Security Research Intern

Microsoft Microsoft · Big Tech · IL · Security Research

Security Research Intern role focused on analyzing real-world nation state attacks to develop autonomous detection and disruption logic using AI-assisted tooling and agentic flows. The role involves investigating threats, reasoning over large-scale datasets, and contributing to the implementation of automated capabilities to protect users.

What you'd actually do

  1. Investigate real-world nation state attacks to support the development of high-fidelity protection logic across complex cross-domain kill-chains.
  2. Apply security expertise to analyze massive telemetry sets using big-data query languages (KQL), reasoning over data to identify novel malicious patterns and engineer evidence-based detection rules.
  3. Contribute to the implementation and coding of automated capabilities that autonomously investigate nation state threats, using AI assisted tooling and agentic flows.
  4. Assist in the refinement of protection coverage by analyzing real-world attack telemetry to improve the accuracy and performance of existing detection logics.
  5. Contribute to a strategic feedback loop by documenting findings from attack data analysis to improve overall protection logic and system-wide security posture.

Skills

Required

  • Python
  • C#
  • KQL
  • SQL
  • pandas
  • security research
  • threat hunting
  • detection engineering
  • analytical skills
  • coding skills

Nice to have

  • modern threat landscape
  • lateral movement techniques
  • credential theft
  • cloud-native attack vectors
  • big-data query languages
  • data analysis tools

What the JD emphasized

  • real-world attacker TTPs
  • reasoning over large-scale datasets
  • autonomously identifies and disrupts attackers
  • nation state attacks
  • AI assisted tooling and agentic flows

Other signals

  • analyze real-world attacker TTPs
  • reasoning over large-scale datasets
  • write logic that autonomously identifies and disrupts attackers
  • build methodologies and tools to improve and automate investigation research
  • AI assisted tooling and agentic flows