Microsoft Logo

Microsoft

Principal Security Engineer

Posted Yesterday
Be an Early Applicant
In-Office
Vancouver, BC, CAN
Senior level
In-Office
Vancouver, BC, CAN
Senior level
Conduct offensive security assessments and vulnerability research across Windows products, including code auditing, fuzzing, penetration testing, exploit development, and native-code analysis. Identify complex vulnerabilities and attack vectors, create proof-of-concept exploits, design scalable mitigations, and build reusable security tools and automation. Partner with Windows engineering teams to improve product architecture, security design, and defenses against emerging threats.
The summary above was generated by AI
Overview
The Microsoft Windows Security team is looking for a Principal Security Engineer to help secure Windows products and devices through offensive security, vulnerability research, and the development of scalable security mitigations.
The Windows Security team helps protect Windows client and server operating systems used by customers and businesses worldwide. The team performs security design and code reviews, penetration testing, and vulnerability research while developing defenses that strengthen Windows against evolving cybersecurity threats.
In this role, you will identify and investigate complex security vulnerabilities and novel attack vectors across Windows, develop proof-of-concept exploits, and design durable mitigations for individual vulnerabilities and broader classes of security issues. You will apply deep knowledge of native code, operating system security, vulnerability research, and offensive security techniques while partnering with Windows engineering teams to incorporate security into product architecture and design.
 
Microsoft's mission is to empower every person and every organization on the planet to achieve more. As employees, we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day, we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond
 
 

Responsibilities
  • Conduct vulnerability research and offensive security assessments across Windows, using techniques such as code auditing, fuzzing, penetration testing, and exploitation to identify vulnerabilities and no
  • complex security risks, and develop durable defenses.
  • Engage with internal and external security communities to understand emerging vulnerabilities, attack techniques, and opportunities to strengthen Windows securityvel attack vectors.
  • Review product architecture, features, and native code to identify security vulnerabilities and architectural risks using manual and automated security analysis techniques.
  • Develop proof-of-concept exploits and scalable mitigations that address identified vulnerabilities and broader classes of security issues.
  • Design and build reusable security tools and automation that improve the efficiency, consistency, and quality of security reviews and vulnerability discovery.
  • Partner with Windows product engineering teams to incorporate security into product design, resolve 

Qualifications
Required/minimum qualifications
  • Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 3+ years experience in security or related field OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in security or related field OR equivalent experience.
  • Hands-on experience with offensive security techniques such as penetration testing, vulnerability research, exploit development, or bypassing operating-system security mitigations
  • Experience identifying vulnerabilities in operating systems and/or native (C/C++) applications.
Additional or preferred qualifications
  • Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 6+ years experience in security or related field OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 8+ years experience in security or related field OR equivalent experience.
  • 5+ years of experience in software engineering, security engineering, or a related technical field.
  • Demonstrated experience in security research, particularly vulnerability discovery.
  • Experience exploiting vulnerabilities and bypassing security mitigations in operating systems.
  • Familiarity with Microsoft Windows architecture and operating system internals.

Penetration Testing IC5 - The typical base pay range for this role across Canada is CAD $142,400 - CAD $257,500 per year.

Find additional pay information here:
https://careers.microsoft.com/v2/global/en/canada-pay-information.html


Penetration Testing IC5 - L'échelle salariale de base typique pour ce rôle dans l'ensemble du Canada est de 142,400 $ CAD à 257,500 $ CAD par année.

Pour plus d'information au sujet de la rémunération, veuillez cliquer ici:
https://careers.microsoft.com/v2/global/en/canada-pay-information.html


Ce poste sera ouvert pendant au moins cinq jours et les candidatures seront acceptées de façon continue jusqu’à ce que le poste soit pourvu.


This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.



Microsoft est un employeur offrant l’égalité d’accès à l’emploi. Tous les candidats qualifiés seront pris en considération pour l’emploi, sans égard à l’âge, à l’ascendance, à la citoyenneté, à la couleur, aux congés médicaux ou familiaux, à l’identité ou à l’expression de genre, aux renseignements génétiques, à l’état d’immigration, à l’état matrimonial, à l’état de santé, à l’origine nationale, à un éventuel handicap physique ou mental, à l’affiliation politique, au statut de vétéran protégé ou au statut militaire, à la race, à l’ethnie, à la religion, au sexe (y compris la grossesse), à l’orientation sexuelle ou à toute autre caractéristique protégée par les lois, ordonnances et règlements locaux applicables. Si vous avez besoin d’aide avec des accommodements religieux et/ou d’un accommodement raisonnable en raison d’un handicap pendant le processus de candidature, apprenez-en plus sur la demande d’accommodement.


Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.

Microsoft Vancouver, British Columbia, CAN Office

155 Water St, Vancouver, BC, Canada, V6B 1A7

Similar Jobs

One Month Ago
In-Office or Remote
CA
Expert/Leader
Expert/Leader
Blockchain • eCommerce • Fintech • Payments • Software • Financial Services • Cryptocurrency
Lead technical strategy and architecture for software security across Block. Design and deliver security solutions, drive Secure SDLC adoption, threat model critical systems, mentor engineers, and execute high-priority security initiatives for scalable, resilient security services and mobile/platform security.
2 Hours Ago
Remote or Hybrid
CA
Expert/Leader
Expert/Leader
eCommerce • Fintech • Hardware • Payments • Software • Financial Services
Leads Square’s global external workforce and partner strategy for seller onboarding. Owns vendor, BPO, and third-party operating models; develops build-versus-buy recommendations, partner standards, SLAs, scorecards, governance, and performance mechanisms. Partners with Procurement, Legal, Finance, and regional operations on commercial terms, capacity, quality, cost, and scalability. Manages evolving partner operations teams and drives improved seller outcomes through operational discipline, workflow optimization, and AI-enabled improvements.
Top Skills: AI
2 Hours Ago
Remote or Hybrid
CA
Expert/Leader
Expert/Leader
eCommerce • Fintech • Hardware • Payments • Software • Financial Services
Leads the global operating system for seller onboarding by establishing KPI frameworks, reporting cadences, planning processes, capacity models, financial support, and continuous improvement programs. Partners with regional operations, Finance, Product, Analytics, and Enablement teams to standardize workflows, improve efficiency, and scale AI-enabled onboarding processes. Owns performance management routines, workforce modeling, vendor analysis, operational planning, and impact measurement across global delivery models.
Top Skills: AI

What you need to know about the Vancouver Tech Scene

Raincouver, Vancity, The Big Smoke — Vancouver is known by many names, and in recent years, it has gained a reputation as a growing hub for both tech and sustainability. Renowned for its natural beauty, the city has become a magnet for professionals eager to create environmental solutions, and with an emphasis on clean technology, renewable energy and environmental innovation, it's attracted companies across various industries, all working toward a shared goal: advancing clean technology.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account