Senior Security Researcher

April 3 2024
Industries IT: Software
Categories Programming, Development, Security, Continuity, Risk,
Ottawa, ON • Full time

Overview

Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified solutions. The Microsoft Security organization accelerates Microsoft’s mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers’ heterogeneous environments, as well as ensuring the security of our own internal estate. Our team is looking for a Senior Security Researcher that embodies our culture of embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their best each day. In doing so, we create life-changing innovations that impact billions of lives around the world.

Cloud App and Identity Research (CAIR) team is leading the security research of Microsoft Defender for Cloud Apps. We are working on the edge technology of AI and Cloud. Researches in the team are world class experts in cloud related threats, they are talented and enthusiastic employees.

Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.

In alignment with our Microsoft values, we are committed to cultivating an inclusive work environment for all employees to positively impact our culture every day.

Qualifications

Required/Minimum Qualifications

  • 5+ years experience in software development lifecycle, large-scale computing, modeling, cybersecurity, and/or anomaly detection
    • OR Master's Degree in Statistics, Mathematics, Computer Science or related field.
  • Proficiency in at least one programming language such as Python, C#, or C++ and/or proficiency in at least one query language such as KQL, SQL, Cypher.
  • Experience with a background in the modern attacker kill-chain, MITRE ATT&CK, and emerging enterprise threats including attacks against SaaS Apps and AI Apps, and Oauth Apps.

Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings: Microsoft Cloud Background Check:

- This position will be required to pass the Microsoft background and Microsoft Cloud background check upon hire/transfer and every two years thereafter.

Additional or Preferred Qualifications

  • 6+ years experience in software development lifecycle, large-scale computing, modeling, cybersecurity, and/or anomaly detection
    • OR Doctorate in Statistics, Mathematics, Computer Science or related field
  • Understanding and deep knowledge of commonly used attack tools and frameworks used by Red team
  • Experience working with and manipulating large data sets (i.e. billions of events per day). 
  • Industry recognized author of security research papers, blogs, presentations, or books. SOC or blue team experience involving the hunting and discovery of adversaries in enterprise environments.
  • Excellent cross-group and interpersonal skills, with the ability to articulate the business need for product improvements and a desire to engage directly with customers.
  • Bilingual proficiency in verbal and written communication both English and French.

Security Research IC4 - The typical base pay range for this role across Canada is CAD $104,000 - CAD $193,200 per year.

Find additional pay information here:
https://careers.microsoft.com/v2/global/en/canada-pay-information.html

Microsoft will accept applications and processes offers for these roles on an ongoing basis.

#MSFTSecurity

#CloudAppAndIdentity

#MsecR

Responsibilities

  • Perform attacker tradecraft research and threat landscape investigation across cloud-based attacks spanning Oauth Application, Enterprise Applications, AI Applications and their authentication mechanism.
  • Partner with engineers and product managers to deliver innovative product capabilities
  • Threat hunting to discover real world advanced attacks together with designing and implementing automated detection, hunting analytics and disruption actions based on alerts and signals across Microsoft Defender security products.
  • Contribute to active engagement with the security ecosystem through papers, presentations, and blogs. Provide subject matter expertise to customers based on industry attack trends and product capabilities.
  • Embody our culture and values.
Apply now!

Similar offers

Searching...
No similar offer found.
An error has occured, try again later.

Jobs.ca network