use many of the same techniques as sophisticated adversaries across complex cloud, identity, endpoint, network, and application environments. Microsoft must be able to observe those operations, protect and manage the infrastructure that enables them, and distinguish authorized activity from genuine adversary activity without weakening either offensive realism or defensive response.

As a Principal Security Architect in Microsoft Red Team Engineering, you will serve as the “blue team to the Red Team.” You will set technical direction and deliver critical capabilities that make Red Team operations observable, secure, reliable, and safely distinguishable from real attacks at scale. This is a Principal individual-contributor role focused on the telemetry, detections, monitoring, deconfliction, and operational infrastructure surrounding Red Team engagements, rather than on executing the engagements themselves.

You will work at the intersection of offense and defense, partnering closely with Red Team operators, software engineers, detection engineers, security researchers, threat intelligence, incident response, and platform and telemetry teams across Microsoft. As a peer to Red Team operators, you will define what effective visibility looks like for adversarial operations, drive the right telemetry into centralized monitoring, and design and implement detections that distinguish authorized operations from real attacks using the same tradecraft.

You will shape the architecture and strategy for Red Team telemetry, monitoring, detection, alerting, deconfliction, and operational security, while working with engineers and partner teams to turn that strategy into durable production capabilities. The role requires deep security expertise, strong software and systems engineering judgment, and the ability to move between architecture and implementation, solve ambiguous cross-organization problems, and enable others to deliver at greater scale.

Responsibilities

  • Define and drive the technical strategy and architecture for Red Team visibility, telemetry, detection, deconfliction, and operational security.
  • Use live Red Team operations, security incidents, threat intelligence, and adversary activity to identify systemic visibility and control gaps and translate them into prioritized engineering investments.
  • Architect and build scalable services and data pipelines that collect, normalize, enrich, and correlate Red Team telemetry to make the right signals available to defenders.
  • Drive the development of monitoring, hunting, detection, and alerting capabilities that help contextualize Red Team activity, identify unexpected or unauthorized behavior, and distinguish authorized operations from genuine adversary activity.
  • Build durable deconfliction capabilities that combine operational context, asset and identity information, infrastructure signals, and behavioral telemetry while protecting sensitive Red Team information.
  • Own and evolve the authoritative inventory of Red Team operational assets, ensuring infrastructure, tooling, identities, and related metadata are accurate, automated, auditable, and usable by monitoring and deconfliction systems.
  • Raise the engineering bar across Red Team systems through strong patterns for testing, reliability, observability, secure development, deployment, and infrastructure lifecycle management.
  • Provide hands-on technical leadership through architecture, implementation, reviews, debugging, operational response, and mentorship, while influencing engineering teams and roadmaps across Microsoft.
  • Help ensure Microsoft can conduct authentic Red Team operations with strong visibility, control, and confidence in its defensive response.

Qualifications

Required/minimum qualifications

  • Bachelor's Degree in Computer Science or related technical field AND 6+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python OR equivalent experience.

Other Requirements

  • Ability to meet Microsoft, customer, and/or government security screening requirements is required for this role. These requirements include, but are not limited to the following specialized security screenings:
    • Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud Background Check upon hire/transfer and every two years thereafter.

Additional or preferred qualifications

  • Master's Degree in Computer Science or related technical field AND 8+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python OR Bachelor's Degree in Computer Science or related technical field AND 12+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python OR equivalent experience.
  • Experience in cybersecurity, including one or more areas such as security telemetry, detection engineering, security monitoring, incident response, threat analytics, cloud security, identity security, endpoint security, or offensive security infrastructure.
  • Experience designing distributed services, data pipelines, automation, or large-scale security platforms.
  • Demonstrated ability to set technical direction in ambiguous problem spaces, identify systemic risks, and translate complex security challenges into durable engineering solutions.
  • Proven ability to influence architecture, priorities, and execution across multiple teams and organizations, and to communicate effectively with engineers, security practitioners, and senior technical leaders.

Software Engineering IC5 - The typical base pay range for this role across the U.S. is USD $142,800 - $274,800 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $188,000 - $304,200 per year.

Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:

https://careers.microsoft.com/us/en/us-corporate-pay

This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.

Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,324,044 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Redmond
$174k – $290k per year • In office • 5+ years exp • Bachelor's Degree • Palo Alto
DevOps
GCP
Azure
AWS
IAM
Cybersecurity
ISO 27001
NIST CSF
PCI DSS
GDPR
HIPAA
NIST 800-53
Zero Trust
Threat Modeling
SIEM
Apply
$205k – $426k per year • In office • 8+ years exp • Bachelor's Degree • San Mateo
DevOps
GCP
Azure
AWS
IAM
Cybersecurity
ISO 27001
NIST CSF
PCI DSS
GDPR
HIPAA
NIST 800-53
Zero Trust
SIEM
Apply
≈ $119k – $240k per year (Estimated) • Hybrid • Full-Time • 8+ years exp • Dallas • Nashville • Des Moines
Python
PowerShell
DevOps
CI/CD
AWS
IAM
Windows
DNS
VPN
Cybersecurity
Okta
CIS Benchmarks
SOC 2
HIPAA
Least Privilege
Threat Modeling
Management
Google Workspace
Apply
$216k – $324k per year • In office • 12+ years exp • Renton
DevOps
AWS
Platform Engineering
IAM
Cybersecurity
Okta
CyberArk
Zero Trust
Least Privilege
Microsoft Entra ID
Active Directory
Apply
$150k – $250k per year • Remote (United States) • Full-Time • 5+ years exp • United States
Cybersecurity
ISO 27001
SOC 2
GDPR
HIPAA
Apply
≈ $103k – $190k per year (Estimated) • Remote (United States) • Full-Time • 10+ years exp • Bachelor's Degree • Austin • Charlotte
Python
Java
SQL
PowerShell
C#
C++
Java
Liquibase
Databases
PostgreSQL
Snowflake
Apache Kafka
Google BigQuery
Amazon Redshift
BigQuery
DevOps
Rest API
Terraform
Puppet
Ansible
GCP
GitHub Actions
Chef
CloudFormation
Azure
CI/CD
Jenkins
Git
AWS
Configuration Management
Octopus Deploy
GitHub
Apply
In office
Python
C++
C++
CMake
DevOps
GitHub Actions
RTOS
CI/CD
Robotics
ArduPilot
MAVLink
Betaflight
IoT
FreeRTOS
Apply
$34k – $36k per year • In office • Paramus
C#
C#
.NET
Apply
≈ $15k – $42k per year (Estimated) • Hybrid • Full-Time • Ho Chi Minh City
Python
Go
Go
Chi
Databases
PostgreSQL
Redis
Neo4j
Apache Kafka
Amazon Neptune
AI/ML
Spark
Embeddings
AI Agents
Flink
RAG
Feature Store
Knowledge Graph
DevOps
GCP
OpenTelemetry
Prometheus
AWS
Docker
Kubernetes
Grafana
Amazon S3
Apply
≈ $16k – $48k per year (Estimated) • Hybrid • Full-Time • Hanoi
Python
Python
pySpark
AI/ML
Spark
Prompt Engineering
AI Agents
NLP
Transformers
LLM
RAG
DevOps
Azure
Apply
Security Researcher 5 days ago
$102k – $202k per year • In office • 5+ years exp • Bachelor's Degree • Redmond
AI/ML
AI Agents
Apply
$120k – $235k per year • In office • 8+ years exp • Bachelor's Degree • Redmond
AI/ML
AI Agents
Apply
$68k – $135k per year • In office • Internship • Bachelor's Degree • Redmond
Apply
$120k – $235k per year • In office • 8+ years exp • Bachelor's Degree • Redmond
Python
JavaScript
C#
C++
DevOps
Azure DevOps
Azure
Cybersecurity
CodeQL
Threat Modeling
Microsoft Defender for Cloud
Apply
$102k – $202k per year • In office • 5+ years exp • Bachelor's Degree • Redmond
Python
JavaScript
SQL
PowerShell
C#
C++
AI/ML
AI Agents
DevOps
Azure DevOps
Azure
GitHub
Cybersecurity
Least Privilege
Threat Modeling
Cryptography
Vault
Apply
$220k – $298k per year • Equity • In office • Full-Time • 10+ years exp • Redmond
Management
Agile
Apply
$82k – $90k per year • In office • Full-Time • 3+ years exp • Redmond
Apply
$166k – $296k per year • In office • 15+ years exp • Bachelor's Degree • Redmond
AI/ML
AI Agents
Speech Recognition
Text-to-Speech
DevOps
Azure
Apply
≈ $31k – $71k per year (Estimated) • In office • Redmond
Apply
$102k – $202k per year • In office • 4+ years exp • Bachelor's Degree • Redmond
AI/ML
OpenAI
DevOps
Azure
Management
Agile
Scrum
ITIL
Apply
See all jobs
This is one of many
1,324,044 more open roles from verified company boards, updated every day.