OA-Senior Security Product Manager

1 Month ago • 5-7 Years • Cyber Security • $117,200 PA - $250,200 PA

Job Summary

Job Description

Microsoft's Application Security Team seeks a Senior Security Product Manager in Redmond, WA. This role focuses on proactively identifying and mitigating security risks within Microsoft's AI offerings. Responsibilities include collaborating with engineering teams, conducting security assessments (web, mobile, cloud), defining security controls, and driving a culture of security within the organization. The ideal candidate possesses strong security development lifecycle (SDL) experience, threat modeling expertise, and collaboration skills. They will act as the security contact for new AI services, specifying security controls, researching technologies, and training engineers on secure coding practices. The role involves working with penetration testers, security personnel, and product engineering teams to improve the overall security posture of AI products.
Must have:
  • 5+ years experience in security development/engineering
  • 5+ years experience with Security Development Lifecycle (SDL)
  • Experience with security threat modeling
  • Strong collaboration and partnership skills
  • Experience conducting security assessments
Good to have:
  • Experience with OWASP, ASVS, CWE
  • Familiarity with Burp, OWASP ZAP, or Fiddler
  • Coding skills (Java, Ruby, etc.)
  • Experience managing security compliance programs
Perks:
  • Industry leading healthcare
  • Educational resources
  • Discounts on products and services
  • Savings and investments
  • Maternity and paternity leave
  • Generous time away
  • Giving programs
  • Opportunities to network and connect

Job Details

Overview

Our Application Security Team is currently hiring a Senior Security Product Manager in Redmond, WA.

 

Security is foundational to all product and service offerings from Microsoft. Microsoft’s Secure Futures Initiative is the number one priority for the company. We need an experienced security professional with a deep-rooted passion in identifying security issues before they impact millions of users. As part of the Microsoft AI Security team, you will collaborate with product engineering to innovate software design to defend against a continued and emerging security threat landscape. 

Application Security team, advises on critical security design elements, proactively identifying architectural vulnerabilities and collaborates on solutions and design modifications to improve the overall security posture of Microsoft AI (Artificial Intelligence) offerings.

This team partners with product engineering, penetration testers and security personnel,

Team members are subject matter experts and are a mentor to others on the security discipline. 

 

Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees, we come together with a growth mindset, innovate to empower others and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond. 

 

Start your journey with Microsoft AI, Microsoft Edge, Microsoft Search and Bing, Microsoft News, Microsoft Maps and Microsoft Advertising today! 

Qualifications

Required/Minimum Qualifications:

  • Bachelor’s Degree AND 5+ years experience in product/service/project/program management or software development
    • OR equivalent experience
  • 5+ years experience in security development and engineering, security consulting, or application penetration testing. 
  • 5+ years of hands-on and strong experience with the Security Development Lifecycle (SDL). 

Additional or Preferred Qualifications 

  • Bachelor's Degree AND 7+ years experience in product/service/project/program management or software development
    • OR equivalent experience.
  • Experience with Security threat modeling for new features.  
  • Experience conducting security assessments on Web Applications, Mobile Applications, Cloud Services running on variety of operating systems including containers. 
  • Experience with application security standards such as OWASP(Open Web Application Security Project ASVS (Application Security Verification Standard)/Top 10, CWE (Common Weakness Enumeration) 25.  
  • Experience with common security libraries, security controls, and common security flaws.   
  • Outstanding collaboration and partnership skills, with proven ability to drive results across teams.  
  • Coding skills in one or more general purpose scripting languages.
  • Experience managing security compliance related engineering programs. 
  • Familiarity with web proxies such as Burp, OWASP ZAP (Zed Attack Proxy) or Fiddler.  
  • Development or scripting experience. Java, Ruby, Ruby on Rails, GraphQL, REST.  
  • Demonstrated experience in successfully designing, delivering, and iterating on complex projects with a diverse set of stakeholders

 

Product Management IC4 - The typical base pay range for this role across the U.S. is USD $117,200 - $229,200 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $153,600 - $250,200 per year.

Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:

Microsoft will accept applications for the role until September 8, 2024. 

 

 

 

#Search# #MAI# #Security# #ApplicationSecurity# #MAIFundamentals# //platformjobs

Responsibilities

  • Be the security contact for teams building new innovative services and technologies in the next version of Microsoft AI. 
  • Specify new security controls needed to reduce risks identified from security reviews and threat modelling exercises or from security incidents and specify these new controls as requirements to be added the organization’s SDL process. 
  • Proactively research new technologies, make technology recommendations. 
  • Drive and cultivate a positive culture of security across the engineering teams. Train product engineering to recognize bad patterns and innovate ways for developers to learn to identify security bad practice. 
  • Work with our security engineering team and product teams to identify, define and implement security controls and automation 
  • Leverage a broad and current understanding of security to envision new protections and baseline secure by design behavior 

Other

  • Embody our    
Benefits/perks listed below may vary depending on the nature of your employment with Microsoft and the country where you work.
Industry leading healthcare
Educational resources
Discounts on products and services
Savings and investments
Maternity and paternity leave
Generous time away
Giving programs
Opportunities to network and connect

Similar Jobs

Zuora - Sr Software Engineer

Zuora

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
Playrix - Director of Engineering

Playrix

Cyprus (Remote)
3 Months ago
Luxoft - Team Lead Devops

Luxoft

Ukrainka, Kyiv Oblast, Ukraine (Remote)
2 Months ago
ION - Senior Java Developer - Italy

