Senior Security Analyst
$119.8k - $234.7kMicrosoft Corporation
The Cyber Defense Investigations - Escalations (CDI-ESC) team is Microsoft's deep-dive investigative arm within Cyber Defense Operations (CDO). We lead the most complex, high-severity, and nation-state security incidents across Microsoft's first-party cloud estate, conducting root cause analysis, blast radius assessment, threat actor attribution, and intelligence-driven hunting. Our work directly disrupts adversaries targeting Microsoft and our customers, and feeds platform-level fixes, detections, and intelligence back into the ecosystem.
Join Microsoft's CDI Escalations team and work at the forefront of cyber defense, investigating the most complex nation-state, supply chain, cloud, and identity-based attacks targeting Microsoft. Our team goes beyond traditional incident response, we combine deep investigations, threat hunting, intelligence operationalization, and cross-organizational collaboration to identify adversaries, drive platform-wide security improvements, and build defenses that prevent future attacks. You'll partner with leaders across MSTIC, GHOST, Detection Engineering, and service teams, leverage AI-powered investigation techniques, and directly influence Microsoft's security posture while solving some of the industry's hardest security challenges.
We are looking for a Senior Security Analyst to join the team!
Starting February, 2026, Microsoft employees are expected to work from a designated Microsoft office at least three days a week if they live within 50 miles (U.S.) or 25 miles (non-U.S., country-specific) of that location. This expectation is subject to local law and may vary by jurisdiction.
Microsoft's mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond. In alignment with our Microsoft values, we are committed to cultivating an inclusive work environment for all employees to positively impact our culture every day.Responsibilities
- Lead deep-dive investigations into the most complex and high-severity security incidents, including root cause analysis, blast radius assessment, threat actor attribution, and impact/scope determination.
- Proactively hunt across Microsoft's cloud and identity telemetry (e.g., MSTIC, Kusto/ADX, ArmProd, ESTS) to surface emerging threats and operationalize threat intelligence into queries, notebooks, and detection logic.
- Drive cross-team response for nation-state, supply chain (npm, GitHub, OpenVSX), and identity-based compromises - partnering with MSTIC, OpsHub, Detection Engineering, Evictions, and Service teams to contain and remediate at scale.
- Translate investigation findings into durable improvements - new detections, platform fixes, playbooks, and process changes - so the same class of attack does not succeed twice.
- Raise the bar on investigation quality, contributing to documented standards, peer reviews, and measurable rigor across incidents, hunts, and forensics.
- Leverage AI and Copilot technologies to accelerate triage, evidence collection, and analysis, helping the team stay ahead of attackers operating at machine speed.
- Mentor and uplevel peers in advanced investigation techniques, threat actor tradecraft, and reverse engineering, building a strong culture of investigative excellence.
Required Qualifications:
- Doctorate in Statistics, Mathematics, Computer Science, or related field OR Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
- OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
- OR equivalent experience.
- OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
- Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter.
Preferred Qualifications:
- Bachelor's degree in Computer Science, Information Security, a related technical field, AND 4+ years of experience in cybersecurity, incident response, coordination and presentation with executive level professionals, threat hunting, or security investigations
- OR equivalent experience (6+ years of hands-on security investigation/forensic experience in lieu of degree).
- 3+ years of experience conducting security investigations in large-scale cloud or enterprise environments (Azure, AWS, GCP, or M365).
- Demonstrated experience with log analysis and query languages (KQL/Kusto, SQL, or equivalent) across SIEM, identity, endpoint, or cloud telemetry.
- Working knowledge of modern attacker tradecraft, the MITRE ATT&CK framework, and common cloud/identity attack paths (e.g., token theft, OAuth abuse, supply chain compromise).
- Experience investigating nation-state or financially motivated threat actors and producing attribution-quality analysis.
- Hands-on experience with supply chain compromise investigations (npm, GitHub Actions, OpenVSX, signing/artifact abuse) or identity-plane incidents (Entra ID/AAD, ESTS, federation).
- Familiarity with Microsoft security data sources - MDC, Defender XDR, Sentinel, Azure Resource Graph.
- Experience building or consuming AI/Copilot-assisted investigation tooling, automation, or notebooks to scale analyst workflows.
- Strong written communication - able to produce executive-ready investigation reports, retrospectives, and cross-org technical briefs.
- Industry certifications such as GCFA, GCIH, GCFE, GREM, OSCP, CISSP, or equivalent.
- Prior experience working in CIRT function.
#CISOOrg
Security Operations Engineering IC4 - The typical base pay range for this role across the U.S. is USD $119,800.00 - $234,700.00 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $160,200.00 - $261,000.00 per year.
Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:
This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.
Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.
- ...A technology company based in Dallas, Texas is seeking an IT Security Analyst responsible for monitoring and advising on information security issues. The role involves managing IT security projects, conducting security audits, and developing policies. The ideal candidate...Senior
- ...Job Title Under general direction of the Sr Security Analysis Manager, works closely with the other members of the team to develop and implement a comprehensive information security program. Principal Duties And Responsibilities 1. Performs control and vulnerability...SeniorWork at office
- Senior Security Analyst - Contract to Hire - Hybrid Senior Security Analyst - GRC - Contract to Hire - Hybrid NO SPONSORSHIP NO THIRD PARTIES Overview Our client is seeking a Senior IT Risk Analyst to identify, assess, and mitigate security risks across the organization...SeniorContract workFlexible hours
- Ellation, Inc. is seeking a Risk Analyst to enhance its corporate Information Security GRC team. The role focuses on defining processes and implementing technologies to support a comprehensive security program. You will partner across teams to ensure designed technologies...SeniorFlexible hours
- A leading organization in financial services is seeking a Senior Info Security Analyst to support their Cybersecurity Department focusing on digital assets. The ideal candidate will possess over 7 years of cybersecurity experience and a relevant degree. Responsibilities...Senior
$80k - $100k
...impact of new threats and exploits. Conduct log analysis and other network forensic investigations. Identify, design, and execute security projects that improve detection and response capabilities. Collect threat intelligence and automate systems to consume threat...SeniorFlexible hours- ...TrendAI™, the global AI security leader and enterprise business unit of Trend Micro, empowers organizations with full AI visibility and... ...when AI-driven alert triage and anomaly detection are enabling analysts to identify genuine threats faster, reduce false positives and...Full timeH1bWork at office3 days per week
$48.59 - $53.59 per hour
...Contract salary: $48.59 – 53.59 per hour work hours: 8am to 5pm education: Bachelors responsibilities: Design, implement, and maintain secure network infrastructures using Palo Alto Networks, Fortinet, and Cisco routing and switching products. Lead and support firewall...Hourly payContract workTemporary workWork experience placement$43.46 per hour
...Job Description Job Description Job Title: Senior Security Analyst Location: Dallas, TX Job Type: Permanent | Full-Time Shift: Days (Mon–Fri, 8 AM – 5 PM) Pay: Starting at $43.46/hr (DOE) Role Summary: Responsible for protecting systems, networks...SeniorPermanent employmentFull timeShift work$125.76k - $188.64k
...consumer banking and credit, corporate and investment banking, securities brokerage, transaction services, and wealth management. As a... ...integrated into the sectors and functions. AI & Offensive Security Analyst: The AI & Offensive Security Analyst is a hands-on...Full timeWork at office- ...Title: Security Analyst Location: PA - Pittsburgh, TX - Dallas, AZ - Phoenix, AL - Birmingham, OH - Strongsville Mode: Hybrid Duration: Contract to Hire Years Of Exp Required: 6 Years Function of the Group Mitigating risks Industry Background Financial / IT Security Roles...Contract work
- ...professionals across the board has carved our reputation as a secure and significant supplier partner. A robust and financially strong... ...clients’ recruitment needs Job Description Position : Security Analyst Type: Contract-to-Hire Qualifications Essential skills Strong...Permanent employmentContract workWork at office
- ...world that we serve. The Information Technology group delivers secure, reliable technology solutions that enable DTCC to be the... ...and resolve PAM operational issues, escalating complex cases to senior team members or engineering staff as appropriate. Participate...InternshipRemote workFlexible hours
- ...Whitley Penn, a leading CPA and Consulting firm, is looking for an IT Security Analyst to join our team. The IT Security Analyst is an entry-level position within the IT team, providing firm-wide support for information and data security. This role involves assisting...Full timeWork at officeLocal areaMonday to Friday
$110k - $130k
...IT Security Analyst *******THIS IS NOT A REMOTE POSITION. WORK WILL BE ONSITE AT EITHER OUR DALLAS, TX OR HUNTINGTON BEACH, CA OFFICE********* Pay Range: $110000 - $130000 / year Description Responsible for performing risk assessment, security analysis, and...Work at office$76.4k - $138.6k
...systems is central to doing business, and everyone in EY Information Security has a critical role to play. Join a global team of almost 950... ...business value. The opportunity As an Offensive Security Analyst on the Attack Surface Management team, you will play a key role...Summer holidayLocal areaFlexible hours- ...other scanning tools. Web application scanning and web application firewalls. Containers. CIS benchmarks, STIGs, or other security hardening standards. Additional Desirable Skills Or Experience SAML, Kerberos, OAuth, OIDC, LDAP. Powershell and...
- ...The opportunity As an Offensive Security Analyst on the Attack Surface Management team, you will play a key role in evaluating and reducing EY’s digital exposure through hands‑on penetration testing and adversarial simulation. Working under the guidance of the Exposure...Summer holidayFlexible hours
$34 - $35 per hour
...IT Security Analyst Dallas, Texas, United States $ 34.00 - 35.00 (US Dollar) IT Security Analyst needs 3 years IT sec. experience analyzes phishing emails and associated malware IT Security Analyst requires: Understands and updates knowledge of core operating...$61.2k - $91.8k
...and a team that welcomes you—because when you feel valued, you’re empowered to do your best work. Job Summary The Physical Security Enablement Analyst supports the delivery and continuous improvement of physical security programs within Data Center operations. This role...Full timeWork at office- ...Offensive Security Analyst (Structured / Non-Exploit) About the Role What if your red-team instincts and adversarial thinking could directly influence how AI understands cybersecurity threats? We're looking for Offensive Security Analysts to analyze real-world...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
- ...Security Analyst The Security Analyst is responsible for managing third-party vulnerability data, executing scans using Sompo’s proprietary tools, and partnering with IT teams to prioritize remediation efforts. The role requires strong technical expertise in vulnerability...
- ...AI / Emerging Tech Security Analyst (AI Training) About the Role What if your security expertise could directly shape how the world's most powerful AI systems defend themselves against attacks, misuse, and adversarial exploitation? We're looking for AI Security...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
- ...for others; able to manage highly complex work efforts; may have advanced education; has extensive industry experience. The IT Security Analyst monitors and advises on information security issues related to the systems and workflow at an agency to ensure the internal IT...Permanent employmentContract workLocal area
$125.76k - $188.64k
...credit, corporate and investment banking, securities brokerage, transaction services, and... ...progress together. The Info Sec Prof Lead Analyst is an intermediate level position responsible... ...service levels, and areas of concern to senior management Streamline and automate...Full time- ...Security Operations Analyst (AI Training) About the Role We're partnering with leading AI research labs to build the next generation of intelligent security systems. As a Security Operations Analyst, your real-world SOC expertise will directly shape how AI understands...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
- ...Network & Infrastructure Security Analyst (AI Training) About the Role We partner with the world's leading AI research teams and labs to build and train cutting-edge AI models. Now, we're looking for experienced infrastructure security practitioners to bring...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
- Ernst & Young Oman is seeking an Offensive Security Analyst for the Attack Surface Management team to evaluate and reduce digital exposure through penetration testing. You’ll identify vulnerabilities across EY’s attack surface and provide actionable insights for proactive...Flexible hours
- ...vehicles across our Direct Lending and Securities portfolios and consists of 50+ dedicated... ...enthusiastic, intellectually curious, and diligent Analyst / Associate to join the CMBS... ...internal reporting and portfolio analytics for senior management. The role will also involve...Local area
$60k - $75k
VetJobs is seeking a Physical Security Enablement Analyst focused on enhancing security processes within Data Center operations. Responsibilities include coordinating projects, analyzing data for security improvements, and ensuring adherence to security standards. This...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Security Analyst. Be the first to apply!
- senior information security analyst Irving, TX
- senior data management analyst Irving, TX
- senior compensation manager Irving, TX
- senior accounts receivable Irving, TX
- senior vice president of operations Irving, TX
- senior manager creative operations Irving, TX
- senior storage engineer Irving, TX
- senior statistical programmer Irving, TX
- senior account executive Irving, TX
- senior hvac project manager Irving, TX

