{"id":1594220,"url":"https://alion.io/job/microsoft-security-operations-engineer-ctj-poly","title":"Security Operations Engineer - CTJ - Poly","company":{"id":18,"name":"Microsoft","domain":"microsoft.com","url":"https://alion.io/company/microsoft","size_band":"5000+","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Eightfold","truth_index":{"grade":"B","score":75,"open_postings":27,"ghost_share":0,"stale_share":1,"repost_share":0,"time_to_fill_p50_days":null,"computed_at":"2026-10-01T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":"senior","employment_type":null,"work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Reston, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":{"min":119800,"max":234700,"currency":"USD","period":"year","gross":null,"usd_annual":234700},"salary_estimate":null,"experience_years_min":7,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Azure","optional":false},{"name":"Anomaly Detection","optional":true},{"name":"Copilot","optional":true},{"name":"Incident Management","optional":true},{"name":"ITIL","optional":true},{"name":"ITSM","optional":true},{"name":"SIEM","optional":true},{"name":"Threat Modeling","optional":true}],"status":"live","first_seen_at":"2026-09-25T22:19:41Z","employer_posted_date":"2026-10-01","last_verified_at":"2026-10-01T17:06:24Z","board_verified":true,"closed_at":null,"days_open":6,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":6},"description":"OverviewJoin the Microsoft Specialized Cloud (MSC) team as a Security Operations Engineer, where engineers build and operate highly secure cloud platforms, services, and developer experiences that support mission-critical workloads for U.S. Government customers. MSC software engineering teams design, develop, and evolve technologies that enable customers to operate at scale while meeting specialized security, compliance, and operational requirements. Drawing on expertise across distributed systems, cloud infrastructure, data, reliability, performance, and developer productivity, engineers collaborate across Microsoft to deliver trusted, resilient, and innovative solutions.\nWorking in Microsoft Specialized Clouds offers unique opportunities to solve technical challenges not commonly found in commercial cloud environments. Engineers build software for highly regulated and security-sensitive scenarios, develop solutions that operate in specialized and restricted environments, and help shape cloud technologies that support critical government missions and services.\nWe welcome engineers with diverse experiences, perspectives, and approaches to problem solving. We believe innovation is strengthened through inclusion and are committed to creating an environment where individuals can learn, grow, and contribute meaningfully. Whether your experience comes from industry, research, open-source projects, military service, technical training, or other pathways, we encourage you to apply.\nAt Microsoft, our mission-to empower every person and every organization on the planet to achieve more-guides how we partner with customers to deliver trusted, impactful solutions. With a growth mindset culture, we innovate responsibly and measure success by shared progress-people, teams, and customers. Join us to do meaningful work that changes the world and helps shape what’s next for everyone.\nResponsibilities\nLead Authorization & Accreditation (A&A) activities for Microsoft cloud platform services, driving successful Authority to Operate (ATO) outcomes across government and regulated environments.\nDevelop, maintain, and oversee all Risk Management Framework (RMF) documentation and security artifacts, including SSPs, SAPs, SARs, POA&Ms, control implementations, and continuous monitoring evidence.\nPlan, coordinate, and execute government compliance assessments, independent audits, inspections, and penetration testing activities, ensuring timely remediation of findings and sustained authorization status.\nServe as the primary security liaison with government accrediting officials, auditors, and internal stakeholders, providing guidance on compliance requirements and risk management strategies.\nNegotiate and resolve complex security, compliance, and accreditation issues with leadership teams, customers, and external oversight organizations while balancing mission, risk, and operational objectives.\nProvide deep technical expertise in Microsoft Azure services, cloud architecture, security controls, networking, identity management, and platform operations within highly regulated environments.\nPerform secure administration and operational support of Azure environments, including implementation of security controls, monitoring, incident response, vulnerability management, and compliance-driven cloud operations; experience developing security automation and orchestration solutions is highly desirable. \nQualifications\nRequired Qualifications:\nDoctorate in Statistics, Mathematics, Computer Science, or related field OR Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response\nOR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response\nOR equivalent experience. \n\nOther Requirements:\nSecurity Clearance Requirements: Candidates must be able to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings:\nThe successful candidate must have an active U.S. Government Top Secret Clearance with access to Sensitive Compartmented Information (SCI) based on a Single Scope Background Investigation (SSBI) with Polygraph. Ability to meet Microsoft, customer and/or government security screening requirements are required pre-offer and post-hire for this role. Failure to maintain or obtain the appropriate U.S. Government clearance and/or customer screening requirements may result in employment action up to and including termination.