About this role
<b>Overview</b><br><p>The Microsoft Edge Browser Security team is responsible for protecting the security of Microsoft Edge and helping make the web safer for billions of users worldwide. Our work spans three core areas: Security Engagement, Proactive Security, and Reactive Security.</p><p>In the Engagement space, we partner closely with engineering teams, architects, and product leaders to shape the security posture of Edge from the earliest stages of design. We provide deep technical guidance, influence product architecture, and drive adoption of secure-by-default principles, defense-in-depth strategies, and resilient security controls across the browser platform. As a <strong>Senior Security Engineer</strong>, you will apply an attacker's mindset to uncover previously unknown vulnerabilities, analyze exploitability, perform root-cause and variant analysis, and develop automated techniques to discover security weaknesses at scale. You will work closely with Microsoft engineering teams to drive durable security improvements, influence product architecture, and help shape the future of browser and AI security. </p><p>Successful candidates combine solid systems and software engineering fundamentals with hands-on security research expertise, curiosity, creativity, and a demonstrated ability to translate individual findings into broad, systemic security improvements. </p><p>Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond. </p><p>Starting January 26, 2026, Microsoft AI (MAI) employees who live within a 50- mile commute of a designated Microsoft office in the U.S. or 25-mile commute of a non-U.S., country-specific location are expected to work from the office at least four days per week. This expectation is subject to local law and may vary by jurisdiction.</p><br><br><b>Responsibilities</b><br><ul><li>Identifies and conducts research into critical security areas of Microsoft, supported, and/or competitor products vulnerable to exploitation, current or potential future attacks, adversary tracking, and/or academic literature. Researches, analyzes, and summarizes security threats and shares results across teams to incorporate into future research or as enhancements in alignment with security initiatives. Partners cross-functionally (e.g., across disciplines, teams, security versus non-security) to design solutions to prevent, detect, and/or disrupt attacks, including for integration in or addition to new/existing products or features. Leverages artificial intelligence (AI) workflows to understand research operations and how customers use Microsoft products and identifies opportunities for solutions to deliver protection. Creates security analysis plan that aligns product timelines, interdependencies, risks, and feature scopes.</li><li>Leads large-scale security reviews, including architectural and design reviews, and synthesizes findings in analysis reports. Implements best practices for security architecture, design, and development across feature areas and teams. Evaluates security risks and impact to the affected services and partners with others to remove blockers and mitigate risks. Monitors and responds to security events, potential vulnerabilities, exposures, and policy compliance issues, escalating as needed.</li><li>Solves classes of issues in technical implementation and automation of solutions related to specific kinds of security issues (e.g., security posture, signature-based detection, malware, threat analysis, reverse engineering, attack disruption, anomaly detection). Works across disciplines to identify and develop improvements in solutions and methods.</li></ul><br><br><b>Qualifications</b><br><p><strong>Required Qualifications:</strong></p><ul><li>Doctorate in Statistics, Mathematics, Computer Science, Computer Security, or related field<ul><li>OR Master's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection </li><li>OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection</li><li>OR equivalent experience.</li></ul></li></ul><p><br><strong>Preferred Qualifications:</strong></p><ul><li>Doctorate in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection<ul><li>OR Master's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 6+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection</li><li>OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 8+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection</li><li>OR equivalent experience.</li></ul></li></ul><p><br>#AIX</p><p>#MicrosoftAI</p><p>#EdgeVR</p><p>#EdgeSecurity</p> <br><br><p>Security Research IC4 - The typical base pay range for this role across the U.S. is USD $119,800 - $234,700 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $160,200 - $261,000 per year. </p><p></p> <p>Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:<br><a href="https://careers.microsoft.com/us/en/us-corporate-pay">https://careers.microsoft.com/us/en/us-corporate-pay</a></p><br><p>This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.</p><br><hr><br><p>Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about <a href="https://careers.microsoft.com/v2/global/en/accessibility.html"><b><u>requesting accommodations.</u></b></a></p>