1,230,736open jobs
70,270companies
213,973added this week
Browse all
Salary
$120k – $235k per year
Location
Hybrid (United States)
Seniority
Principal · 12+ years exp

Confirmed on the employer's own hiring board on Oct 5, 2026. First seen by Alion on Oct 1, 2026. Microsoft scores B on the Alion truth index.

Overview
Company
Impact
Profile match
Microsoft is an American multinational technology corporation founded in 1975 by Bill Gates and Paul Allen and headquartered in Redmond, Washington. It built the personal computing era around the Windows operating system and the Office productivity suite, and now generates the largest share of its revenue from Azure cloud infrastructure and commercial subscriptions. The company also owns GitHub, LinkedIn and the Xbox gaming business, and has invested heavily in artificial intelligence through its partnership with OpenAI and the Copilot assistants embedded across its products.
Overview

Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end-to-end, simplified solutions. The Microsoft Security organization accelerates Microsoft's mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers' environments, as well as ensuring the security of our own internal estate. Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams to bring their best each day. In doing so, we create life-changing innovations that impact billions of lives around the world.

Our team turns real vulnerabilities and adversary behavior into reproducible tasks that models and agents can learn from and be evaluated against. Reliable grading and reward signals are central to this work: success must reflect a verified security outcome, not simply a convincing response.

We are looking for several Principal and Senior Security Research Engineers to build realistic, safely contained attack scenarios across cloud, on-premises, and hybrid environments. You will combine hands-on security research with software engineering to reproduce vulnerable conditions, construct representative multi-step attack chains, and implement checks that establish what actually happened. Your scenarios will support reinforcement learning for Microsoft’s MAI family of models and evaluation of security Perception agents and the software harnesses that run them. Working with threat researchers, AI engineers, and environment engineers, you will test whether systems can distinguish threats from benign activity, connect evidence across an attack chain, and identify effective responses. You will own scenarios from research through implementation and grading, adapting them as attacker techniques evolve. Your work will give teams trustworthy training signals and concrete evidence of whether model, agent, or harness changes improve security capabilities that matter to customers.

Candidates residing within commuting distance of the Redmond or Reston hub are required to work on-site under a hybrid work arrangement, in accordance with Microsoft’s and the team’s in-office requirements for these designated locations.

Microsoft's mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.

Responsibilities

  • Turn threat research into working scenarios, reproducing real vulnerabilities and emerging adversary techniques in cloud, on-premises, and hybrid environments.

  • Build realistic attack chains.

  • Connect vulnerable applications, identity weaknesses, and misconfigurations into multi-step scenarios with verified prerequisites and observable security impact.

  • Make outcomes verifiable.

  • Build automated graders and reward signals grounded in system state and telemetry, distinguishing agent success, effective defenses, and environment failures.

  • Evaluate beyond familiar patterns.

  • Create attack variants, benign lookalikes, and patched controls that expose missed threats, false positives, and memorization.

  • Deliver safe, reusable research.

  • Own scenario code, isolation, evidence capture and reset; partner with AI and environment engineers to turn findings into better training and evaluation.

Qualifications

Minimum Qualifications:

  • Doctorate in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection.
    • OR Master's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection.
    • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 6+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection.
    • OR equivalent experience.

Other Requirements:

Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings:

Microsoft Cloud Background Check:

  • This position will be required to pass the Microsoft background and Microsoft Cloud background check upon hire/transfer and every two years thereafter.

Preferred Qualifications:

  • Doctorate in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 5+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection.
    • OR Master's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 8+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection.
    • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 12+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection.
    • OR equivalent experience.
  • 5+ years of experience researching vulnerabilities, conducting authorized offensive security tests, investigating security incidents, or developing security tools.
  • 3+ years of experience developing and debugging security tools or scenario automation in Python, C#, Go, C/C++, or TypeScript, using version control and automated tests.
  • Experience independently reproducing a vulnerability or adversary technique and documenting its prerequisites, reproduction steps, and observed security impact.
  • Experience building or validating multi-step attack chains across applications, identities, or hosts, including the access requirements and evidence for each step.
  • Experience assessing cloud IAM in Azure, AWS, or GCP and testing authentication, permissions, or network access in Windows or Linux environments.
  • Experience confirming or rejecting security findings through source-code review, telemetry, or controlled tests, including checking whether existing safeguards prevent the claimed impact.
  • Experience running authorized security tests with isolated targets, lab-only credentials, execution limits, and cleanup procedures.
  • Reconstructed attacks from incident evidence or threat reports for red-team, purple-team, or adversary-emulation exercises.
  • Reproduced attack paths across cloud and on-premises identity systems involving federation, service principals, workload identities, or directory services.
  • Used source-code analysis, debugging, or reverse engineering to identify a vulnerability's root cause and verify a fix.
  • Built automated graders or reward functions that check system state and telemetry, including checks that distinguish scenario failures from agent failures.
  • Created attack variants, benign comparison cases, patched scenarios, or simulated user activity to test detection accuracy and false positives.

#MSFTSecurity #Cybersecurity #SecurityResearch #AgentSecurity #AgenticEvals #Perception

Security Research IC4 - The typical base pay range for this role across the U.S. is USD $119,800 - $234,700 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $160,200 - $261,000 per year.

Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:

https://careers.microsoft.com/us/en/us-corporate-pay

Security Research IC5 - The typical base pay range for this role across the U.S. is USD $142,800 - $274,800 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $188,000 - $304,200 per year.

Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:

https://careers.microsoft.com/us/en/us-corporate-pay

This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.

Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,230,736 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

AI/ML
Similar stack
Same company
United States
≈ $135k – $287k per year (Estimated) • In office • 5+ years exp • Master's Degree • Jersey City
Python
JavaScript
Rust
TypeScript
SQL
Databases
PostgreSQL
Redis
Snowflake
Databricks
OpenSearch
AI/ML
Model Context Protocol
Fine-tuning
Embeddings
AI Agents
LLM
RAG
A2A
GraphRAG
Knowledge Graph
LLM Guardrails
Multi-Agent Systems
Machine Learning
Frontend
Svelte
Next.js
React.js
DevOps
Splunk
Azure
CI/CD
AWS
Kubernetes
Bitbucket
Amazon EKS
Cybersecurity
Defense in Depth
Management
Confluence
Agile
Apply
AI Platform Lead 1 hour ago
$170k – $240k per year • In office • TS/SCI • 12+ years exp • Bachelor's Degree • Laurel
AI/ML
Claude Code
AI Agents
LLM
OpenAI Codex
Agentic Workflows
Multi-Agent Systems
Apply
AI Architect 14 days ago
≈ $121k – $270k per year (Estimated) • Hybrid • Full-Time • Master's Degree • Brussels
AI/ML
AI Agents
Edge AI
Machine Learning
DevOps
Azure
AWS
Apply
≈ $86k – $218k per year (Estimated) • In office • Full-Time • Abidjan
AI/ML
Machine Learning
Management
Agile
Scrum
Kanban
Apply
In office • Internship • Abidjan
Python
JavaScript
PHP
TypeScript
SQL
Node JS
AI/ML
Prompt Engineering
Transformers
Machine Learning
Frontend
Vue.js
Next.js
React.js
Mobile
React Native
DevOps
Rest API
Git
Apply
≈ $167k – $334k per year (Estimated) • Remote (likely United States) • Full-Time
AI/ML
Reinforcement Learning
AI Agents
Apply
Research Engineer 1 day ago
≈ $124k – $279k per year (Estimated) • In office • Full-Time • Zurich
Python
AI/ML
DeepSpeed
Reinforcement Learning
JAX
Multimodal AI
PyTorch
Ray
Post-training
Machine Learning
Apply
≈ $130k – $254k per year (Estimated) • Hybrid • Full-Time • Bellevue
AI/ML
DeepSpeed
Fine-tuning
RLHF
Reinforcement Learning
AI Agents
PyTorch
Ray
SFT
Post-training
Megatron-LM
Machine Learning
DevOps
Kubernetes
Apply
Recruiter 1 day ago
$100k – $150k per year • In office • Full-Time • 3+ years exp • San Francisco
AI/ML
Reinforcement Learning
Apply
$100k – $150k per year • In office • Full-Time • 2+ years exp • Singapore
AI/ML
Reinforcement Learning
Apply
$80k – $143k per year • In office • 4+ years exp • High School Diploma • Quebec
AI/ML
Fine-tuning
Reinforcement Learning
AI Agents
LLM
Pre-training
Machine Learning
Apply
AI Lead Engineer 11 days ago
≈ $27k – $59k per year (Estimated) • In office • Bengaluru
AI/ML
Fine-tuning
Quantization
Knowledge Distillation
Speech Recognition
LLM
Hallucination
Model Distillation
Apply
≈ $20k – $50k per year (Estimated) • In office • 5+ years exp • Bachelor's Degree • Hyderabad
Python
C#
AI/ML
AutoGen
LangChain
DSPy
LlamaIndex
Fine-tuning
Prompt Engineering
AI Agents
Haystack
Transformers
PyTorch
RAG
Hallucination
Human-in-the-Loop
Edge AI
Machine Learning
DevOps
GCP
Azure
CI/CD
AWS
AIOps
Apply
$166k – $296k per year • In office • 15+ years exp • Bachelor's Degree • Mountain View • Washington
AI/ML
InfiniBand
DevOps
Azure
Management
OneDrive
Apply
$102k – $202k per year • In office • 5+ years exp • Bachelor's Degree • Tulsa
AI/ML
AI Agents
Machine Learning
Cybersecurity
Threat Modeling
Management
Microsoft Teams
Apply
$90k – $125k per year • Hybrid • Secret • Master's Degree • United States
Apply
$50k – $63k per year • In office • Full-Time • 3+ years exp • United States
DevOps
Amazon S3
Apply
Lead Cook Trainee 11 hours ago
$46k – $50k per year • In office • Full-Time • Bachelor's Degree • United States
Apply
CDL Driver Apprentice 11 hours ago
≈ $40k – $67k per year (Estimated) • In office • Internship • High School Diploma • United States
Apply
CDL Driver Apprentice 11 hours ago
$44k per year • In office • Internship • High School Diploma • United States
Apply
See all jobs
This is one of many
1,230,736 more open roles from verified company boards, updated every day.