Security Engineer II | Microsoft Careers

Microsoft

Quick summary

Work type
On-site
Location
Redmond, WA
Salary
$102,100–$202,200 / yr
Posted
1 day ago
Closes
Dec 1, 2026

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $171k
This role $152k
$90k most similar roles pay here $214k

This role pays less than 55% of similar roles. Most pay $143,025–$199,625 — the shaded band above. At the midpoint, this role pays about $152k versus about $171k for comparable roles.

Based on 240 similar postings.

Employer

About Microsoft

Microsoft Corporation is a global technology leader producing software, hardware, and cloud services including Windows, Office 365, Azure cloud platform, Xbox gaming, and Surface devices. Industry: Software & Cloud Computing

Microsoft currently has 728 open roles on FindRole.

Listed pay typically runs $119,800–$234,700 across 664 roles with salary data.

Most-posted roles

View all roles at Microsoft

At a glance

TL;DR · Security Engineer II | Microsoft Careers

As a Security Engineer II on Microsoft’s Cyber Defense Investigations (CDI) team, you will play a pivotal role in safeguarding the company's ecosystem by proactively detecting and responding to sophisticated security threats. Your day-to-day responsibilities include analyzing alerts, conducting detailed investigations across multiple systems, and driving incident response actions such as containment and remediation. You will also contribute to enhancing detection logic and improving investigation workflows through collaboration with cross-functional teams. The role requires expertise in threat intelligence, automation tools, and a deep understanding of security telemetry analysis using languages like Python or PowerShell. Ideal candidates have experience with cloud security concepts, Azure technologies, and familiarity with frameworks such as MITRE ATT&CK. This position offers the chance to influence broader security strategies while continuously building technical expertise in a fast-paced environment.

What you'll do

  • Lead proactive identification and response to sophisticated threats by analyzing diverse security signals.
  • Conduct deep-dive investigations into complex security events to determine scope and root cause.
  • Drive actionable improvements in detection, response, and remediation through cross-functional collaboration.
  • Identify gaps in existing detections and workflows to enhance automation and detection logic.
  • Enable operational excellence by leveraging data analytics and security telemetry for prioritization and quality improvement.
  • Stay ahead of emerging threats by applying new techniques and intelligence to strengthen investigative depth.

What we're looking for

  • Master's degree in a relevant field and 1+ year of experience in cybersecurity or equivalent.
  • Bachelor's degree in a relevant field and 2+ years of experience in cybersecurity or equivalent.
  • Experience in software development lifecycle, large-scale computing, threat modeling, and SIEM.
  • Proven ability to lead threat detection and incident response efforts.
  • Strong analytical skills for deep-dive investigations and determining root causes.
  • Knowledge of AI/ML-driven security capabilities and query languages like KQL.

More like this

Similar roles

Security Customer Experience Engineer II | Microsoft Careers

Microsoft

Redmond, WA 38 days ago $100,600$199,000
MicrosoftDefenderforOffice365 PowerShell .NET Python KustoQueryLanguage(KQL) ExchangeOnlineProtection(EOP) SMTP DNS/MX SPF DKIM DMARC AdvancedHunting SecurityCopilot AI PowerAutomate MicrosoftGraphSecurityAPI

Principal Security Engineer | Microsoft Careers

Microsoft

Redmond, WA 9 days ago $142,800$274,800
Azure Kubernetes Terraform Python Go Docker CI/CD Prometheus Grafana PostgreSQL Redis OAuth2 OpenIDConnect Rbac Abac Saml JsonWebTokens SIEM GitOps

| Microsoft Careers

Microsoft

US 24 days ago $100,600$199,000
Azure Active Directory Azure AD PowerShell ServiceNow Power Automate SIEM Grafana Kibana Python SQL JSON YAML OAuth SAML OpenID Connect CI/CD GitHub GitLab Terraform Ansible Powershell DSC
Hybrid