Microsoft Logo

Microsoft

Security Operations Engineer - CTJ - Poly

Reposted 4 Days Ago
Be an Early Applicant
In-Office or Remote
Hiring Remotely in MD, USA
120K-261K Annually
Senior level
In-Office or Remote
Hiring Remotely in MD, USA
120K-261K Annually
Senior level
Lead authorization and accreditation activities for Microsoft Azure cloud platforms supporting government customers. Manage RMF documentation, ATOs, security controls, audits, penetration tests, continuous monitoring, remediation, and compliance evidence. Serve as a security liaison with government officials and auditors, resolve complex accreditation issues, and provide technical expertise across cloud architecture, networking, identity, and operations. Perform secure Azure administration, monitoring, incident response, vulnerability management, and compliance-driven operations, including security automation.
The summary above was generated by AI
Overview

Join the Microsoft Specialized Cloud (MSC) team as a Security Operations Engineer, where engineers build and operate highly secure cloud platforms, services, and developer experiences that support mission-critical workloads for U.S. Government customers. MSC software engineering teams design, develop, and evolve technologies that enable customers to operate at scale while meeting specialized security, compliance, and operational requirements. Drawing on expertise across distributed systems, cloud infrastructure, data, reliability, performance, and developer productivity, engineers collaborate across Microsoft to deliver trusted, resilient, and innovative solutions.


Working in Microsoft Specialized Clouds offers unique opportunities to solve technical challenges not commonly found in commercial cloud environments. Engineers build software for highly regulated and security-sensitive scenarios, develop solutions that operate in specialized and restricted environments, and help shape cloud technologies that support critical government missions and services.

We welcome engineers with diverse experiences, perspectives, and approaches to problem solving. We believe innovation is strengthened through inclusion and are committed to creating an environment where individuals can learn, grow, and contribute meaningfully. Whether your experience comes from industry, research, open-source projects, military service, technical training, or other pathways, we encourage you to apply.

At Microsoft, our mission—to empower every person and every organization on the planet to achieve more—guides how we partner with customers to deliver trusted, impactful solutions. With a growth mindset culture, we innovate responsibly and measure success by shared progress—people, teams, and customers. Join us to do meaningful work that changes the world and helps shape what’s next for everyone.


Responsibilities
  • Lead Authorization & Accreditation (A&A) activities for Microsoft cloud platform services, driving successful Authority to Operate (ATO) outcomes across government and regulated environments.
  • Develop, maintain, and oversee all Risk Management Framework (RMF) documentation and security artifacts, including SSPs, SAPs, SARs, POA&Ms, control implementations, and continuous monitoring evidence.
  • Plan, coordinate, and execute government compliance assessments, independent audits, inspections, and penetration testing activities, ensuring timely remediation of findings and sustained authorization status.
  • Serve as the primary security liaison with government accrediting officials, auditors, and internal stakeholders, providing guidance on compliance requirements and risk management strategies.
  • Negotiate and resolve complex security, compliance, and accreditation issues with leadership teams, customers, and external oversight organizations while balancing mission, risk, and operational objectives.
  • Provide deep technical expertise in Microsoft Azure services, cloud architecture, security controls, networking, identity management, and platform operations within highly regulated environments.
  • Perform secure administration and operational support of Azure environments, including implementation of security controls, monitoring, incident response, vulnerability management, and compliance-driven cloud operations; experience developing security automation and orchestration solutions is highly desirable. 

Qualifications
Required Qualifications:
  • Doctorate in Statistics, Mathematics, Computer Science, or related field
    •  OR Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
    • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
    • OR equivalent experience. 

Other Requirements:

  • Security Clearance Requirements: Candidates must be able to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings:  
     

    • The successful candidate must have an active U.S. Government Top Secret Clearance with access to Sensitive Compartmented Information (SCI) based on a Single Scope Background Investigation (SSBI) with Polygraph. Ability to meet Microsoft, customer and/or government security screening requirements are required pre-offer and post-hire for this role. Failure to maintain or obtain the appropriate U.S. Government clearance and/or customer screening requirements may result in employment action up to and including termination. 
    • Clearance Verification: This position requires successful verification of the stated security clearance to meet federal government customer requirements. You will be asked to provide clearance verification information prior to an offer of employment.
    • Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter.   

    Citizenship & Citizenship Verification: This position requires verification of U.S. citizenship due to citizenship-based legal restrictions. Specifically, this position supports United States federal, state, and/or local United States government agency customer and is subject to certain citizenship-based restrictions where required or permitted by applicable law. To meet this legal requirement, citizenship will be verified via a valid passport, or other approved documents, or verified US government Clearance .



