Senior Security Software Engineer, Operating Systems Engineering in Redmond, WA


TitleSenior Security Software Engineer
CategoryTesting (engineering)
LocationRedmond, WA
DivisionOperating Systems Engineering
Date AddedMarch 18, 2015
Open Positions1

Microsoft's Operating System Group (OSG) is responsible for some of Microsoft's largest and most important online services including the Commerce Platform, Windows Update, Windows Marketplace, Xbox Live, Microsoft Game Studios, and more.

OSG has a world class penetration testing team that helps ensure a secure experience for millions of users all over the world. We are primarily focused on offensive security, but also work closely with our monitoring team to continually improve our operational awareness. The main responsibilities of this role include:

Red Team Penetration Testing: Lead efforts to simulate real attackers through in-depth attacks against OSG services. Identify vulnerabilities through external and internal attacks which validate Microsoft's ability to prevent, detect and respond.

Component Penetration Testing: Use various techniques (fuzzing, source code review, reverse engineering, etc) to find vulnerabilities in critical components that OSG services rely on, and parlay research into actual exploits. Validate software quality in accordance with our development standards.

Research, Training, and Tool Development: Perform research to stay current with bleeding edge offensive and defensive tools and tactics. Leverage the output of this research for training and awareness across OSG and tool development efforts.

Successful candidates will have:
A BS or MS in Computer Science, a related field, or equivalent experience
Strong coding skills including C#, HTML, ASP.NET
Experience testing web services, identifying and remediating OWASP top 10 security flaws, performing reconnaissance, red/blue teaming, and understanding large complex systems quickly
5+ years of penetration testing and security code review experience
Solid verbal and written communication skills
Solid teamwork and cross group collaboration skills
Ability to deal with ambiguity

Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, gender, sexual orientation, gender identity or expression, religion, national origin, marital status, age, disability, veteran status, genetic information, or any other protected status.

Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings:

Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter.
Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, gender, sexual orientation, gender identity or expression, religion, national origin, marital status, age, disability, veteran status, genetic information, or any other protected status.

OSGSecurity
Apply for this job at Microsoft