Verified current Job

Security Operations Engineer - CTJ - Poly

Develop, maintain, and oversee all Risk Management Framework (RMF) documentation and security artifacts, including SSPs, SAPs, SARs, POA&Ms, control implementations, and continuous monitoring evidence. Plan, coordinate, and execut...

Job Full source details
Microsoft Reston, VA,US, US Source published Oct 1, 2026 Verified 6 hours ago
✓ 95% verification score · Source: Microsoft Careers · Always confirm final requirements on the original source.
Complete source information imported The available role or programme description, requirements, benefits and source facts were imported from the public official endpoint and formatted for reading.
Security Operations Engineer - CTJ - Poly opportunity at Microsoft
DeadlineTue Mar 30 3:02 PM 2027
EmploymentF U L L T I M E
CountryUS

Overview

Develop, maintain, and oversee all Risk Management Framework (RMF) documentation and security artifacts, including SSPs, SAPs, SARs, POA&Ms, control implementations, and continuous monitoring evidence. Plan, coordinate, and execute government compliance assessments, independent audits, inspections, and penetration testing activities, ensuring timely remediation of findings and sustained authorization status. Serve as the primary security liaison with government accrediting officials, auditors, and internal stakeholders, providing guidance on compliance requirements and risk management strategies. Negotiate and resolve complex security, compliance, and accreditation issues with leadership teams, customers, and external oversight organizations while balancing mission, risk, and operational objectives. Perform secure administration and operational support of Azure environments, including im

Full job description

Full Job Description

Develop, maintain, and oversee all Risk Management Framework (RMF) documentation and security artifacts, including SSPs, SAPs, SARs, POA&Ms, control implementations, and continuous monitoring evidence. Plan, coordinate, and execute government compliance assessments, independent audits, inspections, and penetration testing activities, ensuring timely remediation of findings and sustained authorization status. Serve as the primary security liaison with government accrediting officials, auditors, and internal stakeholders, providing guidance on compliance requirements and risk management strategies. Negotiate and resolve complex security, compliance, and accreditation issues with leadership teams, customers, and external oversight organizations while balancing mission, risk, and operational objectives. Perform secure administration and operational support of Azure environments, including implementation of security controls, monitoring, incident response, vulnerability management, and compliance-driven cloud operations; experience developing security automation and orchestration solutions is highly desirable. Doctorate in Statistics, Mathematics, Computer Science, or related field OR Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response OR equivalent experience. Bachelor's degree in Cybersecurity, Computer Science, Computer or Software Engineering, Information Systems, or a related field OR equivalent practical experience. 7+ years of experience in a customer-facing technical security role, including leadership of high-severity product or service incidents, crisis situations, or complex technical escalations. Ability to diagnose and scope complex technical issues across enterprise security environments, including interpreting logs and telemetry, assessing product behavior, and reasoning across identity, endpoint, network, and cloud architecture to validate customer impact and engage the right engineering teams. Professional proficiency in written and spoken English sufficient to translate complex technical issues into clear business impacts and communicate effectively with customers, engineers, product teams, and executive stakeholders. Advanced degree (such as a Master's or PhD) in Cybersecurity, Computer Science, Computer or Software Engineering, Information Systems, or a related field, or demonstrated advanced specialization through substantial technical leadership, applied research, or recognized professional expertise. Proven ability to develop service improvement plans, conduct customer health reviews, analyze operational signals, or create technical readiness content. Applied knowledge of regulatory compliance and enterprise risk management frameworks, combined with IT Service Management (ITSM) practices based on ITIL or comparable industry standards, including major incident management, problem management, change enablement, and continual improvement. One or more relevant security, cloud, AI, or service management certifications or comparable industry credentials.

Tips for this job

Practical JobOpportunity guidance. These tips do not replace official rules or create new eligibility requirements.

  1. Tailor the CV and application to the responsibilities and required skills stated on the official employer page.
  2. Use concrete evidence of relevant work, projects and measurable results rather than generic claims.
  3. Confirm location, work authorization, remote restrictions and sponsorship terms before applying.
  4. Apply through the original employer or official recruitment destination shown on this page.

Verification notes

Verified from public schema.org JobPosting structured data on the official source page. The complete published description, responsibilities, requirements and benefits were normalized when present; unstated facts were not inferred.

Original authoritative source

JobOpportunity is the discovery and verification layer. Confirm eligibility, dates, salary/funding and application instructions on the original source before submitting anything.

Apply through JobOpportunity →

Browse current JobOpportunity listings from Microsoft Careers →

More ways to save

Discover deals, coupons and free courses on our sister site.

Explore DealVorio
Save more with DealVorio: deals, coupons, free courses, apps and books