1,321,836open jobs
77,909companies
210,930added this week
Browse all
Salary
$123k – $214k per year
Location
In office (London)
Seniority
Principal

Confirmed on the employer's own hiring board on Oct 7, 2026. First seen by Alion on Sep 24, 2026. Microsoft scores B on the Alion truth index.

Overview
Company
Impact
Profile match
Microsoft is an American multinational technology corporation founded in 1975 by Bill Gates and Paul Allen and headquartered in Redmond, Washington. It built the personal computing era around the Windows operating system and the Office productivity suite, and now generates the largest share of its revenue from Azure cloud infrastructure and commercial subscriptions. The company also owns GitHub, LinkedIn and the Xbox gaming business, and has invested heavily in artificial intelligence through its partnership with OpenAI and the Copilot assistants embedded across its products.
Overview

Primary Charter

Design, build, and secure realistic, reproducible cyber ranges that enable rigorous offensive evaluations of frontier AI systems while safely containing model and agent activity.

Overview

The Cloud & AI organization accelerates Microsoft’s mission to secure digital technology platforms, devices, clouds, and AI systems across customers’ heterogeneous environments and Microsoft’s own internal estate. Our culture is centered on a growth mindset, inspiring excellence, and helping teams and leaders bring their full potential every day.

Microsoft Red Team (MRT) emulates real-world advanced persistent threats against Microsoft and an ecosystem of external customers. As frontier AI systems become increasingly capable of reasoning, coding, tool use, exploitation, and autonomous execution, understanding when and how these systems materially increase offensive cyber capabilities is becoming an increasingly important component of Microsoft’s AI security mission.

MRT Strategic AI is seeking an AI Security Engineer focused on Cyber Range Engineering. This is a hands-on systems and security engineering role responsible for designing, building, hardening, and operating realistic cyber ranges where frontier AI models and agents can be safely evaluated against offensive objectives.

This role operates at the intersection of cyber-range engineering, cloud and virtualization infrastructure, offensive security, and agentic AI safety. The role involves translating evaluation requirements into production-like environments with realistic identities, hosts, services, trust relationships, attack paths, telemetry, validation, and reset mechanisms.

A critical aspect of the role is understanding the offensive evaluations that the ranges support and engineering appropriate security boundaries around them. This includes authorization, credentials and secrets, execution isolation, network egress, orchestration, monitoring, interruption, recovery, and forensic evidence.

Cyber-capable models may probe the evaluation harness, exploit unintended paths, seek external connectivity, or act outside the intended task. The role therefore requires a focus on containment, monitoring, and secure-by-design engineering.

This opportunity is suited to candidates with experience in cyber-range and platform security, combined with offensive security knowledge. Key responsibilities include building high-fidelity, reproducible environments, applying defense-in-depth and least-privilege principles, independently instrumenting and monitoring activity, continuously validating containment, and designing ranges that can fail safely, be rapidly revoked or rebuilt, and support detailed investigation when required.

Responsibilities

  • Design, build, and operate realistic, versioned, infrastructure-as-code cyber ranges spanning cloud, identity, endpoint, network, application, container, and multi-host attack surfaces.
  • Model production-like organizations, architectures, products, configurations, trust relationships, user behavior, data, and telemetry so evaluations require authentic multi-step offensive reasoning.
  • Translate evaluation objectives into repeatable scenarios with explicit prerequisites, authorized boundaries, expected attack paths, ground-truth validation, scoring signals, and automated reset contracts.
  • Engineer reliable lifecycle automation for provisioning, validation, execution, teardown, sanitization, and recovery across concurrent evaluation runs.
  • Design defense-in-depth controls for cyber-capable models and agents, including identity and authorization boundaries, least-privilege credentials, secrets isolation, capability-gated tools, workload isolation, and fail-closed enforcement.
  • Control and observe all network paths, including default-deny egress, approved destinations, DNS and traffic inspection, rate and scope controls, and automated interruption when activity crosses policy or range boundaries.
  • Build independent telemetry across model calls, agent trajectories, tool invocations, process execution, filesystem changes, identity use, network traffic, and control-plane activity; produce attributable, tamper-resistant evidence for investigation and scoring.
  • Continuously test the range and evaluation harness for sandbox escape, lateral movement, prompt or tool injection, credential exposure, supply-chain risk, benchmark cheating, persistence, and unintended access to evaluator or production infrastructure.
  • Define operational controls for emergency stop, credential revocation, workload quarantine, evidence preservation, incident response, and rapid rebuild; exercise these controls before enabling higher-capability models.
  • Partner with evaluation researchers, red-team operators, cloud and platform teams, and security response functions to convert new evaluation needs and observed failure modes into durable range capabilities and controls.
  • Document threat models, architecture decisions, control assumptions, operating procedures, residual risk, and evidence of containment for each range and model-access tier.

