Director, Forward Deployed Security
Microsoft (Eightfold Apply)
- Location
- United States, Multiple Locations, Multiple Locations
- Work model
- On-Site
- Level
- Staff
- Posted
- 1h ago
About this role
Overview
The Cloud & AI organization accelerates Microsoft’s mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers’ heterogeneous environments, as well as ensuring the security of our own internal estate. Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their best each day. In doing so, we create life-changing innovations that impact billions of lives around the world. Microsoft is one of the largest enterprise service companies in the world. Forward-Deployed Security within CISO Leadership is responsible for bootstrapping and maturing security programs and addressing threats faced by Microsoft divisions with emerging, non-traditional-enterprise technologies. We work where the problems are least standardized and the stakes are real: new products, fast-moving platforms, uneven security maturity and teams that need practical help building an architecture that works for them - not abstract guidance and frameworks. We land, understand the environment, build roadmaps, develop recon and exposure tooling, and stay involved to land security improvements until the problem space is stable and an operational team is ready to stand on its own. We are looking for a technical program leader to help turn complex security needs into clear decisions, executable programs, and measurable outcomes. You will shape a portfolio of security programs, and build the mechanisms that help security, engineering, product, and business teams deliver together. While this role does not require specific technical skills, the successful candidate will be able to develop enough technical depth to challenge assumptions, understand architecture and delivery tradeoffs, improve how work gets done, and stay accountable for adoption and risk reduction. AI will be part of how the team researches, analyzes, plans, and operates, and you will be responsible for the quality, limitations, and human oversight of AI-assisted outputs used in decision making.
Responsibilities
Turn ambiguous security needs into well-scoped programs with explicit goals, priorities, dependencies, owners, success measures, and decision paths. Ensure alignment with CISO-mandated governance processes, including quarterly risk reviews, third-party risk, and PIR governance. Partner deeply with engineering, architecture, product, and security leaders to identify risks, resolve planning misalignment, and drive technically sound decisions through delivery and adoption. Build and improve the operating mechanisms behind security reviews, roadmap execution, risk prioritization, telemetry, and remediation so the organization can scale without adding unnecessary friction. Use customer feedback, security telemetry, incident learning, exposure data, and other evidence to guide experiments, influence investment decisions, and continuously improve the portfolio. Apply AI and automation to research, planning, analysis, and workflow orchestration while setting standards for validation, traceability, escalation, and responsible human judgment. Establish patterns for security program management across forward-deployed divisions, setting clear objectives and improving execution quality.
Qualifications
Required/Minimum Qualifications Bachelor's Degree AND 6+ years experience in engineering, product/technical program management, data analysis, or product development OR equivalent experience. 3+ years of experience managing cross-functional and/or cross-team projects. Additional or Preferred Qualifications Bachelor's Degree AND 12+ years experience engineering, product/technical program management, data analysis, or product development OR equivalent experience. 8+ years of experience managing cross-functional and/or cross-team projects. 1+ year(s) of experience reading and/or writing code (e.g., sample documentation, product demos). Experience