JobsPrincipal Security Engineer
Microsoft logo

Principal Security Engineer

Microsoft

Location

United States

Type

Full-time

Posted

9/23/2026

Compensation

$165,600 - $331,200 per year

Undergraduate with 5+ Years of Experience
H-1B FY202696.0% approval-64% YoY
👑 Elite sponsor

Job description

The Principal Security Engineer will be a key operator in the CyberShield program within Microsoft's Red Team organization, focusing on adversary emulation to enhance security for both Microsoft and its external customers. This role emphasizes the use of AI-driven techniques to automate and scale red team operations, ensuring comprehensive security assessments across various domains. The engineer will collaborate closely with security leaders and internal teams to translate findings into actionable insights and improve defensive measures. This position requires a strong technical background and the ability to lead complex security engagements.

Requirements

  • Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 6+ years experience in security or related field OR Bachelor's Degree in the same fields AND 8+ years experience in security or related field OR equivalent experience.
  • Ability to meet Microsoft, customer and/or government security screening requirements.
  • 6+ years of experience planning and leading red team or adversary emulation operations against enterprise or cloud environments.
  • Demonstrated hands-on experience building, directing, or operating AI-driven or agentic offensive security tooling in real operations.
  • 8+ years of experience identifying and exploiting security vulnerabilities across cloud, identity, endpoints, network, and hardware.

Responsibilities

  • Execute CyberShield red team operations end-to-end against Microsoft and select external customer environments.
  • Develop custom tooling, implants, and tradecraft to evade modern defenses.
  • Lead agentic red team operations by designing and directing AI agents for reconnaissance and exploitation.
  • Discover and exploit vulnerabilities across various security layers and demonstrate business impact.
  • Serve as the forward-deployed technical lead with customers, translating findings into actionable narratives.
  • Prototype and productionize tools and techniques that enhance offensive emulation and vulnerability discovery.
  • Collaborate with internal teams to convert findings into product hardening and improved defender readiness.
  • Set operational standards and playbooks for CyberShield engagements and mentor senior operators.

Benefits

  • Employees at Microsoft are often offered comprehensive, “world-class” benefits—including health and mental-wellness programs, competitive pay with bonuses and stock awards, and retirement/savings options. Time-off and flexibility are common, with generous vacation and holidays, parental and caregiver leave, and flexible work schedules, alongside learning support, employee resource groups, product discounts, and matching-gifts/volunteering programs. Specific benefits can vary by region.

H-1B filing history

Public USCIS petition and DOL LCA counts · latest USCIS FY2026, LCA FY2026

Filing entity: Microsoft Corporation

As of Aug 23, 2026

Initial approvals

503

FY2026

Approval rate

96.0%

FY2026

LCA certified

3,062

FY2026

Entry-level share

5.7%

FY2026

Initial approvals YoY

-64%

Trend

LCA certified YoY

-83%

Trend

Initial approvals by fiscal year

Approval rate by fiscal year

Continuing vs initial approvals

LCA certified positions by quarter

LCA certified positions by fiscal year

Based on public USCIS and DOL filings; not a sponsorship guarantee.

Is this posting expired or inaccurate?