Preferred Qualifications:

  • Bachelor's degree in Cybersecurity, Computer Science, Computer or Software Engineering, Information Systems, or a related field
    • OR equivalent practical experience.
  • 7+ years of experience in a customer-facing technical security role, including leadership of high-severity product or service incidents, crisis situations, or complex technical escalations.
  • Ability to diagnose and scope complex technical issues across enterprise security environments, including interpreting logs and telemetry, assessing product behavior, and reasoning across identity, endpoint, network, and cloud architecture to validate customer impact and engage the right engineering teams.
  • General working knowledge of Microsoft Azure Security solutions (Purview, Defender, Entra, Intune, or Sentinel) sufficient to advise customers on capabilities, architecture, implementation, and operational considerations.
  • Professional proficiency in written and spoken English sufficient to translate complex technical issues into clear business impacts and communicate effectively with customers, engineers, product teams, and executive stakeholders.
  • Advanced degree (such as a Master's or PhD) in Cybersecurity, Computer Science, Computer or Software Engineering, Information Systems, or a related field, or demonstrated advanced specialization through substantial technical leadership, applied research, or recognized professional expertise.
  • Demonstrated use of Microsoft Copilot or other generative AI technologies to improve operational efficiency, scalability, and customer outcomes.
  • Proven ability to develop service improvement plans, conduct customer health reviews, analyze operational signals, or create technical readiness content.
  • Applied knowledge of regulatory compliance and enterprise risk management frameworks, combined with IT Service Management (ITSM) practices based on ITIL or comparable industry standards, including major incident management, problem management, change enablement, and continual improvement.
  • One or more relevant security, cloud, AI, or service management certifications or comparable industry credentials. Examples include:
    • Microsoft Security: SC-100 (Cybersecurity Architect Expert), SC-200 (Security Operations Analyst), SC-300 (Identity & Access Administrator), SC-401 (Information Security Administrator), SC-500 (Cloud and AI Security Engineer Associate), MD-102 (Endpoint Administrator Associate)
    • Microsoft AI: AI-900 (Azure AI Fundamentals), AB-900 (Copilot & Agent Administration Fundamentals)
    • Industry security certifications: ISC² CISSP, ISC² CCSP, ISACA CISM, GIAC GDSA, GIAC GSTRT, GIAC GCIH
    • Service management: ITIL 4 Foundation, advanced ITIL certifications, or comparable ITSM credentials. 

Security Operations Engineering IC4 - The typical base pay range for this role across the U.S. is USD $119,800 - $234,700 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $160,200 - $261,000 per year.

Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:
https://careers.microsoft.com/us/en/us-corporate-pay


This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.



Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.

Similar Jobs

2 Hours Ago
Remote or Hybrid
USA
120K-180K Annually
Senior level
120K-180K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Build agentic AI workflows and platforms that automate software development lifecycle activities, including code generation, review, testing, and release. Improve context grounding, model routing, observability, benchmarking, and cost efficiency for LLM-powered engineering tools. Partner with engineering teams to identify workflow friction and promote responsible AI adoption. The role requires backend and platform engineering experience, LLM-agent infrastructure expertise, Kubernetes experience, and proficiency in Go or Python.
Top Skills: A/B TestingAi Coding Agent FrameworksEntity ResolutionEvent PipelinesGoKnowledge GraphsKubernetesLarge Language ModelsLlm Agent InfrastructureObservability ToolingPython
2 Hours Ago
Remote or Hybrid
USA
195K-290K Annually
Expert/Leader
195K-290K Annually
Expert/Leader
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Leads the Cloud Detection Platform organization, strategy, architecture, roadmap, and multiple engineering teams. Owns large-scale detection engines, content delivery infrastructure, reliability, latency, cost, SLOs, capacity, and quota management. Drives unified detection architecture, safe content deployment, testing, observability, and cross-functional roadmap execution while managing organizational planning, talent development, and operational excellence.
Top Skills: AICloud ComputingDistributed SystemsQuery EnginesSearch EnginesSIEMStreaming Systems
2 Hours Ago
Remote or Hybrid
USA
95K-140K Annually
Entry level
95K-140K Annually
Entry level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Conduct incident response engagements, threat hunting, intrusion investigations, and host or network forensics across Windows, macOS, and Linux. Analyze network data, malware, and cloud environments; support remediation planning; and prepare reports, presentations, recommendations, and findings for customers, regulators, legal counsel, and internal teams. Consultants collaborate with project leadership and customers while using AI technologies to improve investigative workflows and decision-making.
Top Skills: AWSBro/ZeekGoogle Cloud Platform (Gcp)LinuxmacOSAzureSuricataWindows

What you need to know about the Chicago Tech Scene

With vibrant neighborhoods, great food and more affordable housing than either coast, Chicago might be the most liveable major tech hub. It is the birthplace of modern commodities and futures trading, a national hub for logistics and commerce, and home to the American Medical Association and the American Bar Association. This diverse blend of industry influences has helped Chicago emerge as a major player in verticals like fintech, biotechnology, legal tech, e-commerce and logistics technology. It’s also a major hiring center for tech companies on both coasts.

Key Facts About Chicago Tech

  • Number of Tech Workers: 245,800; 5.2% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: McDonald’s, John Deere, Boeing, Morningstar
  • Key Industries: Artificial intelligence, biotechnology, fintech, software, logistics technology
  • Funding Landscape: $2.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Pritzker Group Venture Capital, Arch Venture Partners, MATH Venture Partners, Jump Capital, Hyde Park Venture Partners
  • Research Centers and Universities: Northwestern University, University of Chicago, University of Illinois Urbana-Champaign, Illinois Institute of Technology, Argonne National Laboratory, Fermi National Accelerator Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account