Back to jobsJob overview

About the role

GRC Senior Security Engineer at Microsoft

Required Skills

cybersecuritycompliancerisk managementthreat modelingaudit managementsecurity frameworksdata protectionincident responseregulatory compliance

About the Role

The GRC Senior Security Engineer serves as a security and privacy liaison for customer engagements, addressing security and compliance concerns. Responsibilities include leading security questionnaires, managing audits, evaluating technical controls, and coordinating incident response. The role requires expertise in security frameworks, risk management, and cross-functional collaboration.

Key Responsibilities

  • Serve as primary security and privacy liaison for pre- and post-sales engagements
  • Lead completion of customer security questionnaires, RFPs, RFIs, and due diligence assessments
  • Manage customer-facing audits and assurance engagements including evidence preparation
  • Evaluate technical security controls and processes for compliance with standards
  • Act as key point of contact for security incidents and coordinate response efforts

Required Skills & Qualifications

Must Have:

  • Master's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security or related field AND 3+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
  • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security or related field AND 4+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
  • OR equivalent experience
  • Ability to meet Microsoft, customer and/or government security screening requirements including Microsoft Cloud Background Check and citizenship verification

Nice to Have:

  • Master's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security or related field AND 6+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
  • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Risk Management, Cyber Security or related field AND 8+ years experience in software development lifecycle, large scale computing, threat modeling, cyber security, or anomaly detection
  • Project management for customer-facing compliance initiatives
  • Analytical skills for assessing customer requirements and interpreting regulations
  • Compliance management experience with high-compliance requirements (healthcare, government)
  • Strong written and verbal communication for explaining complex compliance topics
  • Problem solving skills for addressing compliance-related customer challenges

Benefits & Perks

  • Industry leading healthcare