Skip to main content
Tallo logoTallo logo
Apply for this opportunity

This job application is on an outside website. Be sure to review the job posting there to verify it's the same.

Fraud Operations Investigation Analyst

Job

Microsoft

Redmond, WA (In Person)

Full-Time

Posted 3 days ago (Updated 1 day ago) • Actively hiring

Expires 7/25/2026

Review key factors to help you decide if the role fits your goals.
Pay Growth
?
out of 5
Not enough data
Not enough info to score pay or growth
Job Security
?
out of 5
Not enough data
Calculating job security score...
Total Score
68
out of 100
Average of individual scores

Were these scores useful?

Skill Insights

Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.

Job Description

Fraud Investigation:
Conduct deep-dive investigations on accounts, tenants, and partners to determine fraud-from-birth, abuse, or legitimate compromise. Correlate signals across systems and time, leveraging multiple evidence sources to reconstruct incident timelines and root causes. Document findings, evidence, and investigative actions in a clear, audit-ready manner. Execute blocks, suspensions, recoveries, and clean-up actions. Coordinate remediation workflows with partners, customers, and legal as needed. Ensure remediation accuracy and minimize customer/partner impact. Perform security reviews and onboarding vetting for partners and identities. Execute re-verification and post-incident vetting actions to enforce trust standards. Contribute to centralized documentation and iterative updates for onboarding and operational excellence. Provide structured feedback on detection efficacy, tooling gaps, and process improvements. Participate in post-incident reviews and feed learnings back into detection and operational playbooks. Analytical and problem-solving skills; able to synthesize complex data and signals into actionable insights. Deep understanding of fraud, abuse, and threat actor tactics, techniques, and procedures (TTPs). High attention to detail, documentation rigor, and audit-defensible decision making. Effective communicator—able to document and present findings clearly to technical and non-technical audiences. Collaborative mindset; works effectively across engineering, legal, compliance, and partner teams. Adaptable and resilient in a fast-paced, ambiguous environment with shifting priorities. Doctorate in Statistics, Mathematics, Computer Science, or related field OR Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response OR equivalent experience. Participate in a scheduled on-call rotation, including weekends and public holidays, as required for high-priority investigations.
Certifications:
CompTIA Security+, BlueTeam Level 1, SANS GSEC, GCIH, or similar. Experience in Digital Forensics and Incident Response (DFIR) is highly advantageous. Prior experience in fraud investigations, threat analysis, or security operations.