Qualifications

Required Qualifications:

  • Bachelor's Degree in Computer Science, Cybersecurity, Computer Engineering, or a related technical field AND relevant experience in security engineering, cloud or platform engineering, cyber-range development, or equivalent practical experience.
  • Deep hands-on experience designing and operating cyber ranges, security labs, testbeds, vulnerable environments, or other adversarial infrastructure at meaningful scale.
  • Solid systems and network security expertise across identity, access control, operating systems, cloud control planes, virtualization, containers, applications, secrets, segmentation, egress control, logging, and incident response.
  • Solid programming and automation ability, particularly in Python, plus experience with infrastructure as code, CI/CD, orchestration, configuration management, and repeatable environment lifecycle operations.
  • Demonstrated ability to threat-model hostile or autonomous workloads and translate risks into layered preventive, detective, and responsive controls.
  • Working knowledge of offensive-security concepts, attack paths, exploitation, lateral movement, persistence, and post-exploitation sufficient to build credible environments and recognize unintended behavior.
  • Ability to partner with evaluation experts to understand task intent, preserve experimental validity, and distinguish model capability from environmental or harness failure.

Preferred Qualifications:

  • Experience engineering cyber ranges across Azure, Kubernetes, Docker, hypervisors, Windows, and Linux with solid tenant, network, workload, and data isolation.
  • Experience securing agentic or tool-using AI systems, evaluation harnesses, autonomous code-execution platforms, malware-analysis systems, or similarly hostile workloads.
  • Experience building network and host telemetry pipelines, security analytics, detection logic, automated policy enforcement, and forensic workflows for ephemeral environments.
  • Experience with zero-trust design, non-human identities, short-lived credentials, secrets management, software supply-chain security, image provenance, and artifact signing.
  • Experience designing realistic enterprise attack environments, including identity, cloud, endpoint, application, network, container, or operational-technology scenarios and multi-stage attack chains.
  • Familiarity with frontier-model cyber evaluations, benchmark design, agent trajectories, ground-truth validation, scoring, contamination, reproducibility, and evaluation-specific cheating or reward hacking.
  • Experience conducting architecture reviews, adversarial testing, containment validation, incident exercises, and risk acceptance for high-consequence research environments.
  • Publication, conference, open-source, or community contributions in cyber ranges, cloud security, platform security, offensive security, AI security, or adjacent technical fields.

Security Operations Engineering IC5 - The typical base pay range for this role across United Kingdom is £ 93,500.00 - £ 161,800.00 per year. Certain roles may be eligible for benefits and other compensation.

Find additional benefits and pay information here:

https://careers.microsoft.com/v2/global/en/corporate-pay/united-kingdom-corporate-pay.html

This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.

Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,321,836 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
London
≈ $88k – $176k per year (Estimated) • Equity • In office • Full-Time • 5+ years exp • London
Python
Go
DevOps
Terraform
Istio
OpenTelemetry
OpenTofu
Linkerd
Prometheus
Pulumi
CI/CD
AWS
Kubernetes
Platform Engineering
Service Mesh
Amazon EKS
Amazon EC2
GitLab
Cybersecurity
SonarQube
Kyverno
Apply
≈ $101k – $185k per year (Estimated) • Hybrid • Full-Time • London
DevOps
GCP
Apply
$139k – $198k per year • In office • Contractor • London
DevOps
IAM
Cybersecurity
Zero Trust
Apply
≈ $100k – $184k per year (Estimated) • In office • Full-Time • 10+ years exp • London
Cybersecurity
NIST CSF
SOC 2
Apply
≈ $84k – $169k per year (Estimated) • In office • Full-Time • London
Python
JavaScript
Rust
TypeScript
DevOps
Rest API
Apply
≈ $121k – $245k per year (Estimated) • In office • Full-Time • 10+ years exp • Bachelor's Degree • Darmstadt
Python
Java
TypeScript
DevOps
GCP
Azure
CI/CD
AWS
Kubernetes
Platform Engineering
Cybersecurity
SOC 2
GDPR
HIPAA
Defense in Depth
Apply
≈ $125k – $259k per year (Estimated) • In office • Full-Time • 5+ years exp • O'Fallon
Python
Ruby
PowerShell
Bash
DevOps
Splunk
Terraform
GCP
Helm
Azure DevOps
GitHub Actions
VMWare
Chef
CloudFormation
Datadog
Prometheus
Azure
CI/CD
GitOps
Jenkins
Git
AWS
Kubernetes
Platform Engineering
Configuration Management
Bicep
Hyper-V
GitLab
Linux
Cybersecurity
CIS Benchmarks
Apply
$130k – $260k per year • Hybrid • Full-Time • 6+ years exp • Bachelor's Degree • Palo Alto
Python
SQL
AI/ML
Scikit-learn
AI Agents
TensorFlow
PyTorch
RAG
Feature Store
Human-in-the-Loop
LLM Guardrails
Machine Learning
Analytics
A/B Testing
Apply
≈ $133k – $254k per year (Estimated) • In office • Full-Time • PhD • Houston • Tlaquepaque
Python
AI/ML
LLM
Amazon SageMaker
LLM Guardrails
Machine Learning
DevOps
Terraform
Azure
CI/CD
AWS
Kubernetes
Amazon EKS
Azure AKS
IAM
Apply
$61k – $74k per year • In office • Wellington
Python
SQL
Databases
Snowflake
Apply
$123k – $214k per year • In office • 2+ years exp • Bachelor's Degree • London
AI/ML
AI Agents
Machine Learning
Cybersecurity
Threat Modeling
Apply
$58k – $100k per year • In office • Bachelor's Degree • Cheltenham
C++
DevOps
Linux
Windows
Apply
$102k – $202k per year • In office • 2+ years exp • Bachelor's Degree • Redmond
JavaScript
SQL
Frontend
npm
DevOps
Azure
GitHub
Cybersecurity
MITRE ATT&CK
Threat Modeling
Microsoft Entra ID
SIEM
Management
Microsoft Office
Apply
≈ $18k – $39k per year (Estimated) • In office • 8+ years exp • Hyderabad
DevOps
Azure
Cybersecurity
Microsoft Sentinel
SIEM
Apply
$100k – $181k per year • In office • 8+ years exp • Bachelor's Degree • Vancouver
C++
DevOps
Windows
Apply
≈ $90k – $240k per year (Estimated) • In office • London
Apply
≈ $40k – $70k per year (Estimated) • In office • Full-Time • 2+ years exp • Bachelor's Degree • London
DevOps
Windows
Management
Google Sheets
Apply
$106k – $119k per year • In office • Full-Time • London
Python
JavaScript
C#
Node JS
DevOps
Terraform
GitHub Actions
CI/CD
AWS
AWS Lambda
Amazon S3
IAM
Amazon ECS
Cybersecurity
Least Privilege
Management
Agile
Apply
Platform Engineer 1 day ago
$79k – $92k per year • In office • Full-Time • London
Python
JavaScript
C#
Node JS
DevOps
Terraform
GitHub Actions
CI/CD
AWS
AWS Lambda
Amazon S3
IAM
Amazon ECS
Cybersecurity
Least Privilege
Apply
≈ $43k – $91k per year (Estimated) • Hybrid • London
Apply
See all jobs
This is one of many
1,321,836 more open roles from verified company boards, updated every day.