hero

Find Your Dream Job Today

Out for Undergrad
companies
Jobs

Principal Security Program Manager - Windows Security

Microsoft

Microsoft

Operations
Redmond, WA, USA
USD 139,900-274,800 / year + Equity
Posted on Mar 7, 2026
Overview

The Microsoft Windows Security team is responsible for protecting billions of Windows devices by driving platform‑level security, risk reduction, and resilient-by-design engineering across the Windows ecosystem.

We are seeking a Principal Security Program Manager to lead our end‑to‑end security assurance effort including security compliance, risk assessment, and supporting our vulnerability research and security tooling efforts across Windows. This role sits at the intersection of platform security architecture, threat intelligence, vulnerability discovery, and execution, with broad influence across Windows engineering and other internal and external security assurance and research partners.

This is a principal level individual contributor role with wide organizational scope, high executive visibility, and responsibility for shaping how Windows identifies, prioritizes, and mitigates security risks at scale.

Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.



Responsibilities
  • Own the Windows EnS security risk assessment framework, driving systematic identification, prioritization, and tracking of security risks across OS, firmware, silicon, drivers, and ecosystem dependencies.
  • Partner with engineering, architecture, and threat intelligence teams to translate emerging threats, vulnerability trends, and attacker techniques into actionable platform investments.
  • Develop and drive the security assurance process for Windows teams utilizing a shared responsibility approach that supports the scale of the Windows org while ensuring broad compliance and a risk based approach towards scaling security review and depth engagement.
  • Act as virtual lead for a small security PM team by managing PM coverage across the team’s charter, leading planning and engagement with EnS security engineering, and owning key cross team partnerships.


Qualifications

Required Qualifications:

  • Master's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 4+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
    • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security, or related field AND 6+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
    • OR equivalent experience.

Preferred qualification:

  • Ability to create clarity, energy, and cohesion across the team.
  • Ability to influence and drive security initiatives across groups.
  • 10+ years of experience in a software engineering or security-related engineering.
  • Demonstrated experience in security research, especially around vulnerability discovery.
  • Experience exploiting bugs and bypassing security mitigations in operating systems.
  • Familiarity with Microsoft Windows architecture.

#W+DJOBS

#windowssecurity

#SecurityEngineering

#PlatformSecurity

#SecurityLeadership

#EngineeringLeadership



Security Assurance IC5 - The typical base pay range for this role across the U.S. is USD $139,900 - $274,800 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $188,000 - $304,200 per year.

Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:
https://careers.microsoft.com/us/en/us-corporate-pay


This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.




Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.