Salesforce · 2 hours ago
Product Security Lead Advisor
Salesforce is the #1 AI CRM, where ambition meets action and innovation drives success. The Lead Product Security Engineer will play a crucial role in enhancing the security posture of Salesforce's products by providing strategic security guidance to engineering teams and conducting thorough security analyses across various platforms.
Agentic AIArtificial Intelligence (AI)Cloud ComputingCRMSaaSSales EnablementSoftware
Responsibilities
Offer strategic security guidance to engineering teams on complex enterprise architectures and systems across the application and infrastructure stack within large-scale public cloud initiatives
Partner closely with engineering teams to conduct thorough architecture and threat modeling risk analyses, proactively identifying security vulnerabilities and developing comprehensive risk mitigation plans throughout the SDLC
Collaborate with product teams to influence upstream security improvements, balancing functional goals with security requirements by recommending optimal design solutions
Work with Product BISOs to curate and prioritize risk-based security initiatives, driving security maturity across all products
Research emerging threats, vulnerabilities, and new technologies, performing business impact analyses to inform security strategies
Analyze diverse risk discovery data sources to derive crucial insights, shaping security activities and roadmaps for Salesforce products
Leverage deep security expertise and product knowledge to support risk prioritization activities across various security programs
Qualification
Required
Bachelor's degree in Computer Science, Engineering or related field, or equivalent training, fellowship, or work experience is required
5+ years proven experience in the following areas in a security engineering or research role:
Public Cloud security architecture in one or more of the following: Amazon Web Services, Google Cloud Platform, Microsoft Azure, Alibaba Cloud, etc
Securing products and infrastructure from the OWASP Top 10 and/or CWE Top 25
Exploiting web and web services security vulnerabilities such as cross-site scripting, cross site request forgery, SQL injection, DoS attacks, XML/SOAP, API attacks, etc
Threat modeling of security topics across both infrastructure security & application security domains
Experience with software development in one or more languages such as: JavaScript, Java, Python, Ruby, PHP, Go, TypeScript
Understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth and common security elements
Strong writing and presentation skills. Possess the ability to communicate concisely, clearly, and intelligently to partners from a variety of backgrounds, including those who are non-technical
Preferred
An attacker's mindset; consider abuse and attack paths as well as the defensive mindset to recommendations to prevent them
A passion around improving the security development lifecycle and delivering security guidance to engineers in a language they understand
Ability to work with data, identify trends and propose comprehensive mitigations that eradicate systemic security concerns
Experience managing or participating in an information security program and improving or proposing improvements to a secure development lifecycle
Some experience performing penetration testing or familiarity with the process
Benefits
Time off programs
Medical
Dental
Vision
Mental health support
Paid parental leave
Life and disability insurance
401(k)
Employee stock purchasing program
Company
Salesforce
Salesforce is a cloud-based software company that provides customer relationship management software and applications.
H1B Sponsorship
Salesforce has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (1883)
2024 (2296)
2023 (1850)
2022 (2849)
2021 (2124)
2020 (1960)
Funding
Current Stage
Public CompanyTotal Funding
$65.38MKey Investors
Starboard ValueEmergence CapitalHalsey Minor
2022-10-18Post Ipo Equity
2004-06-23IPO
2003-01-01Series Unknown· $1M
Leadership Team
Recent News
Business Insider
2026-02-05
Business Insider
2026-02-05
Company data provided by crunchbase