Senior Software Engineer

MicrosoftRedmond, WA,US, map[@type:Country name:US]full time
Active

Job description

Design, build, and operate secure, reliable services and internal tooling in Python and C# that automate security assurance, compliance evidence collection, and controls implementation and validation workflows. Apply agentic coding techniques — AI coding assistants, tool-calling agents, retrieval-augmented workflows, and prompt and context engineering — to accelerate development and to build automation that reasons over security and compliance data. Establish evaluation, measurement, and monitoring for AI-assisted components so that quality, reliability, safety, and cost are understood in production rather than assumed. Apply Secure by Design and Secure by Default practices: threat modeling, secure coding, secret and credential hygiene, least-privilege access, dependency and supply chain integrity, and responsible AI review. Translate regulatory and internal control requirements (for example SOC 2, ISO 27001, FedRAMP, PCI DSS, GDPR) into testable, automated checks with clear pass, fail, and exception semantics. Operate what you build. Define service level objectives, instrument telemetry, participate in on-call rotation, and drive incident response and repair items to closure. Provide technical leadership through design documents, architecture reviews, code reviews, and mentoring of engineers across the team. Partner with security engineering, compliance, audit, program management, and product teams to turn ambiguous requirements into shipped, measurable capability. Bachelor's Degree in Computer Science or related technical field AND 4+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python These requirements include but are not limited to the following specialized security screenings: Master's Degree in Computer Science or related technical field AND 6+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python OR Bachelor's Degree in Computer Science or related technical field AND 8+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python OR equivalent experience. 5+ years of experience building cloud services and distributed systems, with depth in Azure, cloud-native architecture, and API and platform engineering. Demonstrated working knowledge of security or compliance engineering, such as application security, threat modeling, vulnerability management, identity and access management, software supply chain security, or audit and control automation. Hands-on experience building AI-enabled applications using large language models, agent frameworks, tool calling, retrieval-augmented generation, vector search, or evaluation harnesses. Experience with AI-native engineering practices, applying AI across the development lifecycle including code generation, refactoring, test automation, and code review. Direct experience automating evidence collection or continuous control monitoring against a recognized framework such as SOC 2, ISO 27001, FedRAMP, PCI DSS, NIST 800-53, or HIPAA. Experience with infrastructure as code, CI/CD pipeline engineering, containers, and Kubernetes. Familiarity with detection engineering, security data pipelines, SIEM tooling, or incident response automation. Solid written communication and cross-functional collaboration skills, including the ability to explain security and compliance trade-offs to non-specialist audiences.