Senior Security Research - Security for AI - Microsoft Defender for CloudAp at Microsoft
Haifa, Haifa District, Israel -
Full Time


Start Date

Immediate

Expiry Date

23 Feb, 26

Salary

0.0

Posted On

25 Nov, 25

Experience

5 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Security Research, Cloud Security, Threat Hunting, Incident Response, AI Fundamentals, C Programming, Python, Rust, MITRE ATT&CK, OAuth, Software Engineering, Data-Driven Approach, Prototyping, Collaboration, Project Leadership, Emerging Threats

Industry

Software Development

Description
Responsibilities - - - Research and develop detection methods for new and advanced attack techniques - from exploits to implants. Build end-to-end PoCs, from offensive testing to scalable detection, across all our cloud and identity platforms. - Stay up to date on the latest attack trends and build strong detections across the kill chain - covering agentic AI & LLM threats, cloud and identity-based attacks. - Collaborate with multiple product and engineering teams to design the next iteration of security products, implement detection ideas and validate their effectiveness using a data-driven approach. - BSc or M.Sc. in Computer Science, Software Engineering, or relevant practical experience (e.g. service in elite technology unit in IDF) - You have at least 6+ years of computer security industry experience with knowledge of adversary tradecraft, security operations, incident response, threat hunting, and of emerging threats and techniques for attacks against modern cloud environments. - 3+ years of experience researching, prototyping, and driving engineering requirements for threat protection systems. - Code fluency in either C, Python or Rust - Knowledge of the security threat landscape, with experience in the modern attacker kill chain and MITRE ATT&CK; - especially in cloud, application, identity, and AI-related threat scenarios. Preferred Qualifications - - Good hands-on knowledge of AI/LLM fundamentals and concepts, including technical aspects related to usage of AI/LLM in production systems and agentic frameworks - Familiarity with OAuth and other identity protocols, as well as knowledge of the AI domain - especially MCP, A2A, and related technologies. - Industry recognized author of security research papers, blogs, or books - Low-level/security knowledge of other operating systems - Team player - open to ideas and enjoys working with others to achieve shared goals. - Experience leading a project from start to finish - including idea, design, coding, testing, and ongoing maintenance. - Familiarity with cloud environments, and hybrid cloud enterprise services - A drive to tackle hard problems with level of ambiguity. All qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. If you need assistance and/or a reasonable accommodation due to a disability during the application or the recruiting process, please send a request via the Accommodation request form. This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled. *
Responsibilities
Research and develop detection methods for new and advanced attack techniques, building end-to-end PoCs across cloud and identity platforms. Collaborate with product and engineering teams to design security products and validate detection effectiveness.
Loading...