828,733open jobs
53,373companies
136,484added this week
Browse all
Salary
$143k – $275k per year
Location
In office (Washington)
Seniority
Principal · 12+ years exp

Confirmed on the employer's own hiring board on Sep 27, 2026. First seen by Alion on Sep 21, 2026. Microsoft scores B on the Alion truth index.

Overview
Company
Impact
Profile match
Microsoft is an American multinational technology corporation founded in 1975 by Bill Gates and Paul Allen and headquartered in Redmond, Washington. It built the personal computing era around the Windows operating system and the Office productivity suite, and now generates the largest share of its revenue from Azure cloud infrastructure and commercial subscriptions. The company also owns GitHub, LinkedIn and the Xbox gaming business, and has invested heavily in artificial intelligence through its partnership with OpenAI and the Copilot assistants embedded across its products.
Overview

Quantum computing has the potential to massively accelerate science and technology innovation. Microsoft Discovery & Quantum is building advanced computing platforms, spanning HPC, AI, and quantum, to realize that future. You will join the Quantum Security & IT Operations (QSIT) team protecting a globally distributed research community and its intellectual property.

As a Principal Security Operations Engineer in QSIT, you will own the response to cybersecurity, external & insider threat incidents affecting Microsoft Quantum, from initial detection and severity assessment through containment, recovery, root-cause analysis, and executive closure working across National Security Team, HR, Legal, Global Trade, and CISO organizations. You will set the technical direction for incident handling, coordinate responders across Quantum and Microsoft security organizations, and ensure lessons learned translate into durable improvements to controls, detections, and operating procedures.

You will also define and drive the requirements for an AI-enabled QSIT Security Operations Center, shaping how AI supports signal enrichment, triage, investigation, response, and analyst decision-making while maintaining strong auditability and data-handling controls.

This role requires broad technical and risk judgment, independent leadership in ambiguous situations, and the ability to influence security strategy across organizational boundaries.

Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees, we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.

This role is onsite in Redmond, WA.

Responsibilities

  • Own cybersecurity incidents affecting Microsoft Quantum, establishing severity and response strategy, directing technical investigation and containment, coordinating recovery, and driving incidents to clear, accountable closure.

  • Manage insider and external threat incident analysis and triage from initial indicators through scoping, forensic review, evidence preservation, case disposition, and root-cause analysis, producing defensible investigative narratives for executive, legal, and compliance review.

  • Drive changes to systems and processes based on incident and risk learnings that cross and impact other teams.

  • Lead cross-functional incident response with Quantum engineering, Microsoft CISO organization, National Security Team, HR, Legal, and Global Trade; provide concise executive updates, document decisions and evidence, and ensure post-incident actions are assigned and completed.

  • Define and drive the requirements, architecture, operating model, and prioritized engineering backlog for an AI-enabled QSIT SOC, covering signal enrichment, triage, investigation, response recommendations, analyst-in-the-loop controls, auditability, and sensitive-data handling.

  • Translate AI SOC needs into measurable capabilities and acceptance criteria, evaluate first- and third-party solutions, guide implementation, and assess operational effectiveness, risk, and readiness for production use.

  • Design, implement, and tune insider threat and cybersecurity detections in Microsoft Sentinel and related platforms; onboard and normalize new security data streams; identify visibility gaps; and convert incident findings into improved detections, controls, runbooks, and monitoring coverage.

Qualifications

Required/minimum qualifications

  • Doctorate in Statistics, Mathematics, Computer Science, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
    • OR Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
    • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 6+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
    • OR equivalent experience.

Other Qualifications

  • Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings:
    • Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud Background Check upon hire/transfer and every two years thereafter.
  • Citizenship & Citizenship Verification: This role will require access to information that is controlled for export under export control regulations, potentially under the U.S. International Traffic in Arms Regulations or Export Administration Regulations, the EU Dual Use Regulation, and/or other export control regulations. As a condition of employment, the successful candidate will be required to provide proof of citizenship, U.S. permanent residency, or other protected status (e.g., under 8 U.S.C. § 1324b(a)(3)) for assessment of eligibility to access the export-controlled information. To meet this legal requirement, and as a condition of employment, the successful candidate's citizenship will be verified with a valid passport. Lawful permanent residents, refugees, and asylees may verify status using other documents, where applicable.Additional or

Additional or preferred qualifications

  • Doctorate in Statistics, Mathematics, Computer Science, or related field AND 5+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
    • OR Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 8+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
    • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 12+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
    • OR equivalent experience.
    • CISSP CISA CISM SANS OSCP Security+
  • 6+ years of experience in cybersecurity, security operations, incident response, insider threat, threat analytics, security information and event management (SIEM), or equivalent experience.
  • Demonstrated experience leading complex security incidents end-to-end, including technical investigation, containment, recovery, root-cause analysis, executive communication, and post-incident remediation.
  • Hands-on experience with Microsoft Sentinel (KQL) or an equivalent enterprise SIEM, including detection engineering, data onboarding, investigative analysis, and the ability to set technical direction across ambiguous, high-impact security situations.
  • CISSP certification or other relevant (CISA, CISM, SANS GCIA, GCIH, OSCP, Security+).
  • Experience collaborating with corporate insider threat, investigations, legal, or trade compliance functions; exposure to dedicated insider threat platforms such as Purview, DTEX, Proofpoint ITM, Magnet Axiom, or Forcepoint.
  • Experience designing, deploying, or evaluating agentic AI or LLM-based automation in a security operations context is strongly desired; familiarity with post-quantum cryptography concepts and CNSA 2.0.
  • Experience or interest in the specific challenges of protecting strategic research programs from sustained external targeting; familiarity with export control (EAR / ITAR) and government program environments.

