Microsoft Logo

Microsoft

Principal Security Operations Engineer

Reposted Yesterday
Be an Early Applicant
In-Office
London, England, GBR
Expert/Leader
In-Office
London, England, GBR
Expert/Leader
Leads the design, deployment, and operation of security capabilities across cloud, network, identity, infrastructure, and AI environments. Builds monitoring, telemetry, detections, automation, security services, APIs, and data pipelines; investigates complex security events; performs threat modeling and security reviews; and applies AI and machine learning to improve threat detection, hunting, response, and protection of critical systems.
The summary above was generated by AI
Overview

Do you enjoy building security capabilities that protect some of the world's most critical cloud, infrastructure, and AI environments? Are you passionate about combining engineering, automation, monitoring, and security to solve complex problems at scale?Our team secures cloud, sovereign, and AI environments by designing, implementing, and operating security capabilities across infrastructure, network, identity, and AI platforms. We work directly with engineering teams to build security controls, develop monitoring and detection capabilities, improve operational visibility, and protect critical services from evolving threats.
As a Principal Security Engineer, you will lead the engineering, deployment, and continuous improvement of security capabilities across network, identity, infrastructure, and AI environments. You will build and operate security controls, monitoring systems, detections, automation, and engineering solutions that improve security posture while enabling engineering velocity. This opportunity will allow you to work on large-scale cloud and AI systems, influence security engineering across multiple organizations, and help shape the future of infrastructure security, security monitoring, automation, and AI security.
Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.


Responsibilities
  • Design, build, deploy, and operate security capabilities across network, identity, infrastructure, cloud, and AI environments. Develop scalable solutions that improve security posture, operational visibility, and platform resilience.
  • Implement and continuously improve monitoring, telemetry, detection, and response capabilities. Engineer solutions that collect, enrich, correlate, and analyze security signals from network, identity, infrastructure, application, endpoint, and AI systems.
  • Develop detections, analytics, automation, and investigation workflows that identify identity compromise, unauthorized access, privilege escalation, lateral movement, dubious egress activity, data exfiltration, policy violations, and anomalous workload behavior.
  • Build security services, automation, tooling, APIs, data pipelines, and operational capabilities that reduce manual effort, improve security operations, and enable engineering teams to securely operate critical services.
  • Secure cloud, sovereign, and AI environments by implementing security controls, validating protections, conducting threat modeling, performing security reviews, and identifying opportunities to reduce risk through engineering improvements.
  • Investigate complex security events and emerging threats using telemetry, identity signals, access patterns, infrastructure activity, and operational data. Convert findings into new detections, controls, automation, and engineering solutions.
  • Apply AI, machine learning, and agentic technologies to improve security monitoring, investigations, threat hunting, response, and operational efficiency. Develop monitoring and protection capabilities for AI infrastructure, model training environments, inference services, and autonomous systems. 

Qualifications
Required Qualifications:
  • Degree in Computer Science, Cybersecurity, Engineering, Mathematics, Statistics, or related field, or equivalent practical experience.
  • Experience in security engineering, infrastructure engineering, cloud engineering, software engineering, security operations, or related technical disciplines.
  • Experience building, deploying, or operating security controls, monitoring systems, detection capabilities, automation solutions, or security services.
  • Experience working with security telemetry, threat detection, incident investigation, security analytics, automation, scripting, software development, or large-scale distributed systems.

Other Requirements:

  • Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings: 
    • Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud Background Check upon hire/transfer and every two years thereafter. 

Preferred Qualifications: 

  • Experience securing cloud infrastructure, sovereign environments, AI platforms, or high-assurance computing environments.
  • Experience developing network security monitoring, identity security monitoring, detection engineering, threat hunting, or security analytics capabilities.
  • Experience building operational tooling, data pipelines, automation platforms, APIs, or security-focused software solutions.
  • Experience leveraging AI, machine learning, or advanced analytics to improve security operations, investigations, monitoring, or response capabilities. 

Security Operations Engineering IC5 - The typical base pay range for this role across United Kingdom is £ 93,500.00 - £ 161,800.00 per year. Certain roles may be eligible for benefits and other compensation.

Find additional benefits and pay information here:
https://careers.microsoft.com/v2/global/en/corporate-pay/united-kingdom-corporate-pay.html


This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.



Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.

Microsoft London, England Office

2 Kingdom St, London, United Kingdom, W2 6BD

Similar Jobs

2 Minutes Ago
Hybrid
London, Greater London, England, GBR
Senior level
Senior level
AdTech • eCommerce • Information Technology • Software • Travel • Generative AI
Define and deliver AI-powered analytics and decision-support products. Set strategy and roadmaps, partner with engineering and analytics teams to build LLM/RAG-driven conversational and agentic experiences, translate customer needs into requirements, use data to measure performance, and ensure trust, governance, privacy, and responsible AI practices.
Top Skills: Ai AgentsConversational AiGenerative AiLarge Language Models (Llms)Machine LearningOrchestration FrameworksRetrieval-Augmented Generation (Rag)
2 Minutes Ago
Hybrid
London, Greater London, England, GBR
Senior level
Senior level
AdTech • eCommerce • Information Technology • Software • Travel • Generative AI
Manage globally distributed crisis operations analysts across 24/7 regional pods. Responsibilities include staffing and capacity planning, SLA and response-quality oversight, crisis escalation, war-room coordination, coaching, onboarding, performance management, AI adoption, operational data analysis, SOP and runbook maintenance, post-event debriefs, reporting, and process improvement. The role requires calm judgment during natural hazards, geopolitical crises, aviation disruptions, public health events, and other emerging threats.
Top Skills: Ai-Assisted MonitoringConfluenceCrisis24DtnEverbridgeExcelJIRALarge Language ModelsMicrosoft 365Microsoft TeamsNc4OsacOutlookQuerybookServicenowSharepointStormgeoThe Weather CompanyTrinoWorkflow Automation
2 Minutes Ago
Hybrid
London, Greater London, England, GBR
Mid level
Mid level
AdTech • eCommerce • Information Technology • Software • Travel • Generative AI
Leads continuous-improvement initiatives for air traveler servicing, using operational data, traveler feedback, and frontline insights to identify problems and design practical improvements. Partners with Product, Technology, Operations, Content, Training, Analytics, and airline stakeholders to coordinate requirements, testing, launches, and adoption. Establishes success metrics, monitors service outcomes, manages risks and dependencies, and communicates recommendations and progress to stakeholders and leaders.

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account