Microsoft · 4 hours ago
Senior Product Manager - CoreAI
Microsoft’s mission is to empower every person and every organization on the planet to achieve more. The 1ES (One Engineering System) team is seeking a Senior Product Manager - CoreAI to lead Software Supply Chain Security initiatives, focusing on AI-assisted remediation of security risks and ensuring compliance with emerging regulations.
Agentic AIApplication Performance ManagementArtificial Intelligence (AI)Business DevelopmentDevOpsInformation ServicesInformation TechnologyManagement Information SystemsNetwork SecuritySoftware
Responsibilities
Drive product vision and strategy for software supply chain security within 1ES, specifically for securing AI agents, MCP servers, and ensuring alignment with Microsoft’s compliance and security goals
Lead AI‑assisted risk remediation across Microsoft repositories, defining requirements and guiding engineering execution
Develop deep insights into open source consumption patterns, specifically across NuGet, NPM, PyPI, Maven, Cargo, and Go ecosystems, to inform risk mitigation strategies
Collaborate across engineering, security, compliance, and legal teams to ensure solutions meet both technical and regulatory requirements
Define success metrics and outcomes, track progress, and iterate based on data‑driven insights
Champion secure DevOps practices, integrating supply chain security into the full lifecycle of software development
Qualification
Required
Bachelor's Degree AND 5+ years experience in product/service/program management or software development OR equivalent experience
Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings: Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter
Preferred
4+ years of product management experience in security, compliance, or developer tooling domains
Domain knowledge of software supply chain security, including risks associated with open source package consumption
Hands‑on experience with AI models applied to security risk detection and remediation
Understanding of DevOps lifecycle and modern engineering practices
Track record of delivering complex, cross‑company initiatives with measurable impact
Communication and collaboration skills, with the ability to influence senior stakeholders across engineering and compliance
Experience of using and managing security aspects of MCP servers
Experience working with or contributing to open-source ecosystems (NuGet, NPM, PyPI, Maven, Cargo, Go)
Familiarity with global regulatory frameworks, especially EU Cyber Resilience Act (CRA)
Technical background (Computer Science, Engineering, or related field)
Company
Microsoft
Microsoft is a software corporation that develops, manufactures, licenses, supports, and sells a range of software products and services.
H1B Sponsorship
Microsoft has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (9192)
2024 (9343)
2023 (7677)
2022 (11403)
2021 (7210)
2020 (7852)
Funding
Current Stage
Public CompanyTotal Funding
$1MKey Investors
Technology Venture Investors
2022-12-09Post Ipo Equity
1986-03-13IPO
1981-09-01Series Unknown· $1M
Leadership Team
Recent News
2026-01-14
2026-01-14
Company data provided by crunchbase