Security Operations Engineer
Job description
Security Operations Engineer at Microsoft
About the role
Microsoft is dedicated to fostering an inclusive workplace where every employee can contribute to our culture. We are seeking a Security Operations Engineer focused on Cloud Security to join our team.
The Cloud Operations & Innovation (CO+I) division is vital to our cloud services. As a Security Operations Engineer, you will play a crucial role in providing the foundational technologies for services like Bing, Office 365, Xbox, OneDrive, and Microsoft Azure. Your responsibilities will include implementing and managing cybersecurity measures to protect critical infrastructure from threats. You will collaborate with various teams to enhance our cybersecurity capabilities.
This position offers opportunities for professional growth through mentorship and hands-on experience in cyber defense, automation, and networking. You will have the flexibility to work from home either partially or fully. CO+I emphasizes personal and professional development, providing training and career advancement opportunities.
Key facts
What you'll do
- Identify and investigate potential security issues, recommending strategies for mitigation and automation to enhance network efficiency.
- Install, upgrade, and maintain security hardware, operating systems, and software.
- Assess security policies, recommend improvements, and implement updated standards in collaboration with partner teams.
- Monitor and analyze metrics to improve customer and partner experiences, addressing emerging issues as they arise.
- Participate in an on-call rotation to support security services.
- Analyze security incidents and develop recommendations to mitigate risks, working with partner teams to implement response plans.
- Create detection mechanisms based on monitoring activities and available data.
- Design and operate cloud security controls, including WAF, NSG, Azure Firewall, and others, with minimal supervision.
- Utilize Infrastructure-as-Code and automation tools such as Bicep, Terraform, and PowerShell to streamline security processes.
- Investigate cloud security incidents within your area of responsibility and lead postmortems to drive engineering improvements.
Requirements
- A Master's Degree in Statistics, Mathematics, Computer Science, or a related discipline, along with at least 1 year of experience in cybersecurity, anomaly detection, SOC detection, threat analytics, SIEM, IT, or incident response.
- Alternatively, a Bachelor's Degree in the same fields with a minimum of 2 years of relevant experience, or equivalent experience.
Background Check Requirements
Candidates must meet Microsoft's security screening requirements, including the Microsoft Cloud background check upon hiring and every two years thereafter.
Nice to have
- Relevant certifications such as CISSP, CISA, CISM, SANS, GCIA, GCIH, OSCP, PCCSE, PCNSE, PCSAE, CCNP Security, CCIE Security, or Security+.
- Experience with industrial control systems is beneficial but not required.
Skills & tools
- Familiarity with cloud security technologies and practices.
- Experience in automation and scripting languages.
- Knowledge of security monitoring and incident response methodologies.
Practical notes
The salary range for this role in the U.S. is between USD $102,100 and $202,200 annually, with higher ranges for specific locations like the San Francisco Bay Area and New York City, where it ranges from USD $133,800 to $219,200.
This position will remain open for a minimum of 5 days, with applications accepted continuously until filled.
Microsoft is an equal opportunity employer. All qualified candidates will be considered for employment without regard to various characteristics protected by law. If you require assistance with accommodations during the application process, please read more about requesting accommodations.