The Conditional Access team builds the policy engine at the heart of Microsoft Entra and the Zero Trust security model. Every time a user or workload attempts to access a Microsoft or third-party resource, Conditional Access evaluates the full context of that request - user, device, location, application, real-time risk, and more - and makes the critical decision to grant, block, or challenge access. We are the enforcement point that turns "verify explicitly" from a principle into reality for hundreds of thousands of organizations and billions of authentications every day. Operating at extreme scale and with zero tolerance for downtime, our team owns the design, delivery, and live-site health of a mission-critical service that sits in the authentication hot path. We tackle hard problems across distributed systems, low-latency policy evaluation, security, and resilience - where correctness and availability directly protect our customers from real-world attacks. As identity increasingly becomes the security perimeter, and as we converge with Global Secure Access to protect network traffic as well as identity, our work is central to how Microsoft secures the modern enterprise. We're a team of engineers who care deeply about customer trust, operational excellence, and raising the bar for security across the industry. We move fast, own our outcomes end to end, and take pride in defending customers at a scale few teams in the world operate at.
Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.
#MSFTSecurity #ConditionalAccess
Principal Software Engineer - Responsibilities Technical leadership & architecture
Other
Required/minimum qualifications
Other Requirements:
Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings:
Preferred Qualifications:
• Bachelor's Degree in Computer Science or a related technical field AND 8 years of technical engineering experience with coding in languages including, but not limited to, C, C , C#, Java, JavaScript, or Python OR Master's Degree in Computer Science or a related technical field AND 6 years of technical engineering experience with coding in languages including, but not limited to, C, C , C#, Java, JavaScript, or Python
Software Engineering IC5 - The typical base pay range for this role across the U.S. is USD $142,800 - $274,800 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $188,000 - $304,200 per year.
Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:
https://careers.microsoft.com/us/en/us-corporate-pay
This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.
Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.