Principal Software Engineering Manager

Microsoft Microsoft · Big Tech · Redmond, WA +1 · Software Engineering

Principal Engineering Manager to lead AI-driven security operations and network defense for Microsoft's enterprise environment. The role involves managing a team to transform network telemetry and threat signals into scalable platforms, automations, detections, and agentic capabilities. Responsibilities include people leadership, technical strategy, AI-assisted threat detection, security analytics, response orchestration, and vulnerability management.

What you'd actually do

  1. You will lead, develop, and retain a diverse engineering team responsible for AI-driven security operations and network defense engineering. Model, coach, and care for engineers and engineering leads through clear expectations, quality feedback, career development, inclusive hiring, succession planning, and accountability for measurable outcomes.
  2. You will translate CISO priorities, Microsoft security standards, customer-zero needs, and enterprise risk into a prioritized technical roadmap. Partner with stakeholders to determine requirements, identify dependencies, develop designs, and coordinate project and release plans across products and teams.
  3. You will drive the strategy and execution for AI-assisted threat detection, security analytics, automated investigation, response orchestration, and remediation. Build scalable engineering systems that use telemetry, Kusto/KQL, security signals, configuration and vulnerability data, and agentic workflows to improve detection, prioritization, response, and executive visibility.
  4. You will lead network defense programs spanning security research, vulnerability and exposure management, device security posture, segmentation, control-plane protections, ACL enforcement, AAA, credential hygiene, secure configuration, and compliance readiness. Hold teams accountable for security, reliability, privacy, quality, scale, and performance expectations.
  5. You will provide technical and organizational leadership during complex, high-impact security incidents by directing cross-product triage, containment, root-cause analysis, corrective actions, and durable prevention. Ensure teams have the expertise, tools, and readiness to respond effectively and prevent recurrence through automation and design improvements.

Skills

Required

  • Bachelor's Degree in Computer Science or related technical field AND 6+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python
  • equivalent experience

Nice to have

  • 3+ years of people management experience leading engineering teams or technical leads.
  • Experience leading security, network defense, incident response, vulnerability management, or security operations programs in large-scale enterprise, cloud, or hybrid environments.
  • Experience building or operating automated, telemetry-driven, or software-based solutions for security operations, detection, remediation, compliance, or operational excellence.
  • Experience partnering across engineering, security, compliance, infrastructure, or platform teams to deliver complex programs with measurable outcomes.
  • Experience leading AI-enabled security operations, security copilot workflows, agentic automation, machine learning applications in cybersecurity, or autonomous remediation capabilities.
  • Deep understanding of enterprise network technologies and protocols including TCP/IP, DNS, DHCP, BG

What the JD emphasized

  • AI-driven security operations
  • network defense engineering
  • agentic capabilities
  • AI-assisted threat detection
  • security analytics
  • automated investigation
  • response orchestration
  • remediation
  • agentic workflows
  • vulnerability and exposure management
  • device security posture
  • segmentation
  • control-plane protections
  • ACL enforcement
  • credential hygiene
  • secure configuration
  • compliance readiness
  • AI-enabled security operations
  • security copilot workflows
  • agentic automation
  • machine learning applications in cybersecurity
  • autonomous remediation capabilities

Other signals

  • AI-driven network defense
  • AI-assisted detection
  • agentic capabilities
  • AI-enabled security operations
  • agentic automation