Principal Software Engineering Manager - Microsoft Red Team

Microsoft Microsoft · Big Tech · IL · Software Engineering

Principal Software Engineering Manager for Microsoft's Red Team, focusing on the Initial Access pillar. The role involves leading a team to build AI-driven vulnerability discovery capabilities using LLMs and autonomous agents, develop initial access tooling for human operators, and contribute to an AI-driven adversary emulation platform. The goal is to identify and exploit weaknesses in Microsoft's estate at scale to improve security.

What you'd actually do

  1. Lead, grow, and coach a team of software engineers, building an inclusive, high-trust culture where people do the best work of their careers.
  2. Own the technical strategy, roadmap, and execution for the Initial Access pillar within Microsoft Red Team engineering, and expand the team's charter into new offensive capability areas as opportunities emerge.
  3. Drive the design and delivery of AI-driven vulnerability discovery services that leverage LLMs and autonomous agents to find exploitable weaknesses across Microsoft's estate at scale.
  4. Deliver and operate the initial access tooling that human red team operators depend on in live engagements, holding a high bar for reliability, tradecraft, and operational security.
  5. Contribute engineering leadership to the broader AI-driven adversary emulation platform, partnering with peer engineering teams globally on architecture and shared components.

Skills

Required

  • 10+ years of professional hands-on software development experience
  • 3+ years of people management experience leading software engineering teams
  • Experience building software in the cybersecurity domain
  • Excellent cross-functional and cross-geo collaboration skills

Nice to have

  • B.Sc. or M.Sc. in Computer Science, Software Engineering, or equivalent experience
  • Demonstrated ability to set direction in ambiguous, unsolved problem spaces
  • Experience with offensive security – red teaming, penetration testing, malware/tooling development, or offensive cyber operations.

What the JD emphasized

  • AI-driven vulnerability discovery
  • autonomous agents
  • LLMs
  • initial access tooling
  • AI-driven adversary emulation platform
  • offensive security

Other signals

  • AI-driven vulnerability discovery
  • autonomous agents
  • generative models
  • LLMs
  • AI-driven adversary emulation platform