| Microsoft Careers

Microsoft

Quick summary

Work type
On-site
Location
Redmond, WA
Salary
$139,900–$274,800 / yr
Posted
56 days ago

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $181k
This role $207k
$101k most similar roles pay here $293k

This role pays more than 76% of similar roles. Most pay $155,000–$207,350 — the shaded band above. At the midpoint, this role pays about $207k versus about $181k for comparable roles.

Based on 238 similar postings.

Employer

About Microsoft

Microsoft Corporation is a global technology leader producing software, hardware, and cloud services including Windows, Office 365, Azure cloud platform, Xbox gaming, and Surface devices. Industry: Software & Cloud Computing

Microsoft currently has 1103 open roles on FindRole.

Listed pay typically runs $119,800–$234,700 across 985 roles with salary data.

Most-posted roles

View all roles at Microsoft

At a glance

TL;DR · | Microsoft Careers

As a principal-level security researcher on the Microsoft Threat Protection Research (MTP-R) team, you will collaborate closely with engineering, research, and threat intelligence teams to evaluate detection coverage and effectiveness against real-world cyberattacks. Your day-to-day responsibilities include analyzing telemetry using Kusto/KQL to validate detection logic, uncover gaps, and measure signal quality, while translating attacker tradecraft into actionable insights for defenders. You will apply MITRE ATT&CK frameworks to map adversary behavior, identify coverage gaps, and communicate findings clearly to both technical and non-technical audiences. Additionally, you will contribute to high-quality executive presentations and technical documentation that influence product and security strategy, acting as an experienced voice in shaping methodology and long-term research direction. This role requires deep expertise in cybersecurity, blue team operations, threat hunting, and working with Microsoft Defender suite products, along with proficiency in KQL, Python, PowerShell, and AI-driven detection engineering at scale.

What you'll do

  • Analyze telemetry using Kusto/KQL to validate detection logic and measure signal quality.
  • Translate attacker tradecraft into actionable insights for defenders, including detection recommendations.
  • Apply MITRE ATT&CK framework to map adversary behavior and identify coverage gaps.
  • Contribute to high-quality executive presentations that influence product security strategy.
  • Act as an experienced technical voice in shaping methodology and long-term research direction.
  • Collaborate with engineering teams to design and execute advanced adversary action simulations.

What we're looking for

  • 8+ years of experience in cybersecurity with hands-on blue team operations, SOC, incident response, or detection engineering.
  • Deep understanding of attacker techniques, post-exploitation behavior, and investigative workflows in enterprise environments.
  • Extensive experience working with security telemetry and log data using KQL or similar query languages.
  • Experience with Azure and Microsoft Defender suite products including Endpoint, Identity, Cloud, Apps, Office 365, XDR, Sentinel.
  • Strong knowledge of MITRE ATT&CK framework and other threat modeling frameworks for mapping adversary behavior.
  • Proven ability to communicate complex security findings clearly through writing and presentations across technical and non-technical audiences.

More like this

Similar roles

| Microsoft Careers

Microsoft

US 13 days ago $142,800$274,800
KQL MITRE ATT&CK Python Azure Kubernetes Terraform Docker CI/CD PostgreSQL Prometheus Grafana Ansible Git Jenkins Linux Windows AWS Google Cloud Platform JSON YAML REST APIs

| Microsoft Careers

Microsoft

US 97 days ago $88,000$150,100
Azure AI Sales methodologies CI/CD Power Platform Market intelligence tools Cloud Native Data Platform Analytics Kubernetes Python PostgreSQL AWS Grafana
Hybrid

| Microsoft Careers

Microsoft

Redmond, WA +2 58 days ago $142,800$274,800
Azure Kubernetes Docker CI/CD Python PostgreSQL Terraform Prometheus Grafana Git Jira Swagger RESTful APIs JSON YAML DevOps Scrum Agile
Hybrid

| Microsoft Careers

Microsoft

US 57 days ago $102,100$202,200
Intune Microsoft Azure Windows 11 iOS Android SCIM Terraform Docker CI/CD Kubernetes PostgreSQL Python Prometheus Grafana AI Agentic AI

| Microsoft Careers

Microsoft

WA 76 days ago $119,800$234,700
Python TypeScript Golang Java C# Scala Rust React Next.js AI/ML systems C#/Java Model pretraining Post training Evaluation Inference CI/CD

| Microsoft Careers

Microsoft

Redmond, WA 51 days ago
Python TensorFlow PyTorch DeepLearning ComputerVision SelfSupervisedLearning MixtureOfExperts DenseVisionProblems CVPR NeurIPS ICML ICCV ECCV AAAI IJCAI 3DV IEEETransactions ACMTransactions IJCV