Tallo logoTallo logo

Senior Security Researcher

Job

Microsoft

Redmond, WA (In Person)

Full-Time

Posted 1 week ago (Updated 18 hours ago) • Actively hiring

Expires 6/18/2026

Apply for this opportunity

This job application is on an outside website. Be sure to review the job posting there to verify it's the same.

Review key factors to help you decide if the role fits your goals.
Pay Growth
?
out of 5
Not enough data
Not enough info to score pay or growth
Job Security
?
out of 5
Not enough data
Calculating job security score...
Total Score
81
out of 100
Average of individual scores

Were these scores useful?

Skill Insights

Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.

Job Description

As a Senior Security Researcher on the MTP Research Purple Team, you will: Design and execute adversary simulations that emulate real-world threat actors across endpoint, identity, cloud, and SaaS environments. Develop and modify offensive tooling, including custom payloads, loaders, and command-and-control (C2) frameworks. Conduct malware development and tradecraft research to replicate modern attacker techniques such as evasion, persistence, and lateral movement. Leverage threat intelligence to inform adversary emulation scenarios, including campaign design, TTP selection, and operational sequencing. Apply threat modeling frameworks such as
MITRE ATT&CK
to emulate realistic attack paths and identify defensive gaps. Utilize AI-enabled and agentic systems to generate attack variations, automate tradecraft execution, and scale simulation coverage. Partner with blue team and detection engineering teams to validate detections and improve defensive capabilities. Analyze telemetry generated from simulations to assess detection coverage and identify opportunities for improvement. Contribute to simulation reports, technical documentation, and internal knowledge sharing. Collaborate across teams to improve offensive tooling, methodologies, and research practices. Doctorate in Statistics, Mathematics, Computer Science, Computer Security, or related field. OR Master's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. These requirements include, but are not limited to the following specialized security screenings: This position requires verification of U.S. citizenship due to citizenship‑based legal restrictions. Specifically, this position supports United States federal, state, and/or local government agency customers and is subject to certain citizenship‑based restrictions where required or permitted by applicable law. To meet this legal requirement, and as a condition of employment, the successful candidate's citizenship will be verified via a valid passport. Doctorate in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. OR Master's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 6+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 8+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. OR equivalent experience. 3+ years of experience with coding. 2+ years of experience in red team operations, adversary emulation, or offensive security research. 1+ years of experience with large language models or machine learning. Experience in classical and deep learning machine learning methods. 1+ years of experience performing threat intelligence research. Security related certifications such as OSCP, OSWE, GPEN, GREM, GCPN.

Similar remote jobs

Similar jobs in Redmond, WA

Similar jobs in Washington