1,063,835open jobs
62,249companies
178,971added this week
Browse all
Salary
≈ $84k – $174k per year (Estimated)
Location
In office (United States)
Seniority
Middle · 5+ years exp

Confirmed on the employer's own hiring board on Oct 1, 2026. First seen by Alion on Sep 23, 2026. Microsoft scores B on the Alion truth index.

Overview
Company
Impact
Profile match
Microsoft is an American multinational technology corporation founded in 1975 by Bill Gates and Paul Allen and headquartered in Redmond, Washington. It built the personal computing era around the Windows operating system and the Office productivity suite, and now generates the largest share of its revenue from Azure cloud infrastructure and commercial subscriptions. The company also owns GitHub, LinkedIn and the Xbox gaming business, and has invested heavily in artificial intelligence through its partnership with OpenAI and the Copilot assistants embedded across its products.
Overview

The Microsoft Windows Security team is looking for a learn-it-all security engineer that will help secure Microsoft Windows products and services, with focus on offensive security, security engineering, and mitigations for online services.

The Windows Security team is responsible for securing the services that build and power Windows, used by billions of customers every day and in businesses worldwide. This team performs security design reviews, code reviews, penetration testing, vulnerability research and driving systematic mitigations to security risks on Windows to make sure they meet the highest possible security standards and proactively defend cybersecurity threats. This role is hands-on, technically demanding, and central to strengthening the security posture of Windows online presence.

In this Security Engineer II (Services) - Windows Security role, you will uncover novel attack vectors, develop proof-of-concept mitigations, and partner directly with Windows product engineering teams to design durable & scalable defense. The candidate will have hands-on experience with penetration testing (code audit, using tools, finding creative ways to break assumptions), a clear understanding of security fundamentals, solid computer science skills, and a passion for keeping Microsoft customers safe.

Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.

Responsibilities

  • Build reusable agents and tools to expedite and improve the consistency and quality of security reviews.
  • Review deployments and code for security defects and architectural risk using agents and automated tools built by you and others.
  • Safely demonstrate the real-world impact of security flaws to aid in prioritization and fix validation.
  • Be the security contact for teams building new innovative products and services that will be deployed and used by billions.
  • Apply an adversary mindset to creatively bypass security controls.
  • Leverage a broad and current understanding of security to devise new protections.
  • Collaborate with engineering teams to improve security and articulate the value of security investments.

Qualifications

Required/Minimum Qualifications:

  • Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 1+ year(s) experience in security or related field.
    • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 2+ years experience in security or related field.
    • OR equivalent experience.

Additional or preferred qualifications

Other Requirements: Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include but are not limited to the following specialized security screenings:

  • Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter.

Preferred Qualifications:

  • 2+ years identifying vulnerabilities in online services, deployment misconfigurations.
  • 5+ years of experience in software engineering or security-related engineering.
  • Public track record of relevant security research, especially around vulnerability discovery.

#W+DJOBS

Penetration Testing IC3 - The typical base pay range for this role across the U.S. is USD $102,100 - $202,200 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $133,800 - $219,200 per year.

Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:

https://careers.microsoft.com/us/en/us-corporate-pay

This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.

Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,063,835 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
United States
≈ $49k – $112k per year (Estimated) • Equity • In office • 6+ years exp • Slovakia
Python
Bash
AI/ML
AI Agents
LLM Guardrails
DevOps
Splunk
CI/CD
AWS
Docker
Kubernetes
IAM
Linux
Cybersecurity
CVE
Zero Trust
Twingate
SIEM
Apply
$43k – $54k per year • Equity • In office • 6+ years exp • Slovakia
Python
Bash
AI/ML
AI Agents
LLM Guardrails
DevOps
Splunk
CI/CD
AWS
Docker
Kubernetes
IAM
Linux
Cybersecurity
CVE
Zero Trust
Twingate
SIEM
Apply
≈ $15k – $38k per year (Estimated) • In office • Bachelor's Degree • Yekaterinburg
Python
SQL
Bash
Groovy
Databases
PostgreSQL
Redis
Apache Kafka
DevOps
Ansible
Zabbix
Helm
Prometheus
CI/CD
Jenkins
Kubernetes
Nginx
Grafana
Bitbucket
Amazon S3
Linux
Management
Confluence
Jira
ITSM
Apply
Security Architect 2 days ago
≈ $120k – $250k per year (Estimated) • Hybrid • 7+ years exp • Bachelor's Degree • Columbia
DevOps
Azure
AWS
Apply
$170k – $323k per year • In office • Full-Time • 10+ years exp • Bachelor's Degree • Colorado Springs • Durham • Fort Collins
DevOps
Linux
Cybersecurity
Defense in Depth
Apply
$87k – $91k per year • In office • Secret • 5+ years exp • Bachelor's Degree • Blackstone
DevOps
Windows
Design
Blender
Apply
≈ $39k – $79k per year (Estimated) • In office • 2+ years exp • High School Diploma • Lincoln
DevOps
Windows
Cybersecurity
Wireshark
Active Directory
Apply
≈ $37k – $89k per year (Estimated) • In office • Contractor • Bachelor's Degree • Corpus Christi
DevOps
Windows
Management
Outlook
Microsoft Office
Apply
≈ $44k – $79k per year (Estimated) • In office • 2+ years exp • Associate's Degree • Atlanta
DevOps
Windows
Management
ServiceNow
Apply
≈ $47k – $84k per year (Estimated) • In office • 2+ years exp • Associate's Degree • Johns Creek
DevOps
Windows
Management
ServiceNow
Apply
$120k – $235k per year • In office • 8+ years exp • Bachelor's Degree • Redmond
AI/ML
AI Agents
Apply
$120k – $235k per year • In office • 6+ years exp • Bachelor's Degree • United States
DevOps
Windows
Apply
$68k – $135k per year • In office • Internship • Bachelor's Degree • Redmond
Apply
$124k – $214k per year • In office • 2+ years exp • Bachelor's Degree • London
AI/ML
AI Agents
Machine Learning
Cybersecurity
Threat Modeling
Apply
$102k – $202k per year • In office • 5+ years exp • Bachelor's Degree • Redmond
Python
JavaScript
SQL
PowerShell
C#
C++
AI/ML
AI Agents
DevOps
Azure DevOps
Azure
GitHub
Cybersecurity
Least Privilege
Threat Modeling
Cryptography
Vault
Apply
≈ $40k – $95k per year (Estimated) • In office • Full-Time • United States
Apply
$40k – $46k per year • In office • Full-Time • United States
DevOps
Windows
Management
Outlook
SharePoint
Apply
≈ $46k – $82k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • United States
DevOps
Windows
Management
Outlook
SharePoint
Apply
≈ $67k – $180k per year (Estimated) • In office • Part-Time • PhD • United States
Apply
≈ $106k – $248k per year (Estimated) • Remote (United States, ET hours) • Full-Time • Bachelor's Degree • United States
Apply
See all jobs
This is one of many
1,063,835 more open roles from verified company boards, updated every day.