> Markdown version of [/jobs/ext/2155038-principal-strategist-threat-intelligence](https://www.wearedevelopers.com/jobs/ext/2155038-principal-strategist-threat-intelligence). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Strategist - Threat Intelligence... - **Company:** Microsoft - **Location:** Redmond, WA, United States - **Experience:** Expert - **Salary:** $165,600.0 - $296,400.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Microsoft Online Services, Cyber Security, Digital Technology, Intrusion Detection and Prevention, Microsoft Security Essentials, Security Information and Event Management, Software Engineering, Cyber Threat Analysis, Information Technology, Microsoft Sentinel, Vulnerability Analysis - **Published:** August 20, 2026 - **Apply:** https://www.juju.com/job/00000000go155f ## About the Role + Doctorate in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 5+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. + OR Master's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 6+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. + OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 8+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. + OR equivalent experience. Other Requirements: Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings: Microsoft Cloud Background Check: + This position will be required to pass the Microsoft background and Microsoft Cloud background check upon hire/transfer and every two years thereafter. Preferred Qualifications: + Doctorate in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 8+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. + OR Master's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 12+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. + OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 15+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. + OR equivalent experience. + 10+ years of experience in cyber threat intelligence, security research, incident response, security product strategy, or a related discipline. + Proven track record of defining strategy and driving large-scale, cross-functional security initiatives. + Understanding of the threat intelligence lifecycle, adversary tradecraft, analytic standards, and intelligence consumers. + Experience translating threat intelligence into product priorities, detections, managed services, or customer guidance. + Working knowledge of XDR, SIEM, detection engineering, security telemetry, and AI-assisted security workflows. + Demonstrated ability to advise senior leaders and align teams across complex organizations without direct authority. + Communication and executive presence, with experience in customer briefings, industry forums, or public-facing engagements. \#MSsecurity ## Description Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified solutions. The Microsoft Security organization accelerates Microsoft's mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers' heterogeneous environments, as well as ensuring the security of our own internal estate. Microsoft Security Research is on the front line of this mission. Our Applied Threat Intelligence team tracks threat actors, their campaigns, targets, and changing tradecraft. We work across threat intelligence, research, engineering, incident response, and product teams to turn what we learn into detections, product experiences, managed services, and guidance that protects customers. We are looking for a **Principal Strategist - Threat Intelligence & Protection** to set the direction for this work. This role will shape what intelligence we produce, how AI improves its speed and quality, how intelligence reaches Microsoft security products, and how Microsoft communicates it to customers and the security community. The strategist will connect work across Microsoft Defender XDR, Microsoft Sentinel, Defender Experts, Agentic Security, and Microsoft Threat Intelligence. This is a individual contributor role with broad organizational influence. The successful candidate will bring deep threat intelligence judgment, strong product and business thinking, and working knowledge of security technologies. They will advise leaders, align teams across organizational boundaries, make clear investment choices, and serve as a spokesperson for Microsoft Threat Intelligence. Responsibilities + Define the multi-year strategy and investment priorities for Applied Threat Intelligence based on the threat landscape, customer needs, and Microsoft Security priorities. + Shape the intelligence portfolio, including what Microsoft produces, which audiences it serves, and how it informs protection decisions. + Drive threat intelligence into detections, product experiences, managed services, disruption, and customer guidance. + Set the strategy for using AI to improve the speed, scale, and quality of intelligence production and delivery. + Advise leaders on emerging threats, protection gaps, strategic choices, and their implications for Microsoft's security portfolio. + Align threat intelligence, research, engineering, product, incident response, field, and communications teams around shared priorities. + Shape Microsoft's threat intelligence narrative and represent it in executive briefings, customer engagements, industry forums, and public events. + Establish standards and measures for intelligence quality, product adoption, time to protection, and customer impact. ## Related Videos - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Opening Keynote: Civic Coding, A Framework for Democratic Tech](https://www.wearedevelopers.com/videos/963-opening-keynote-civic-coding-a-framework-for-democratic-tech) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Introducing the W3C Web Sustainability Guidelines](https://www.wearedevelopers.com/videos/991-introducing-the-w3c-web-sustainability-guidelines) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Coffee with Developers - Maria Apazoglou - Making AI understandable for all in production](https://www.wearedevelopers.com/magazine/475-coffee-with-developers-maria-apazoglou-making-ai-understandable-for-all-in-production)