Microsoft

Senior Software Engineer - Marketing Security Risk & Compliance

Microsoft • $119K — $234K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's Degree in Computer Science or related field AND 4+ years of coding experience in languages like C, C++, C#, Java, JavaScript, or Python.
  • Master's Degree in Computer Science or related field AND 6+ years of coding experience, OR Bachelor's Degree AND 8+ years of coding experience , OR equivalent experience.
  • Proven experience in software development including designing, developing, and operating production software or automation tools.
  • Familiarity with cybersecurity principles and ability to identify vulnerabilities and secure configurations.
  • Experience with cloud services, automation frameworks, and developing solutions using APIs and data pipelines.

Responsibilities

  • Design, develop, and operate software services and automation for security and compliance.
  • Continuously identify vulnerabilities and security risks across Microsoft Marketing services.
  • Develop automation to analyze security signals from cloud resources and applications.
  • Build scalable analytics for risk detection and identify emerging security patterns.
  • Engineer reusable APIs and automation workflows that enable scalable security programs.

Benefits

  • Comprehensive health benefits including medical, dental, and vision coverage.
  • Generous paid time off policy and holiday leave.
  • Opportunities for professional development and continuous learning.
  • Participation in employee engagement programs and community service initiatives.
Full Job Description
Overview

Microsoft's Marketing Security Risk & Compliance team is looking for a Senior Software Engineer to design and build security automation, platforms, and AI-enabled capabilities that identify and reduce security and compliance risk across the Microsoft Marketing landscape. Microsoft Marketing operates cloud services, data platforms, business applications, artificial intelligence solutions, and integrations that support critical marketing capabilities across the company. The Marketing Security Risk & Compliance team partners with engineering and service teams to identify vulnerabilities and systemic security risks, strengthen service architecture, improve compliance assurance, and drive accountable remediation. In this role, you will develop software and automation that aggregate and analyze security signals across cloud infrastructure, applications, identities, networks, data, code, and service configurations. You will build capabilities that correlate these signals to identify vulnerabilities, insecure configurations, attack paths, compliance gaps, and emerging risk patterns across Marketing services. You will also engineer AI-enabled security capabilities that improve how security programs collect evidence, analyze risk, identify threats, prioritize findings, and validate remediation. This includes building reusable services, integrations, automated workflows, queries, and intelligent agents that allow security and compliance programs to operate at scale. Threat modeling and security architecture review will be a core part of the role. You will perform threat modeling for Marketing services and high-impact programs, using hands-on analysis to understand architectures, data flows, trust boundaries, identities, attack surfaces, privileged access, and security controls. Insights from these engagements will directly inform the automation and engineering capabilities you build. This role combines software engineering, security engineering, cloud security, and security assurance. You will help move Marketing from primarily point-in-time security assessments toward a continuous, data-driven security assurance model where automation and AI identify risk across the landscape and engineering judgment validates and prioritizes the risks that matter.

