The Microsoft Offensive Research & Security Engineering (MORSE) team is looking for a learn-it-all engineering leader that will help secure Microsoft products and devices.
The MORSE team is responsible for securing the Windows client and server operating systems, used by more than a billion customers every day in businesses and across Azure. This team performs security design reviews, code reviews, and penetration testing on key features of Windows and Azure to meet the highest security standards.
In this role, you will manage a team of security researchers tasked with helping Microsoft engineers ship the most secure products possible. The ideal candidate will have hands-on experience with native code (C/C++), penetration testing (including code audits, writing fuzzers, and creatively breaking assumptions), a clear understanding of OS security fundamentals, solid computer science skills, and a passion for keeping Microsoft customers safe.
Qualifications
Required:
* Expertise in a software engineering or security-related field
* Experience managing security-focused engineering teams
* Ample experience identifying vulnerabilities in operating systems and/or native (C/C++) applications
* Ability to create clarity, energy, and cohesion across the team
Preferred:
* Public track record of relevant security research, especially around vulnerability discovery
* Experience exploiting bugs and bypassing security mitigations in operating systems
* Familiarity with Microsoft Windows architecture
Responsibilities
* Lead and participate in security reviews to identify and mitigate risks in Microsoft products, including design review, code reviews, and fuzzing.
* Serve as the primary security contact for teams building new innovative products and technologies in the next version of Windows, Azure, and devices.
* Identify security vulnerabilities in key OS features such as network protocols, security features, and Microsoft devices.
* Leverage a broad and current understanding of security to develop new protections and exploit mitigations.
* Engage with the external security community and researchers.
* Collaborate with product teams to enhance security and communicate the business value of security investments.
Benefits and perks may vary depending on employment type and country, including industry-leading healthcare, educational resources, discounts, savings and investments, parental leave, generous time off, giving programs, and networking opportunities.
#J-18808-Ljbffr