MSCCN
Security Technical Program Manager II
MSCCN, Redmond, Washington, United States, 98052
Microsoft Azure Edge + Platform (E+P) is a globally distributed team of engineers, architects, program managers, product managers, business program managers, business administrators, user experience researchers and designers who are responsible for the platform for Microsoft and for delivering Microsoft's edge vision. We create the most reliable and trustworthy OS and platform services to empower Microsoft and our customers to achieve more. We unlock the next wave of opportunity at the edge through an at-scale ecosystem driving widespread adoption of our Microsoft cloud services. Microsoft's Edge + Platform Security Fundamentals (EPSF) team is looking for a Senior Security Program Manager to join our Microsoft Offensive Research & Security Engineering (MORSE) team. This role on the MORSE team is responsible for securing the Windows client and server operating systems, used by billions of customers every day in businesses and across Azure. This team performs security design reviews, code reviews, and penetration testing on key features of Windows and Azure to make sure they meet the highest possible security standards, as well as defines security requirements and best practices that all of our platforms must adhere to. Our platforms serve as the foundation for nearly everything the company builds. From Windows Client and Server to edge devices to Azure and Xbox - the security of everything built on top of our platforms relies on the premise that the platform itself is secure. In this impactful role, you will partner with engineering and PM teams inside and outside EPSF to secure the operating systems built at Microsoft. The ideal candidate will have experience with native code (C/C++), penetration testing (code audit, writing fuzzers, finding creative ways to break assumptions), a clear understanding of OS (Operating System) security fundamentals, solid computer science skills, and a passion for keeping Microsoft customers safe. Microsoft's mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond. Responsibilities Identify and mitigate risk in Microsoft products in close partnership with MORSE engineers including design reviews, code reviews, and fuzzing Be the security contact for teams building new innovative products and technologies in the next version of Windows, Azure, and devices Leverage a broad and current understanding of security to envision new protections Interact with the external security community and security researchers Collaborate with product teams to improve security, and articulate the business value of security investments Partner with teams inside and outside EPSF toward building security and compliance early in the product development process and in developing born secure, born compliant products. Define objectives and key results (OKRs) to measure product success and track progress against goals, iterating and optimizing as necessary. Embody our Culture ( & Values (Qualifications Required Qualifications: 3+ years experience in software development lifecycle, large scale computing, modeling, cyber security, anomaly detection OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field OR equivalent experience. 3 years of experience as a program manager, product manager, dev lead, or cybersecurity professional (can sum up these roles to 3 years) Other Required Qualifications: Cloud Background Check: Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter. Preferred Qualifications: 4+ years experience in software development lifecycle, large scale computing, modeling, cyber security, anomaly detection OR Master's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field OR equivalent experience. Certified Information Systems Security Professional (CISSP) Certification, Security+ Certification, or relevant certification. 4 + years of experience in cybersecurity assurance and program management preferably including platform & operating system development. Knowledge of of Windows and/or Linux operating systems. Strategic thinking and problem-solving skills, with the ability to develop and execute research & development strategies that support product development objectives. Experience with defining and tracking OKRs and KPIs to measure program performance. Excellent communication and collaboration skills, with the ability to effectively interact with stakeholders at all levels of the organization. Security Assurance IC3 - The typical base pay range for this role across the U.S. is USD $98,300 - $193,200 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $127,200 - $208,800 per year. Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here: Microsoft will accept applications for the role until November 1 2024. #EPSF Microsoft is an equal opportunity employer. Consistent with applicable law, all qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations (.