AI Security Researcher II

Microsoft Microsoft · Big Tech · Redmond, WA +1 · Applied Sciences

AI Security Researcher II at Microsoft, focusing on researching and improving the security of agentic AI systems, including autonomous, tool-using, and multi-agent systems. The role involves formulating research questions, designing experiments, analyzing risks, and translating findings into practical security techniques for Microsoft's AI products.

What you'd actually do

  1. Formulate and investigate research questions at the intersection of cybersecurity and agentic AI behavior, including security risks, failure modes, and adversarial behavior in agentic AI systems.
  2. Design rigorous experiments, evaluations, and benchmarks for autonomous, tool-using, and multi-agent systems.
  3. Analyze results and develop research insights, methodologies, and mitigations that advance the security of AI systems.
  4. Collaborate with researchers, red teamers, and product teams to translate AI security research into practical impact for Microsoft’s AI products.

Skills

Required

  • Bachelor's Degree in Statistics, Econometrics, Computer Science, Electrical or Computer Engineering, or related field AND 2+ years related experience OR Master's Degree in Statistics, Econometrics, Computer Science, Electrical or Computer Engineering, or related field AND 1+ year(s) related experience OR Doctorate in Statistics, Econometrics, Computer Science, Electrical or Computer Engineering, or related field OR equivalent experience.
  • Ability to meet Microsoft, customer and/or government security screening requirements

Nice to have

  • Demonstrated research output in AI security, adversarial machine learning, agentic systems, LLM evaluation, or related areas, such as publications, preprints, technical reports, talks, open-source tools, or research artifacts
  • Experience designing experiments, evaluations, benchmarks, or methodologies to study security-relevant behavior in AI systems, especially autonomous, tool-using, or multi-agent systems
  • Ability to work collaboratively in an interdisciplinary team environment
  • Ability to connect research findings to practical security guidance, mitigations, or evaluation methods for real-world AI products

What the JD emphasized

  • security of agentic AI systems
  • evaluating and improving their security
  • security risks in Microsoft’s big bet AI systems
  • security of AI products
  • security-relevant behavior in AI systems

Other signals

  • AI security research
  • agentic AI systems
  • evaluating and improving security of AI