Microsoft · 6 hours ago
Senior Security Assurance Engineer
Maximize your interview chances
Data ManagementDeveloper Tools
Growth OpportunitiesNo H1B
Insider Connection @Microsoft
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
Understands overall feature architecture and aligns security analysis to it.Support the Regulated Industries Product Security Engineering team
Document security standards, as well as reports
Communicate/document implementation approaches and patterns for standards-based information security objectives (NIST (National Institute of Standards and Technology) 800-53, ISO (International Organization for standardization) 27002 etc.)
Identifies less common types of security issues, defects, or threats, in a product. Identifies and remedies security issues by collaborating with one or more feature teams.
Evaluates products against security baselines (e.g., gap analysis) by comparing and contrasting features in a product and initial features of the baseline.
Manage the software vulnerability management platform tools to maintain operational effectiveness.
Coordinating with other Global Security Service teams to ensure operation consistency and effectiveness.
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
5+ years experience in software development lifecycle, large scale computing, modeling, cyber security, anomaly detection with understanding of architectural or security architecture principles
OR Bachelor's Degree in Computer Science, Risk Management, Cyber Security, or related field
OR equivalent experience.
Experience in Software engineering lifecycle and experience with at least one object oriented programming language for eg. C#, Java, Python etc.
Working knowledge of OWASP (Open Web Application Security Project) Top10 and CWE (Common Weakness Enumeration) Top 25
Ability to communicate and collaborate effectively across functional areas with flexibility.
Ability to meet Microsoft, customer and/or government security screening requirements are required for this role.
This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter.
This role will require access to information that is controlled for export under export control regulations.
As a condition of employment, the successful candidate will be required to provide proof of citizenship, U.S. permanent residency, or other protected status for assessment of eligibility to access the export-controlled information.
To meet this legal requirement, and as a condition of employment, the successful candidate’s citizenship will be verified with a valid passport.
This position requires verification of U.S. citizenship due to citizenship-based legal restrictions.
Preferred
Experience in programming using C# or Java along with understanding and experience of cloud computing concepts and cloud security principles.
Experience with Code scanning tool such as Veracode, SonarQube, Checkmarx, Netsparker, etc.
Understanding of Container Security and CI/CD (Jenkins, Azure DevOps, GitLab, GitHub)
Knowledge of objective frameworks – e.g. NIST 800-53, ISO 27002, HITRUST etc.
Company
Microsoft
Microsoft is a software corporation that develops, manufactures, licenses, supports, and sells a range of software products and services.
Funding
Current Stage
Public CompanyTotal Funding
$1MKey Investors
Technology Venture Investors
2022-12-09Post Ipo Equity· undefined
1986-03-13IPO· undefined
1981-09-01Series Unknown· $1M
Leadership Team
Recent News
Crunchbase News
2024-11-22
Crunchbase News
2024-11-22
Company data provided by crunchbase