Responsibilities

Design, develop, test, deploy, and operate software services, automation, tools, and integrations supporting Marketing security and compliance programs. • Build capabilities that continuously identify vulnerabilities, insecure configurations, control gaps, and security risks across Microsoft Marketing services. • Develop automation to collect, normalize, correlate, and analyze security signals from cloud resources, applications, identities, networks, data platforms, code-security systems, service metadata, and security tooling. • Build scalable security analytics and risk-detection capabilities that identify attack paths, recurring vulnerabilities, systemic weaknesses, and emerging security patterns across the Marketing landscape. • Develop AI-enabled security automation and agents that accelerate evidence collection, threat identification, risk analysis, finding generation, remediation guidance, and security-program workflows. • Engineer reusable services, APIs, queries, pipelines, integrations, and workflow automation that enable security and compliance programs to operate at scale. • Build automation supporting security compliance and continuous assurance programs, including control validation, evidence collection, gap identification, exception management, and remediation tracking. • Perform end-to-end threat modeling and technical security reviews for Marketing services, platforms, AI solutions, tenant migrations, and other high-impact initiatives. • Analyze business context, service architecture, data flows, trust boundaries, service dependencies, identities, endpoints, privileged access, network exposure, logging, data classifications, and security controls. • Apply Microsoft security requirements and Secure Development Lifecycle practices to identify design weaknesses, implementation vulnerabilities, missing controls, and material security risks. • Use findings from threat models, incidents, security assessments, and security telemetry to identify opportunities for new automated controls and detection capabilities. • Validate automated and AI-generated security findings, reduce false positives, improve detection quality, and ensure automation focuses engineering teams on material risk. • Integrate security findings and remediation workflows with appropriate engineering tracking and security systems. • Develop mechanisms to measure security posture, compliance assurance, remediation progress, and recurring risk patterns across Marketing services. • Partner with service engineers, architects, security teams, privacy teams, Responsible AI practitioners, and program owners to design practical security solutions. • Provide engineering support for tenant migrations, platform modernization, AI adoption, and other high-impact programs where security capabilities must be integrated into the engineering lifecycle. • Develop reusable security patterns, libraries, templates, and engineering guidance that allow service teams to implement security requirements consistently. • Contribute to architecture and design decisions for security platforms, automation frameworks, data pipelines, and AI-enabled security capabilities. • Mentor engineers and security practitioners on secure engineering, threat modeling, security automation, and the effective use of security telemetry. • Communicate systemic security risks, engineering priorities, and remediation strategies clearly to service teams, program owners, and leadership. • Experience conducting or contributing to threat modeling, security architecture reviews, application security assessments, or Secure Development Lifecycle activities.

Qualifications

Required Qualifications

Bachelor's Degree in Computer Science or related technical field AND 4+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python OR equivalent experience.

Preferred Qualifications
  • Master's Degree in Computer Science or related technical field AND 6+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python OR Bachelor's Degree in Computer Science or related technical field AND 8+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python OR equivalent experience.
  • Professional software development experience using one or more general-purpose programming languages.
  • Experience designing, developing, testing, deploying, and operating production software, automation, services, or engineering tools.
  • Experience developing solutions using APIs, data pipelines, cloud services, automation frameworks, or distributed systems.
  • Experience with cybersecurity principles and identifying vulnerabilities, design weaknesses, insecure configurations, or security-control gaps.
  • Experience building security platforms, developer-security tooling, compliance automation, security analytics, vulnerability-management systems, or continuous-assurance capabilities.
  • Experience with Microsoft Azure or another major cloud platform and cloud-native software development.
  • Experience developing security automation using cloud-resource APIs, security telemetry, code-security signals, identity information, asset inventories, or configuration data.
  • Experience applying AI, machine learning, large language models, agents, or other AI technologies to security engineering, automation, or operational workflows.
  • Experience designing systems that correlate multiple security signals to identify vulnerabilities, attack paths, control gaps, or systemic risk.
  • Experience with threat-modeling methodologies, attack-path analysis, data-flow diagrams, trust boundaries, and secure architecture reviews.
  • Experience with Azure DevOps, CI/CD systems, code-security platforms, cloud-security posture management, data-classification tooling, or similar engineering systems.


Software Engineering IC4 - The typical base pay range for this role across the U.S. is USD $119,800 - $234,700 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $160,200 - $261,000 per year.

Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:
https://careers.microsoft.com/us/en/us-corporate-pay

This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.