#Quantum #QuantumCareers #MDQCareers #Security

Security Operations Engineering IC5 - The typical base pay range for this role across the U.S. is USD $142,800 - $274,800 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $188,000 - $304,200 per year.

Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:

https://careers.microsoft.com/us/en/us-corporate-pay

This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.

Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
828,733 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Washington
≈ $110k – $239k per year (Estimated) • Hybrid • Full-Time • 10+ years exp • Bachelor's Degree • Chicago
DevOps
GCP
Azure
CI/CD
AWS
IAM
Linux
Windows
Cybersecurity
CIS Benchmarks
PCI DSS
SOC 2
HIPAA
Least Privilege
Microsoft Defender for Cloud
Microsoft Entra ID
Ping Identity
Active Directory
SIEM
DLP
OWASP
Apply
AVP Cybersecurity 27 days ago
$172k – $258k per year • Remote (United States) • Full-Time • 8+ years exp • United States
Python
JavaScript
TypeScript
C#
DevOps
GCP
Azure DevOps
GitHub Actions
GitLab CI
Azure
CI/CD
Jenkins
AWS
Docker
Kubernetes
Shift-Left
Cybersecurity
Snyk
Checkmarx
Semgrep
OWASP Top 10
OWASP ASVS
STRIDE
Shift-Left Security
Threat Modeling
Veracode
Fortify
OWASP
Apply
$190k – $270k per year • In office • Full-Time • 7+ years exp • Bachelor's Degree • Alameda
Python
PowerShell
AI/ML
AI Agents
LLM Guardrails
DevOps
CI/CD
AWS
IAM
Cybersecurity
Zero Trust
Management
Agile
Apply
$219k – $311k per year • In office • Full-Time • 9+ years exp • Bachelor's Degree • Alameda
DevOps
Azure
CI/CD
AWS
GitHub
IAM
Cybersecurity
GDPR
Zero Trust
Management
Agile
Apply
≈ $120k – $262k per year (Estimated) • In office • Secret • 3+ years exp • Bachelor's Degree • Niceville
Cybersecurity
ISO 27001
SOC 2
Apply
≈ $72k – $172k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Melbourne
Python
Java
Ruby
C#
C++
C#
.NET
AI/ML
AI Agents
LLM
DevOps
AWS
TCP/IP
DNS
Cybersecurity
Threat Modeling
Apply
≈ $66k – $130k per year (Estimated) • Remote (Poland) • Full-Time • Bachelor's Degree
Python
PowerShell
C#
Databases
Databricks
AI/ML
AI Agents
DevOps
Terraform
Azure DevOps
Azure
CI/CD
TCP/IP
Cybersecurity
SIEM
Management
Agile
Scrum
Kanban
Apply
≈ $37k – $82k per year (Estimated) • Remote (Romania) • Full-Time • Bachelor's Degree
Python
PowerShell
C#
Databases
Databricks
AI/ML
AI Agents
DevOps
Terraform
Azure DevOps
Azure
CI/CD
TCP/IP
Cybersecurity
SIEM
Management
Agile
Scrum
Kanban
Apply
$120k – $170k per year • In office • Atlanta
JavaScript
C++
AI/ML
CUDA Toolkit
LLM
CUDA
Frontend
WebGPU
DevOps
HPC
Game Dev
GLSL
Apply
$120k – $170k per year • In office • Los Angeles
JavaScript
C++
AI/ML
CUDA Toolkit
LLM
CUDA
Frontend
WebGPU
DevOps
HPC
Game Dev
GLSL
Apply
$120k – $235k per year • In office • 8+ years exp • Bachelor's Degree • Washington
Python
PowerShell
C#
C++
Scala
AI/ML
AI Agents
LLM
DevOps
HPC
TCP/IP
DNS
Cybersecurity
Microsoft Sentinel
Threat Modeling
Magnet AXIOM
SIEM
Apply
$120k – $235k per year • In office • 10+ years exp • Bachelor's Degree • Washington
Python
Rust
SystemVerilog
AI/ML
AI Agents
DevOps
Azure
Management
OneDrive
Apply
Security Engineer 3 days ago
$102k – $202k per year • In office • 5+ years exp • Bachelor's Degree • Washington
AI/ML
Anomaly Detection
Cybersecurity
PKI
SIEM
Apply
$120k – $235k per year • In office • 10+ years exp • Bachelor's Degree • Washington
Python
AI/ML
Anomaly Detection
DevOps
Terraform
Ansible
Azure
Bicep
Incident Management
Cybersecurity
SIEM
Apply
$166k – $296k per year • In office • 15+ years exp • Bachelor's Degree • Washington
AI/ML
AI Agents
Cybersecurity
Microsoft Sentinel
Microsoft Defender
SIEM
Apply
≈ $99k – $185k per year (Estimated) • In office • Full-Time • Washington
Apply
$113k – $115k per year • In office • Full-Time • 3+ years exp • Bachelor's Degree • Washington
Cybersecurity
Threat Modeling
Apply
In office • Full-Time • PhD • Washington
Apply
≈ $96k – $274k per year (Estimated) • In office • Internship • Bachelor's Degree • Washington
Apply
$109k – $182k per year • Remote (United States) • Public Trust • 10+ years exp • Bachelor's Degree • Washington
DevOps
Azure
AWS
Apply
See all jobs
This is one of many
828,733 more open roles from verified company boards, updated every day.