Senior Service Engineer - Security Focused

Yammer
Yammer

Redmond, WA, USA

USD 119,800-234,700 / year

Posted on Jul 25, 2026
Overview

Help defend the network Microsoft runs on. Microsoft Digital's Network Defense Engineering (NDE) team in Redmond, Washington is hiring a Senior Security Engineer to help secure Microsoft's global network infrastructure.

Microsoft Digital (MSD) builds and runs the products and services Microsoft depends on. We pursue big ideas that drive transformational advances for Microsoft and its customers, and our engineers bring deep technical expertise and large-scale, first-hand experience to every problem we solve.

As a Senior Service Engineer - Security Focused on NDE, your focus is detection and response engineering for Microsoft's network. You will engineer the services that detect, contain, and respond to threats - secure configuration standards, network access controls, and control-plane protections, plus telemetry-driven detection built on vendor device CLI and large-scale data platforms such as Kusto (Azure Data Explorer). You will strengthen security orchestration and automated response, join the on-call rotation to drive incidents to resolution, and reduce manual toil through automation.

You will also support vulnerability management, configuration compliance, security reviews, and threat modeling, applying systems-level judgment to harden infrastructure and shrink the attack surface across networking and security teams.

Microsoft's mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.



Responsibilities
  • You will independently engineer and operate threat detection and response for Microsoft's network - detection engineering, threat hunting, security orchestration and automated response, including enforcement and containment actions - to mitigate threats.
  • You will define and enforce secure configuration standards, access controls, and credential management; drive vulnerability management, configuration compliance, proactive security reviews, and threat modeling to reduce the attack surface across the device lifecycle.
  • You will improve the development and operations of related systems and platforms - building and monitoring telemetry and analytics in Kusto (Azure Data Explorer) to surface patterns, detect anomalies, and strengthen AI-assisted detection, and delivering high-quality automation that reduces manual toil.
  • You will take part in the on-call (DRI) rotation for major-impact incidents - leading triage, root-cause analysis, and enforcement actions - and coordinate multiple workstreams under pressure.
  • You will follow prescriptive security, privacy, and compliance standards, and periodically support penetration testing, SOX compliance, and security audits.
  • You will collaborate within and across teams - sharing insights and best practices, resolving cross-team conflicts, influencing security policy, and mentoring other engineers.
  • Embody our culture and values.


Qualifications

Requried/Minimum Qualifications:

  • Bachelor's Degree in Computer Science, Information Technology, or related field AND 3+ years technical experience in software engineering, network engineering, service engineering, or systems engineering OR equivalent experience.

Other Requirements:

  • Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter.

Preferred/Additional Qualifications:

  • Experience in SOC, SecOps, or InfoSec environments, including threat detection and response, threat suppression, and incident response.
  • Hands-on experience with network security and detection engineering - ACLs, control-plane protections, AAA, segmentation, and telemetry-driven detection using large-scale data platforms such as Kusto (Azure Data Explorer).
  • Experience administering or securing enterprise network infrastructure across multi-vendor routing, switching, and firewall platforms, and familiarity with network protocols (TCP/IP, DNS, DHCP, BGP, OSPF).
  • Experience with vulnerability management and configuration/security compliance in large-scale cloud or hybrid environments (e.g., Azure), including SOX and audit-readiness practices.
  • Relevant industry certifications such as CCNP, CCIE, CISM, OSCP, CompTIA Security+, or SANS GCIA/GCIH.

#MSD #MSDJOBS #NetworkDefense #Security #ServiceEngineering



Service Engineering IC4 - The typical base pay range for this role across the U.S. is USD $119,800 - $234,700 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $160,200 - $261,000 per year.

Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:
https://careers.microsoft.com/us/en/us-corporate-pay


This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.




Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.