About Microsoft

Microsoft is an American multinational corporation that develops, manufactures, licenses, supports, and sells a range of software products and services. Microsoft’s devices and consumer (D&C) licensing segment licenses the Windows operating system and related software, Microsoft Office for consumers, and the Windows Phone operating system. The company’s computing and gaming hardware segment provides Xbox gaming and entertainment consoles and accessories, second-party and third-party video games, and Xbox Live subscriptions; surface devices and accessories; and Microsoft PC accessories. Its phone hardware segment offers Lumia smartphones and other non-Lumia phones. Its D&C segment provides Windows Store, Xbox Live transactions, and Windows phone store; search advertising; display advertising; Office 365 Home and Office 365 Personal; first-party video games; and other consumer products and services as well as operating retail stores. Microsoft’s commercial licensing segments license server products, including Windows Server, Microsoft SQL Server, Visual Studio, System Center, and related Client Access Licenses (CALs); Windows Embedded; Windows operating system; Microsoft Office for business, including Office, Exchange, SharePoint, Lync, and related CALs; Microsoft Dynamics business solutions; and Skype. Its commercial segment offers enterprise services, including premier support services and Microsoft consulting services; commercial cloud comprising Office 365 Commercial, other Microsoft Office online offerings, Dynamics CRM Online, and Microsoft Azure; and other commercial products and online services. The company markets and distributes its products through original equipment manufacturers, distributors, and resellers, as well as online.

Microsoft Careers

Join Microsoft today and be part of a company that values innovation, leadership, and diversity in its workforce. As a global leader in technology and digital transformation, Microsoft offers unparalleled job opportunities that propel your career to new heights.

Explore Career Opportunities at Microsoft

Whether you're a seasoned professional looking for your next challenge or a recent graduate eager to start your career, Microsoft has a position that suits your skills and ambitions. We are committed to fostering a culture of growth and learning, where every team member is supported in expanding their horizons.

Internship Programs

Kickstart your career with a Microsoft internship. Our internships provide invaluable workplace experience and networking opportunities in a supportive and dynamic environment. You'll work on real projects, learn from industry leaders, and gain the skills necessary for a successful career in technology.

Employment Benefits

Choosing a career at Microsoft means more than just a job. Our employees enjoy a range of benefits designed to empower them both professionally and personally. These include comprehensive health benefits, flexible working conditions, and opportunities for career advancement through professional development and diversity training.

Inclusive Culture and Diversity

At Microsoft, we believe that innovation comes from diversity of thought and inclusion. We are committed to a workplace where everyone feels valued and inspired. Our leadership is dedicated to fostering an environment where diverse perspectives lead to breakthrough innovations and a competitive edge.

Grow with Us

Career growth at Microsoft is about more than climbing the corporate ladder; it's about continuous learning, expanding your skills, and improving your capabilities. With access to various leadership and training programs, you can evolve as a professional and make a significant impact within the company and on the global stage.

Hiring Process

Our hiring process is designed to identify true potential. Starting with a review of your resume, followed by interviews that assess your problem-solving abilities and cultural fit, we ensure that all candidates have a fair chance to demonstrate their strengths and potential to contribute to our team.

Networking and Professional Development

Microsoft is a place where you can build a professional network that spans the globe. Our employees benefit from connections with top-tier professionals and industry leaders, which opens doors to innovative projects and collaborative opportunities that are second to none.

Join Our Team

If you're ready to take on exciting challenges and make a difference in the world of technology, explore the job opportunities at Microsoft. Search for open positions that match your skills and interests, and prepare to embark on a rewarding career path filled with innovation and opportunities for personal and professional growth.

Stay Connected

Keep up to date with the latest at Microsoft Careers by subscribing to our job alert emails. Get tailored content that aligns with your career preferences and discover the exciting and rewarding opportunities that await at Microsoft.

SEARCH MICROSOFT JOBS

At Microsoft, your future is limitless. Join us in our mission to empower every person and every organization on the planet to achieve more. Your journey with Microsoft starts here.
Learn more about Microsoft
Size
181,000 employees
Market Cap
$1,762.4 billion
Industry
Net Income
$51.3 billion
Founded
1975
5 Year Trend
+15.5%
Revenue
$153.2 billion
NASDAQ

Similar Jobs

More Jobs at Microsoft

More Information Technology Jobs

Find similar Senior Software Engineer - Marketing Security Risk & Compliance jobs: