Jobs for People with MS: National MS Society

Mobile National MS Society Logo

Job Information

Microsoft Corporation Security Engineer- Open Source Security Assurance in Multiple Locations, United States

Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified solutions. The Microsoft Security organization accelerates Microsoft’s mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers’ heterogeneous environments, as well as ensuring the security of our own internal estate. Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their best each day. In doing so, we create life-changing innovations that impact billions of lives around the world.

The Microsoft Security Response Center (MSRC) is looking for an experienced Security Engineer- Open Source Security Assurance to join our open source security assurance vulnerability response. We are seeking a candidate with proficient technical security foundation in Linux and/or open-source security and Common Vulnerabilities and Exposures (CVE) and experience driving operational excellence. In addition, this position requires an individual who can demonstrate being data focused and customer obsessed. In this role you will build and lead Microsoft’s end-to-end response process for publicly disclosed Linux security vulnerabilities in collaboration with security engineers across the company. This role will focus on the Linux Operating System (OS) platforms that powers Azure, LinkedIn, and on-premised/bare metal solutions for our cloud businesses and billions of customers. You will have the opportunity to expand on your curiosity to understand rapidly evolving billion-dollar services and help protect customers, Microsoft, and communities from threats to security and privacy. If all this sounds interesting to you then you should talk to us! 

Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.

In alignment with our Microsoft values, we are committed to cultivating an inclusive work environment for all employees to positively impact our culture every day.

Responsibilities

  • Build and lead Microsoft’s end-to-end response process for security vulnerabilities in Linux, including:Triage, analyze, and prioritize Linux Common Vulnerabilities and Exposures (CVE) and collaborate with the Azure Linux engineers to determine and deliver the appropriate remediation.

  • Supports operational security and security incidents as well as security reviews and reporting.

  • Contribute to external and internal security guidance for Linux security vulnerabilities and remediations

  • Exercise and grow subject matter expertise in Linux security, up-stream and down-stream security operation processes, and provide clarity and guidance to others.

  • Develop, monitor, and analyze key performance data to identify and recommend process improvements and automation.

  • Exercise technical curiosity to collect and analyze security data, partner, and customer feedback, and partner across security disciplines to help address security issues, patterns, and trends.

  • Embody our culture and values

Qualifications

Required Qualifications

  • 3+ years experience in software development lifecycle, large scale computing, modeling, cyber security, anomaly detection

  • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field

  • OR equivalent experience.

  • 1+ years of experience managing cross-functional and/or cross-team projects.

Preferred Qualifications

  • 4+ years experience in software development lifecycle, large scale computing, modeling, cyber security, anomaly detection

  • OR Master's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field

  • OR equivalent experience.

  • Experience consuming and analyzing CVE data

  • Demonstrated knowledge in Linux security or demonstrated ability to develop such knowledge

  • Proactively seeks opportunities to learn

  • Ability to distill and explain complex technical and security concepts to different types of audiences

  • Experience collaborating with cross-functional security teams

Security Assurance IC3 - The typical base pay range for this role across the U.S. is USD $98,300 - $193,200 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $127,200 - $208,800 per year.

Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here: https://careers.microsoft.com/us/en/us-corporate-pay

Microsoft will accept applications and processes offers for these roles on an ongoing basis.

#MSRC #Security #DSR #MSFTSecurity #VulnerabilityResponse #Linux

Microsoft is an equal opportunity employer. Consistent with applicable law, all qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations (https://careers.microsoft.com/v2/global/en/accessibility.html) .

DirectEmployers