Job Description
Directly accountable and responsible for the design and implementation of distributed systems that deliver security‑focused improvements and mitigations, including telemetry, reproducibility, CI/CD safety gates, governance, and automated validations. Set engineering direction for services and tooling supporting adversarial testing, model evaluation, risk measurement, and secure deployment workflows. Ensure that security mitigations and security‑driven architectural changes meet high bars for availability, reliability, security, performance, and scalability, providing durable protection across complex AI systems. Champion best practices in threat modeling, observability, automation, and sustainable engineering. Partner with security researchers, red teams, applied scientists, Responsible AI, platform engineering, and product teams to translate risks into actionable engineering plans and hardening strategies. Work closely with PM/TPM partners on roadmaps, prioritization, and delivery commitments. Represent Copilot Security Engineering in architecture reviews, risk assessments, and cross‑team security initiatives. Deliver engineering capabilities that increase detection coverage, accelerate time‑to‑mitigation, and provide auditable, repeatable evaluation workflows across AI systems. Communicate technical strategy, progress, risks, and results clearly to leadership and partner teams. Bachelor's Degree in Computer Science or related technical field AND 6+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python These requirements include but are not limited to the following specialized security screenings: Master's Degree in Computer Science or related technical field AND 8+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python OR Bachelor's Degree in Computer Science or related technical field AND 12+ years technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python OR equivalent experience. Experience building or operating security critical systems, evaluation frameworks, or platform services. Familiarity with adversarial testing, AI/ML evaluation, telemetry pipelines, or secure by design engineering practices. Experience partnering with applied science, security research, red teams, or Responsible AI stakeholders. Proven ability to influence cross organizational partners and align engineering execution with product and risk priorities. Solid written and verbal communication skills, including experience presenting technical strategy to senior leadership.