Salesforce · 19 hours ago
Lead Security Engineer, GovCloud
Salesforce is the #1 AI CRM, focused on driving customer success through innovation and security. The Lead Security Engineer will be responsible for enhancing the organization's security posture by assessing risks, implementing security measures, and responding to incidents to protect critical assets.
Agentic AIArtificial Intelligence (AI)Cloud ComputingCRMSaaSSales EnablementSoftware
Responsibilities
Apply security policies to meet security objectives of the system
Assess adequate access controls based on principles of least privilege and need-to-know
Assess all the configuration management (change configuration/release management) processes
Assess the effectiveness of security controls
Ensure cybersecurity-enabled products or other compensating security control technologies reduce identified risk to an acceptable level
Develop and implement comprehensive security policies, procedures, and guidelines to ensure the protection of company assets and compliance with applicable regulations
Conduct (or coordinate with third party partners) regular security risk assessments, vulnerability assessments, and penetration tests to identify potential weaknesses in systems, networks, and applications and coordinate remediation of findings. Drive related mitigations
Collaborate with stakeholders to design and implement security controls, including firewalls, intrusion detection systems, access controls, and encryption technologies
Conduct analysis of logs and events, identify gaps for deeper analysis as needed, and coordinate with Detection and Response teams on detection and alerting betterment efforts and uplift
Stay up-to-date with the latest security trends, vulnerabilities, and threat intelligence, and provide recommendations to proactively address emerging risks
Liaison with Incident Response teams on incidents and response efforts, recommend and/or instigate remediation actions to prevent future occurrences
Develop and deliver security awareness and training programs to educate employees on security best practices and promote a culture of security across the organization
Collaborate with external vendors, partners, and auditors to ensure compliance with security standards and regulations. Further, implement system security measures in accordance with established procedures to ensure confidentiality, integrity, availability, authentication, and non-repudiation
Maintain documentation of security procedures, incident response plans, and security incident reports
Qualification
Required
Experience with using cloud infrastructure as code (IaC), including Terraform, CloudFormation, or Azure Resource Manager to deploy secure cloud infrastructure, and using version control based on Git
Proven experience (5+ years) in a security analyst role, with a focus on information security, incident response, and vulnerability management
Must be US Citizen operating on US Soil and pass both enhanced background check as long as Criminal Justice background check
Strong understanding of security frameworks such as ISO 27001, NIST, or CIS Controls, and their practical application
Extensive knowledge of security technologies, including firewalls, IDS/IPS, SIEM, DLP, antivirus, and endpoint protection systems
Hands-on experience with vulnerability assessment tools, network scanning tools, and penetration testing methodologies
Proficiency in log analysis, incident response, and forensic investigation techniques
Excellent communication skills, both written and verbal, with the ability to articulate complex security concepts to technical and non-technical stakeholders
Demonstrated leadership abilities, with the capacity to motivate and inspire a team
Strong analytical and problem-solving skills, with the ability to think strategically and develop innovative solutions to security challenges
Preferred
Professional certifications such as CISSP, CISM, CEH, or similar are highly desirable
Benefits
Time off programs
Medical
Dental
Vision
Mental health support
Paid parental leave
Life and disability insurance
401(k)
Employee stock purchasing program
Company
Salesforce
Salesforce is a cloud-based software company that provides customer relationship management software and applications.
Funding
Current Stage
Public CompanyTotal Funding
$65.38MKey Investors
Starboard ValueEmergence CapitalHalsey Minor
2022-10-18Post Ipo Equity
2004-06-23IPO
2003-01-01Series Unknown· $1M
Recent News
Company data provided by crunchbase