ION

Collecchio, Emilia-Romagna, Italy (On-Site)
4 Months ago
Netflix - Data Engineer (L5) - Product (Device)

Netflix

United States (Remote)
3 Months ago
Scopely - Principal Security Engineer

Scopely

Barcelona, Catalonia, Spain (Hybrid)
3 Months ago
PwC - Internship program - Cybersecurity and Privacy

PwC

Bangkok, Bangkok, Thailand (On-Site)
4 Months ago
Rippling - Staff Detection and Response Engineer

Rippling

Bengaluru, Karnataka, India (On-Site)
5 Months ago
Tekion Corp - Security Engineer II

Tekion Corp

Bengaluru, Karnataka, India (Hybrid)
3 Months ago
Microsoft - Product Management IC4

Microsoft

Bengaluru, Karnataka, India (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Luxoft - Java Developer with Investment Banking and Trading experience

Luxoft

Pune, Maharashtra, India (On-Site)
2 Months ago
Saviynt - Associate Principal Engineer/ Principal Engineer Support Operations

Saviynt

Bengaluru, Karnataka, India (Hybrid)
3 Months ago
Google - Software Engineer III, Full Stack, Google Cloud Platforms

Google

San Francisco, California, United States (On-Site)
1 Month ago
ByteDance - Senior Backend Software Engineer, Trust and Safety

ByteDance

Singapore (On-Site)
3 Months ago
HP - AI Lab – ML Engineer, Model Optimization

HP

Sant Cugat Del Vallès, Catalonia, Spain (On-Site)
4 Months ago
Meta - Production Engineering

Meta

Burlingame, California, United States (On-Site)
3 Months ago
PhonePe - Data Scientist (3-5)

PhonePe

Bengaluru, Karnataka, India (On-Site)
2 Months ago
Google - Engineering Manager, Network Switch

Google

(On-Site)
2 Months ago
Britive - SOFTWARE ENGINEER

Britive

San Francisco, California, United States (Remote)
2 Months ago
NXP - Working Student (f/m/d) Software Engineering Secure Java Tools

NXP

Hamburg, Hamburg, Germany (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Redmond, Washington, United States

Meta - Copywriter

Meta

Los Angeles, California, United States (On-Site)
3 Months ago
Nintendo - Senior Manager, Engineering Infrastructure and IT

Nintendo

Redmond, Washington, United States (On-Site)
2 Months ago
BigID - Sales Development Representative - East

BigID

Atlanta, Georgia, United States (Remote)
2 Months ago
Microsoft - Research Intern - IMAIS Group: Situated Intelligence and Multimodal Interaction in the Physical World

Microsoft

Redmond, Washington, United States (On-Site)
1 Month ago
IGN - Creative Strategy Lead

IGN

California, United States (Hybrid)
1 Month ago
Nielsen Holdings - Bilingual Field Sales Representative

Nielsen Holdings

Framingham, Massachusetts, United States (On-Site)
2 Months ago
Niantic - Business Development, Senior Associate

Niantic

San Francisco, California, United States (Hybrid)
3 Months ago
Interactive Brokers - Senior Java Developer - Client Portal (DS)

Interactive Brokers

Greenwich, Connecticut, United States (Hybrid)
4 Months ago
Netflix - Manager, Finance & Strategy, Growth & Monetization

Netflix

Los Gatos, California, United States (On-Site)
1 Month ago
Scopely - Finance Analyst

Scopely

United States (Remote)
3 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Microsoft - Security Researcher II

Microsoft

Bengaluru, Karnataka, India (On-Site)
1 Month ago
PwC - Assurance Technology Risk & Quality Manager

PwC

Dublin, County Dublin, Ireland (On-Site)
4 Months ago
PwC - Technical Program Delivery - Senior Manager [US Client]

PwC

Olivos, Buenos Aires Province, Argentina (On-Site)
2 Months ago
Microsoft - Digital Technology Specialists - Security - French Speaker

Microsoft

Dublin, County Dublin, Ireland (Hybrid)
1 Month ago
PwC - Financial Services GRC Senior Associate

PwC

Makati, Metro Manila, Philippines (On-Site)
4 Months ago
PwC - 1-10yrs Application for Cyber- Kolkata DN 57 - RDC

PwC

Kolkata, West Bengal, India (On-Site)
4 Months ago
PwC - Auditor Riesgo y Cumplimiento

PwC

Managua, Managua, Nicaragua (On-Site)
4 Months ago
PwC - SRC_NIST Control Assessment_Senior Associate

PwC

Bengaluru, Karnataka, India (On-Site)
2 Months ago
Barracuda Networks  Inc  - Senior Software Engineer – Python with Django IP/IR

Barracuda Networks Inc

Bengaluru, Karnataka, India (Hybrid)
3 Months ago
Google - Staff Software Engineer, Security/Privacy, Google Cloud Security and Privacy

Google

Kirkland, Washington, United States (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Microsoft is a tech giant that develops, licenses, and supports a range of software products, services, and devices.

Redmond, Washington, United States (On-Site)

Mountain View, California, United States (On-Site)

London, England, United Kingdom (Hybrid)

London, England, United Kingdom (On-Site)

Jakarta, Jakarta, Indonesia (On-Site)

Prague, Prague, Czechia (On-Site)

Montreal, Quebec, Canada (On-Site)

Dublin, County Dublin, Ireland (On-Site)

Hyderabad, Telangana, India (On-Site)

View All Jobs

Get notified when new jobs are added by Microsoft

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug