Security Researcher
6 days ago
Hyderabad, Telangana, India
Date posted
Sep 08, 2025
Job number
1872299
Work site
Up to 50% work from home
Travel
0-25%
Role type
Individual Contributor
Profession
Security Engineering
Discipline
Security Research
Employment type
Full-Time
OverviewSecurity represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified solutions. The Microsoft Security organization accelerates Microsoft's mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers' heterogeneous environments, as well as ensuring the security of our own internal estate.
Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their best each day. In doing so, we create life-changing innovations that impact billions of lives around the world. If you are passionate about offensive security, adversary tradecraft, and designing real-world attack simulations, the M365 Security Engineering team at Microsoft offers a unique opportunity to emulate advanced threats and strengthen defenses that protect millions of customers worldwide.
Our Assume Breach team focuses on detecting and replicating sophisticated adversary tactics, techniques, and procedures (TTPs) used against Microsoft's cloud services, platforms, and enterprise environments. We value creativity, technical depth, and collaboration—bringing together specialists in detection engineering, adversary emulation, threat intelligence, and incident response. You will join a team dedicated to catching adversaries by simulating nation-state and cybercriminal behaviors, developing custom tooling, and running purple team engagements that drive measurable security improvements and ensure our detections remain effective against evolving threats. As part of this team, you will design attack simulations that are realistic, repeatable, and reflective of the latest adversary tradecraft. You will work closely with Detection Engineers, Data Scientists, and Incident Responders to validate detection coverage, uncover blind spots, and continuously raise the bar for detection and response. Leveraging massive-scale telemetry across Microsoft 365 and Azure, you will plan and execute adversary emulation campaigns, build Python-based automation and payloads, and operationalize new TTPs—directly influencing Microsoft's ability to defend against the world's most advanced attackers.
Microsoft's mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond. In alignment with our Microsoft values, we are committed to cultivating an inclusive work environment for all employees to positively impact our culture every day.
Qualifications5+ years of experience in red teaming, adversary emulation, offensive security research, or penetration testing.
Strong Python development skills for building custom tools, automation, and attack simulations.
Proficiency in at least one additional language (e.g., PowerShell, Go, or C#).
Solid understanding of attacker tradecraft, including persistence, privilege escalation, lateral movement, and defense evasion.
Experience with red team/adversary simulation frameworks (Cobalt Strike, Caldera, or similar).
Deep knowledge of Windows internals, Active Directory, and enterprise cloud environments (Azure or equivalent).
Preferred Qualifications:
Experience building automation pipelines for adversary simulation and reporting.
Familiarity with Exploit Development
Familiarity with endpoint detection and response (EDR) products and detection engineering.
Experience in cloud-scale environments (Office 365, Azure, AWS, or GCP).
Reverse engineering or malware development experience.
Strong written and verbal communication skills for documenting and explaining technical findings.
Plan, design, and execute adversary emulation campaigns aligned with MITRE ATT&CK and current threat intelligence.
Develop custom scripts, payloads, and automation frameworks (primarily in Python, with PowerShell, C#, or Go as needed) to simulate advanced attacker techniques.
Extend and maintain adversary emulation toolkits and C2 frameworks
Collaborate with detection engineers, data scientists to validate detection efficacy, identify blind spots, and improve detection coverage against TTPs.
Automate repeatable attack scenarios, data collection, and reporting for scale and consistency.
Participate in purple team exercises to accelerate detection and response maturity across the M365 ecosystem.
Document attack scenarios, technical findings, and mitigation recommendations to drive systemic improvements.
Benefits/perks listed below may vary depending on the nature of your employment with Microsoft and the country where you work.
Industry leading healthcare
Educational resources
Discounts on products and services
Savings and investments
Maternity and paternity leave
Generous time away
Giving programs
Opportunities to network and connect
Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.
-
Security Researcher
5 days ago
Hyderabad, Telangana, India Stealth Startup Full timeJob Summary : We are seeking a highly skilled and curious Security Researcher to join our cybersecurity team. As a Security Researcher, you will investigate vulnerabilities, analyze malware, and uncover emerging threats to protect our infrastructure and products. This role is ideal for someone passionate about offensive and defensive security, reverse...
-
Security Research
4 days ago
Hyderabad, Telangana, India Microsoft Full time ₹ 15,00,000 - ₹ 28,00,000 per yearSecurity Research (Detection Engineer)Hyderabad, Telangana, IndiaDate postedSep 10, 2025Job number1874517Work site3 days / week in-officeTravel0-25%Role typeIndividual ContributorProfessionSecurity EngineeringDisciplineSecurity ResearchEmployment typeFull-TimeOverviewSecurity represents the most critical priorities for our customers in a world awash in...
-
Security Research
5 days ago
Hyderabad, Telangana, India Microsoft Full time ₹ 1,40,000 - ₹ 28,00,000 per yearSecurity represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified...
-
Cloud Security Researcher
1 week ago
Hyderabad, Telangana, India beBeeCloud Full time ₹ 2,00,00,000 - ₹ 2,50,00,000Cloud Security Expert WantedJob Summary:We are looking for a skilled cloud security expert to join our team. The ideal candidate will have expertise in threat research, detection, and response.This is an opportunity to work on complex cloud security challenges and develop innovative solutions to protect organizations worldwide.The selected candidate will...
-
Email Security Research
6 days ago
Hyderabad, Telangana, India LTIMindtree Full time ₹ 9,00,000 - ₹ 12,00,000 per yearExperience: 4 to 9 YearsNotice Period: 30 days maxWork Mode: WFOShift: Rotational ShiftKey ResponsibilitiesConduct email analysis and reverse engineer to identify and mitigate threats. Perform static and dynamic analysisAnalyze network traffic and develop heuristic signatures to detect malicious activities. Investigate security incidents, including data...
-
Security Researcher II
2 weeks ago
Hyderabad, Telangana, India Microsoft Full time US$ 1,20,000 - US$ 2,00,000 per yearAre you excited about cyber security? Are you passionate about protecting customer data? Are you eager to catch threat actors, research for their TTP's and write detections that process massive datasets efficiently? Are you interested in solving problems leveraging distributing computing, hybrid architectures and cloud technologies? If so, the M65...
-
Security Researcher
7 days ago
Hyderabad, Telangana, India Microsoft Full time ₹ 1,04,000 - ₹ 1,30,878 per yearSecurity represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified...
-
Academic Researcher
2 weeks ago
Hyderabad, Telangana, India beBeeSocial Full time ₹ 10,00,000 - ₹ 15,00,000Research Faculty Position">As a key member of our team, you will be responsible for conducting high-impact research in various social science disciplines. This includes securing external funding, collaborating with international researchers, and leading projects addressing contemporary social challenges.The ideal candidate will possess a Ph.D. in Social...
-
Cloud Security Expert
1 week ago
Hyderabad, Telangana, India beBeeThreat Full time US$ 1,80,000 - US$ 2,00,000Cloud Threat Specialist Job DescriptionOur customers face a world of digital threats, regulatory scrutiny, and complex IT environments. As a cloud threat specialist, you'll play a key role in making the world a safer place for all.We're looking for a passionate and curious individual to join our high-impact team. You'll collaborate with researchers,...
-
Senior DevSecOps Support Engineer
1 week ago
Hyderabad, Telangana, India Aqua Security Full timeJob DescriptionWe are building a state-of-the-art security platform for large enterprises in the exciting and innovative new field of cloud security. Our open-core SaaS platform is used by thousands of developers, businesses, and enterprises to keep their cloud workloads secure.We are looking for a talented Senior DevSecOps Support Engineer to join our team...