Design and implement the validation framework to test and maintain secure-by-design features with automated test coverage, and fuzzing to catch defects early, and balancing security, reliability, performance, compatibility, and secure servicing. Apply secure defaults, hardening baselines, cryptographic standards, key management, auditability and logging in the components you own. Build observability pipelines through telemetry insights, security metrics, and health signals needed to measure how well those controls work in production. Contribute to threat modeling and security reviews and build mitigations for high-severity threats and systemic classes of vulnerabilities, validating each mitigation with targeted test cases and regression coverage so fixes hold over time. Support security incidents and partner with product, support, field, Artificial Intelligence (AI), and security-adjacent teams to assess impact, deliver containment and remediation fixes, use observability and telemetry to detect and diagnose issues, incorporate real-world attack patterns and operational constraints, and land post-incident hardening improvements. Bachelor's Degree in Computer Science or related technical field AND 4+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C# or Python OR equivalent experience. 6+ years of professional software engineering experience with coding in one or more languages such as C, C++, C#, Python, Rust,, PowerShell or Kusto, including designing automated tests and validation for the software you ship. Experience or demonstrated interest in OS fundamentals and/or software and system security. Demonstrated experience in confidential computing, using cryptography in a secure way, including sound selection and application of cryptographic primitives, careful key management, and secure protocol design. Familiarity with platform security controls such as Secure Boot and Trusted Platform Module (TPM), virtualization-based security (VBS), code integrity, Credential Guard, WDAC/App Control, BitLocker, and Secured-core. Understanding of threat modeling and modern attacker techniques (credential theft, lateral movement, privilege escalation, persistence, and supply-chain or build attacks), the corresponding defenses, and how to detect them through security telemetry and observability.
Want jobs like this matched to you?
SimpleCareer scores fresh postings against your résumé so you only see the matches that matter.