Salesforce · 2 weeks ago
Lead Incident Responder
Salesforce is the #1 AI CRM, seeking a Lead Incident Responder for their Computer Security Incident Response Team (CSIRT). The role involves handling high severity incidents, leading a team of Incident Responders, and improving detection and incident response capabilities.
Artificial Intelligence (AI)Cloud ComputingCRMSaaSSales EnablementSoftware
Responsibilities
Handle the response to high severity incidents
Act as a technical escalation point for the team of Incident Responders
Develop process improvement and automation
Lead significant strategic projects
Focus on enhancements to detection and incident response capabilities
Qualification
Required
8+ years experience in the Information Security field, including operational security monitoring and incident response experience
System forensics/investigation skills across Windows, Mac OS X, Linux, including analyzing system artifacts (file system, memory, running processes, network connections) for indicators of infection/compromise
Familiarity responding to security incidents in various cloud environments (AWS, Azure, Google Cloud) with knowledge of relevant architectures, CI/CD, and logging
Can lead and handle the response to high-priority, high-visibility operational security issues including insider investigations, sophisticated adversaries, and web application attacks
The ability to build positive relationships with peers, both internal and external to your functional group, and with peers/professional organizations outside the company
Deep technical understanding of the information security threat landscape (attack vectors and tools, best practices for securing systems and networks, etc.)
Must have strong verbal and written communication skills; ability to communicate effectively and clearly to executive leadership
U.S. citizen (U.S. born or naturalized) who does not hold dual citizenship. Agree to complete a Minimum Background Investigation (MBI) for a Moderate Public Trust position with the U.S. federal government
Preferred
Authority in a related domain (e.g. malware analysis, detection writing, forensics, cloud security, offensive security, artificial intelligence)
Prior experience in a 24x7x365 operations environment
Proven history of automation and capability uplift through tool development, SOAR, etc
Relevant information security certifications, such as SANS GCIH, SANS GPEN, SANS GFCA, Offensive Security OSCP, etc
AI and LLM Integration for SOC Operations. Experience with AI-powered security tools, Large Language Models (LLMs) for threat analysis and incident response automation, and familiarity with AI-driven detection systems to enhance SOC operational efficiency and reduce response times
Benefits
Time off programs
Medical
Dental
Vision
Mental health support
Paid parental leave
Life and disability insurance
401(k)
Employee stock purchasing program
Company
Salesforce
Salesforce is a cloud-based software company that provides customer relationship management software and applications.
Funding
Current Stage
Public CompanyTotal Funding
$65.38MKey Investors
Starboard ValueEmergence CapitalHalsey Minor
2022-10-18Post Ipo Equity
2004-06-23IPO
2003-01-01Series Unknown· $1M
Leadership Team
Recent News
2026-01-08
2026-01-07
Company data provided by crunchbase