Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action. Tech meets trust. And innovation isn’t a buzzword — it’s a way of life. The world of work as we know it is changing and we're looking for Trailblazers who are passionate about bettering business and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all.Our Security teams support the unwritten fourth tenet of Slack’s mission : make people’s working lives more secure. We’re serious about protecting our infrastructure, operations, and most importantly, our customers’ data. We take a systemic approach to security and strive to ensure we provide low friction high-impact security across everything we do.As a key member of the Risk & Compliance Team, you understand that building user trust is critical to Slack’s success. You are passionate about information security, risk management, Sarbanes-Oxley IT General Controls (SOX ITGC), privacy and maintaining customer confidence. You have the focus and organization to champion the adoption of sound security and SOX ITGC practices across all of Slack’s business and engineering teams. You are passionate about learning, building, and sustaining processes to address new regulatory and compliance requirements. In this role, your work will directly impact the way millions of users, teams and businesses get things done. We are seeking a motivated individual that is not only focused on delivering results but does so in a collaborative and courteous manner.
Responsibilities
Act as the compliance subject matter expert for Engineering systems to provide leadership in managing ITGC auditing activities, requests and developing responses to audit findings, leading remediation of audit findings.
Provide quality assurance of ITGC controls for Engineering to ensure operational effectiveness of those security controls in Engineering.
Identify risks and gaps and facilitate remediation
Conduct and participate in walkthroughs with engineering stakeholders and auditors.
Facilitate tests of design and operational effectiveness for key information technology controls.
Assist control owners with root cause analysis and track risk management action plan progress.
Implement issue tracking and resolution process.
Deliver risk metrics to management regarding audit performance and findings
Assist the performance of security risk assessments to maintain compliance with AICPA Trusted Service Principles and ISO security standards.
Assist in the design and implementation of information security compliance controls to address current risks, emerging threats and compliance standards.
Requirements
Sound understanding of cloud security and control principles including logical access controls, change control, privileged access, segregation of duties, computer operations, network security, vulnerability management, and secure coding.
5+ years of experience in auditing and assessing Sarbanes-Oxley (ITGC) controls.
Experience implementing, participating in, or conducting security assessments of compliance programs (e.g. SOC 2, FedRAMP, NIST, ISO 27001 / 27017 / 27018, HIPAA, HITRUST, Sarbanes-Oxley ITGC, etc.).
Experience leading compliance efforts for Identity and Access Management solutions (E.g. Sailpoint IdentityNow).
Ability to work independently.
Ability to work with cross-functional stakeholders to reach desired outcomes.
Effective communication with great interpersonal and presentation skills; ability to translate complex technical issues into simple language that people who are not experts can understand.
A related technical degree required.
Bonus Points
Hands on information security experience
Excellent time management and related organizational skills
Understanding of infrastructure technologies including AWS, Chef, Github, Jenkins, etc.
Bachelor’s or Master’s degree in Computer Science, Information Technology, or equivalent educational or professional experience and / or qualifications
CISSP, CISA, or other industry certificationUnleash Your PotentialWhen you join Salesforce, you’ll be limitless in all areas of your life. Our benefits and resources support you to find balance and
be your best
, and our AI agents accelerate your impact so you can
do your best
. Together, we’ll bring the power of Agentforce to organizations of all sizes and deliver amazing experiences that customers love. Apply today to not only shape the future — but to redefine what’s possible — for yourself, for AI, and the world.AccommodationsIf you require assistance due to a disability applying for open positions please submit a request via this .Posting StatementAny employee or potential employee will be assessed on the basis of merit, competence and qualifications – without regard to race, religion, color, national origin, sex, sexual orientation, gender expression or identity, transgender status, age, disability, veteran or marital status, political viewpoint, or other classifications protected by law. This policy applies to current and prospective employees, no matter where they are in their Salesforce employment journey. It also applies to recruiting, hiring, job assignment, compensation, promotion, benefits, training, assessment of job performance, discipline, termination, and everything in between. Recruiting, hiring, and promotion decisions at Salesforce are fair and based on merit. The same goes for compensation, benefits, promotions, transfers, reduction in workforce, recall, training, and education.In the United States, compensation offered will be determined by factors such as location, job level, job-related knowledge, skills, and experience. Certain roles may be eligible for incentive compensation, equity, and benefits. Salesforce offers a variety of benefits to help you live well including : time off programs, medical, dental, vision, mental health support, paid parental leave, life and disability insurance, 401(k), and an employee stock purchasing program. More details about company benefits can be found at the following link : https : / / www.salesforcebenefits.com.Pursuant to the San Francisco Fair Chance Ordinance and the Los Angeles Fair Chance Initiative for Hiring, Salesforce will consider for employment qualified applicants with arrest and conviction records.### ### ### ### ### ### For California-based roles, the base salary hiring range for this position is $200,800 to $276,100.### ###
#J-18808-Ljbffr
serp_jobs.job_alerts.create_a_job
Security Lead • San Francisco, CA, United States
Job_description.internal_linking.related_jobs
serp_jobs.job_card.promoted
Sr. Manager Risk & Governance
AdobeSan Jose, CA, US
serp_jobs.job_card.full_time
Senior Manager Leading All Aspects Of Security Risk And Governance.As our Senior Manager leading all aspects of Security Risk and Governance, you will spearhead the advancement of our security risk...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
serp_jobs.job_card.promoted
Workday HCM & Security Lead
VirtualVocationsConcord, California, United States
serp_jobs.job_card.full_time
A company is looking for a Workday Core HCM & Security Configuration Lead.Key Responsibilities Collaborate with HR and IT teams to gather requirements and configure Workday Core HCM processes and...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
serp_jobs.job_card.promoted
Senior Security Controls Assessor
VirtualVocationsConcord, California, United States
serp_jobs.job_card.full_time
A company is looking for a Senior Security Controls Assessor to support a high-visibility federal program.Key Responsibilities Perform security and privacy control assessments for various systems...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
serp_jobs.job_card.promoted
Lead, Security GRC (Compliance)
Gemini Trust CompanySan Francisco, CA, United States
serp_jobs.job_card.full_time
Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and in...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
serp_jobs.job_card.promoted
serp_jobs.job_card.new
Security GRC Engineer
DocuSign, Inc.San Francisco, CA, United States
serp_jobs.job_card.full_time
Docusign brings agreements to life.Docusign solutions to accelerate the process of doing business and simplify people’s lives.
