Security Operations Engineering IC5

Teknik, data och digitalt · IT-infrastruktur och säkerhet · Cybersäkerhet · Mjukvaruutveckling · Molnteknik

I korthet

Microsoft Red Team is hiring an AI Security Engineer to design, build, and secure cyber ranges for evaluating frontier AI systems. This role combines cyber-range engineering, cloud infrastructure, and offensive security to create safe, realistic environments for AI testing. Responsibilities include creating infrastructure-as-code ranges, implementing robust security controls for AI agents, and partnering with research teams to refine evaluation capabilities.

Ansvarsområden

  • Design, build, and operate realistic, versioned, infrastructure-as-code cyber ranges spanning cloud, identity, endpoint, network, application, container, and multi-host attack surfaces.
  • Model production-like organizations, architectures, products, configurations, trust relationships, user behavior, data, and telemetry for authentic multi-step offensive reasoning.
  • Translate evaluation objectives into repeatable scenarios with explicit prerequisites, authorized boundaries, expected attack paths, ground-truth validation, scoring signals, and automated reset contracts.
  • Engineer reliable lifecycle automation for provisioning, validation, execution, teardown, sanitization, and recovery.
  • Design defense-in-depth controls for cyber-capable models and agents, including identity and authorization boundaries, least-privilege credentials, secrets isolation, capability-gated tools, workload isolation, and fail-closed enforcement.
  • Control and observe all network paths, including default-deny egress, approved destinations, DNS and traffic inspection, rate and scope controls, and automated interruption.
  • Build independent telemetry across model calls, agent trajectories, tool invocations, process execution, filesystem changes, identity use, network traffic, and control-plane activity to produce attributable, tamper-resistant evidence.
  • Continuously test the range and evaluation harness for sandbox escape, lateral movement, prompt or tool injection, credential exposure, supply-chain risk, benchmark cheating, persistence, and unintended access.
  • Define operational controls for emergency stop, credential revocation, workload quarantine, evidence preservation, incident response, and rapid rebuild; exercise these controls before enabling higher-capability models.
  • Partner with evaluation researchers, red-team operators, cloud and platform teams, and security response functions to convert new evaluation needs and observed failure modes into durable range capabilities and controls.
  • Document threat models, architecture decisions, control assumptions, operating procedures, residual risk, and evidence of containment for each range and model-access tier.

Krav

  • Bachelor's Degree in Computer Science, Cybersecurity, Computer Engineering, or a related technical field AND relevant experience in security engineering, cloud or platform engineering, cyber-range development, or equivalent practical experience.
  • Deep hands-on experience designing and operating cyber ranges, security labs, testbeds, vulnerable environments, or other adversarial infrastructure at meaningful scale.
  • Solid systems and network security expertise across identity, access control, operating systems, cloud control planes, virtualization, containers, applications, secrets, segmentation, egress control, logging, and incident response.
  • Solid programming and automation ability, particularly in Python, plus experience with infrastructure as code, CI/CD, orchestration, configuration management, and repeatable environment lifecycle operations.
  • Demonstrated ability to threat-model hostile or autonomous workloads and translate risks into layered preventive, detective, and responsive controls.
  • Working knowledge of offensive-security concepts, attack paths, exploitation, lateral movement, persistence, and post-exploitation sufficient to build credible environments and recognize unintended behavior.
  • Ability to partner with evaluation experts to understand task intent, preserve experimental validity, and distinguish model capability from environmental or harness failure.

Önskade kvalifikationer

  • Experience engineering cyber ranges across Azure, Kubernetes, Docker, hypervisors, Windows, and Linux with solid tenant, network, workload, and data isolation.
  • Experience securing agentic or tool-using AI systems, evaluation harnesses, autonomous code-execution platforms, malware-analysis systems, or similarly hostile workloads.
  • Experience building network and host telemetry pipelines, security analytics, detection logic, automated policy enforcement, and forensic workflows for ephemeral environments.
  • Experience with zero-trust design, non-human identities, short-lived credentials, secrets management, software supply-chain security, image provenance, and artifact signing.
  • Experience designing realistic enterprise attack environments, including identity, cloud, endpoint, application, network, container, or operational-technology scenarios and multi-stage attack chains.
  • Familiarity with frontier-model cyber evaluations, benchmark design, agent trajectories, ground-truth validation, scoring, contamination, reproducibility, and evaluation-specific cheating or reward hacking.
  • Experience conducting architecture reviews, adversarial testing, containment validation, incident exercises, and risk acceptance for high-consequence research environments.
  • Publication, conference, open-source, or community contributions in cyber ranges, cloud security, platform security, offensive security, AI security, or adjacent technical fields.

Förmåner

  • Base pay range: £ 93,500.00 - £ 161,800.00 per year
  • Certain roles may be eligible for benefits and other compensation.
  • Additional benefits and pay information available at https://careers.microsoft.com/v2/global/en/corporate-pay/united-kingdom-corporate-pay.html

Färdigheter

PythonKubernetesDockerAzure
#AI#Cybersecurity#Cloud#Virtualization#Offensive Security#Engineering#Infrastructure as Code#CI/CD#Automation
Microsoft Logo

Om Microsoft

Empowering every person and organization on the planet to achieve more

Every company has a mission. What's ours? To empower every person and every organization to achieve more. We believe technology can and should be a force for good and that meaningful innovation contributes to a brighter world in the future and today. Our culture doesn’t just encourage curiosity; it embraces it. Each day we make progress together by showing up as our authentic selves. We show up with a learn-it-all mentality. We show up cheering on others, knowing their success doesn't diminish our own. We show up every day open to learning our own biases, changing our behavior, and inviting…

Microsoft Logo

Företag

Microsoft

Publicerade jobb

för 1 dag sedan

Anställningstyp

Heltid

Arbetsform

Distans

Lön

93 500–161 800 GBP / år

Erfarenhetsnivå

Mellannivå

Platser

United Kingdom

Kvalifikation

Kandidatexamen

Sökande

Ansök tidigt