\nClearance Verification: This position requires successful verification of the stated security clearance to meet federal government customer requirements. You will be asked to provide clearance verification information prior to an offer of employment.\nMicrosoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter. \nCitizenship & Citizenship Verification: This position requires verification of U.S. citizenship due to citizenship-based legal restrictions. Specifically, this position supports United States federal, state, and/or local United States government agency customer and is subject to certain citizenship-based restrictions where required or permitted by applicable law. To meet this legal requirement, citizenship will be verified via a valid passport, or other approved documents, or verified US government Clearance.\n\nPreferred Qualifications:\nBachelor's degree in Cybersecurity, Computer Science, Computer or Software Engineering, Information Systems, or a related fieldOR equivalent practical experience.\n\n7+ years of experience in a customer-facing technical security role, including leadership of high-severity product or service incidents, crisis situations, or complex technical escalations.\nAbility to diagnose and scope complex technical issues across enterprise security environments, including interpreting logs and telemetry, assessing product behavior, and reasoning across identity, endpoint, network, and cloud architecture to validate customer impact and engage the right engineering teams.\nGeneral working knowledge of Microsoft Azure Security solutions (Purview, Defender, Entra, Intune, or Sentinel) sufficient to advise customers on capabilities, architecture, implementation, and operational considerations.\nProfessional proficiency in written and spoken English sufficient to translate complex technical issues into clear business impacts and communicate effectively with customers, engineers, product teams, and executive stakeholders.\nAdvanced degree (such as a Master's or PhD) in Cybersecurity, Computer Science, Computer or Software Engineering, Information Systems, or a related field, or demonstrated advanced specialization through substantial technical leadership, applied research, or recognized professional expertise.\nDemonstrated use of Microsoft Copilot or other generative AI technologies to improve operational efficiency, scalability, and customer outcomes.\nProven ability to develop service improvement plans, conduct customer health reviews, analyze operational signals, or create technical readiness content.\nApplied knowledge of regulatory compliance and enterprise risk management frameworks, combined with IT Service Management (ITSM) practices based on ITIL or comparable industry standards, including major incident management, problem management, change enablement, and continual improvement.\nOne or more relevant security, cloud, AI, or service management certifications or comparable industry credentials. Examples include:Microsoft Security: SC-100 (Cybersecurity Architect Expert), SC-200 (Security Operations Analyst), SC-300 (Identity & Access Administrator), SC-401 (Information Security Administrator), SC-500 (Cloud and AI Security Engineer Associate), MD-102 (Endpoint Administrator Associate)\nMicrosoft AI: AI-900 (Azure AI Fundamentals), AB-900 (Copilot & Agent Administration Fundamentals)\nIndustry security certifications: ISC² CISSP, ISC² CCSP, ISACA CISM, GIAC GDSA, GIAC GSTRT, GIAC GCIH\nService management: ITIL 4 Foundation, advanced ITIL certifications, or comparable ITSM credentials. \n\nSecurity Operations Engineering IC4 - The typical base pay range for this role across the U.S. is USD $119,800 - $234,700 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $160,200 - $261,000 per year.\nCertain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:\nhttps://careers.microsoft.com/us/en/us-corporate-pay\nThis position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.\nMicrosoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.","description_format":"text","description_chars":10235,"description_truncated":false,"requirements":{"experience_years_min":7,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":true},"security_clearance":true,"languages":[{"language":"English","level":"All levels","optional":true}]},"benefits":[],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Console Games","Gaming Consoles","Information Security","Developer Tools"],"lifecycle":[{"event":"open","at":"2026-10-01T17:06:24Z"}],"liveness":{"score":83,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.834,"p_room":1,"age_days":6,"expected_fill_days":23,"reasons":["conf:8","win:early","comp:brand"],"computed_at":"2026-10-02T01:52:36Z"},"pay":{"stated_usd_annual":234700,"is_top_pay":true},"html_url":"https://alion.io/job/microsoft-security-operations-engineer-ctj-poly","json_url":"https://alion.io/job/microsoft-security-operations-engineer-ctj-poly.json","meta":{"generated_at":"2026-10-02T01:52:36Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":2425,"day_limit":5000,"remaining_today":2575,"minute_limit":60,"resets_at":"2026-10-03T00:00:00Z"}}}