Microsoft makes security a ‘core priority’ for all employees in major worker shift

A cybersecurity icon projecting from a laptop screen.
(Image credit: Shutterstock / song_about_summer)

Microsoft has reportedl ytold its employees they will be judged on their security awareness and skills following several recent high-profile incidents.

An internal company memo seen by Geekwire sent to all Microsoft workers has outlined the new way of thinking, which will apparently tie the company's ongoing security goals with performance reviews.

Going forward, Microsoft staff will now be judged on alignment with security targets, as well as diversity and inclusion objectives. Internally dubbed ‘Connect’, performance evaluations now include employee’s security, meaning that bonuses and promotions could be impacted if there is a lack of security focus. Staff will now have to demonstrate impactful security changes they have implemented in order to determine compliance with internal targets.

A push for security

"When faced with a tradeoff, the answer is clear and simple: security above all else," Kathleen Hogan, Microsoft chief people officer, wrote in the memo. "Our commitment to security is enduring. New and novel attacks will require us to continue to learn, innovate, and defend. Yet working together, we will make nonlinear improvements, stay alert, and meet the expectations of our customers."

The news comes not long after Microsoft CEO Satya Nadella told workers of a new vision that sees the company “putting security above all else.”

This comes after a series of high-profile attacks affecting the business, including a recent data breach which allowed Russian hackers to compromise several US federal organizations.

Microsoft was criticized in the Department of Homeland Security’s Cyber Safety Review Board (CSRB) for making a series of ‘avoidable errors’.

The company also announced its ‘Secure Future Initiative’ in November 2023, outlining its broader vision for preventing and mitigating cybersecurity threats which have troubled the industry in recent years. The strategy was focused on software and engineering, specifically safeguarding identity management systems and reducing response time to patch vulnerabilities.

As part of its Secure Future Initiative, Microsoft tied executive pay to security performance, meaning bonuses and internal reward processes became a condition of cyber safety goals being met.

More from TechRadar Pro

Ellen Jennings-Trace
Staff Writer

Ellen has been writing for almost four years, with a focus on post-COVID policy whilst studying for BA Politics and International Relations at the University of Cardiff, followed by an MA in Political Communication. Before joining TechRadar Pro as a Junior Writer, she worked for Future Publishing’s MVC content team, working with merchants and retailers to upload content.

Read more
Hack The Box crisis simulation event
“Everyone will experience a hack” - how incident response can protect your organization
A woman at a table using a Windows laptop, opposite sits a man, neither show their face
Microsoft will now pay you even more to find security bugs in Copilot
Cyber-security
Security leaders don't want to be held personally liable for attacks
An abstract image of a lock against a digital background, denoting cybersecurity.
Building a resilient workforce security strategy
A digital representation of a lock
Exploits on the rise: How defenders can combat sophisticated threat actors
A phone sitting on a laptop keyboard with the Microsoft Outlook logo on the screen.
Microsoft is changing the way logins work: here’s what that means for you
Latest in Pro
cybersecurity
What's the right type of web hosting for me?
Security padlock and circuit board to protect data
Trust in digital services around the world sees a massive drop as security worries continue
Hacker silhouette working on a laptop with North Korean flag on the background
North Korea unveils new military unit targeting AI attacks
An image of network security icons for a network encircling a digital blue earth.
US government warns agencies to make sure their backups are safe from NAKIVO security issue
Laptop computer displaying logo of WordPress, a free and open-source content management system (CMS)
This top WordPress plugin could be hiding a worrying security flaw, so be on your guard
construction
Building in the digital age: why construction’s future depends on scaling jobsite intelligence
Latest in News
Ray-Ban Meta Smart Glasses
Samsung's rumored smart specs may be launching before the end of 2025
Apple iPhone 16 Review
The latest iPhone 18 leak hints at a major chipset upgrade for all four models
Quordle on a smartphone held in a hand
Quordle hints and answers for Monday, March 24 (game #1155)
NYT Strands homescreen on a mobile phone screen, on a light blue background
NYT Strands hints and answers for Monday, March 24 (game #386)
NYT Connections homescreen on a phone, on a purple background
NYT Connections hints and answers for Monday, March 24 (game #652)
Quordle on a smartphone held in a hand
Quordle hints and answers for Sunday, March 23 (game #1154)