With intelligent agreement management, Docusign unleashes business-crit...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
serp_jobs.job_card.promoted
Senior Security Engineer
TrovSan Francisco, CA, United States
serp_jobs.job_card.full_time
At Pave, we're building the industry’s leading compensation platform, combining the world's largest real-time compensation dataset with deep expertise in AI and machine learning.Our platform is per...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
serp_jobs.job_card.promoted
Senior Security Architect
TradeJobsWorkForce94188 San Francisco, CA, US
serp_jobs.job_card.full_time
Senior Security Architect Job Duties : Enhances security team accomplishments and competence by planning deliver...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
serp_jobs.job_card.promoted
Product Security Account Lead - Senior Manager
AccentureSan Francisco, CA, United States
serp_jobs.job_card.full_time
We are a global collective of innovators applying the New every day to improve the way the world works and lives.Help us show the world what’s possible as you partner with clients to unlock hidden ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
serp_jobs.job_card.promoted
serp_jobs.job_card.new
Sr. Security GRC Product Manager
DocuSign, Inc.San Francisco, CA, United States
serp_jobs.job_card.full_time
Docusign brings agreements to life.Docusign solutions to accelerate the process of doing business and simplify people’s lives.
With intelligent agreement management, Docusign unleashes business-crit...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
serp_jobs.job_card.promoted
Senior Solution Architect - Security
CerebrasSanta Clara, CA, United States
serp_jobs.job_card.full_time
Cohesity is a leader in AI-powered data security and management.Aided by an extensive ecosystem of partners, Cohesity makes it easy to secure, protect, manage, and get value from data — across the ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
serp_jobs.job_card.promoted
Senior Security Strategist
VirtualVocationsConcord, California, United States
serp_jobs.job_card.full_time
A company is looking for a Senior Security Strategist.Key Responsibilities Lead controls-based gap assessments and risk workshops for various cybersecurity frameworks Present risks and mitigatio...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
serp_jobs.job_card.promoted
Security Contracts and Business Lead
NVIDIASanta Clara, CA, US
serp_jobs.job_card.full_time
Security Contracts & Business Lead.At NVIDIA, we're tapping into the unlimited potential of AI to define the next era of computing.
An era in which our GPU acts as the brains of computers, robots, a...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
serp_jobs.job_card.promoted
Security Compliance Lead
FalSan Francisco, CA, United States
serp_jobs.job_card.full_time
We're looking for a Security Compliance Lead to join our team and build scalable, efficient, and practical security and compliance foundations that align with our fast pace.In this role, you'll hav...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
serp_jobs.job_card.promoted
Senior Manager, Product Security
TiVo CorporationSan Jose, CA, United States
serp_jobs.job_card.full_time
Xperi invents, develops and delivers technologies that create extraordinary experiences at home and on the go for millions of people around the world.
Powering billions of consumer electronics, conn...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
serp_jobs.job_card.promoted
Security Compliance Lead
falSan Francisco, CA, United States
serp_jobs.job_card.full_time
Get AI-powered advice on this job and more exclusive features.Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.
We're looking for a Security Compl...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
serp_jobs.job_card.promoted
Senior GRC Analyst
VirtualVocationsSan Francisco, California, United States
serp_jobs.job_card.full_time
A company is looking for a Senior Governance, Risk and Compliance (GRC) Analyst - Platform Technology and Payments.Key Responsibilities Establish and manage a compliance program for the technolog...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
serp_jobs.job_card.promoted
Security Infrastructure Team Lead
VirtualVocationsHayward, California, United States
serp_jobs.job_card.full_time
A company is looking for a Security Infrastructure Support Team Lead to provide technical leadership and oversight for enterprise cybersecurity operations.
Key Responsibilities : Lead and mentor a ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
serp_jobs.job_card.promoted
Senior Security Engineer
Hayden AISan Francisco, CA, United States
serp_jobs.job_card.full_time
At Hayden AI, we are on a mission to harness the power of artificial intelligence and machine learning to transform the way governments and businesses address real-world challenges.From optimizing ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
serp_jobs.job_card.promoted
Senior Manager, Product Security
XperiSan Jose, CA, United States
serp_jobs.job_card.full_time
Xperi invents, develops and delivers technologies that create extraordinary experiences at home and on the go for millions of people around the world.
Powering billions of consumer electronics, conn...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
At Sift, we’re redefining how modern machines are built, tested, and operated.Our platform provides engineers with real-time observability over high-frequency telemetry, eliminating bottlenecks and...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30