Cloud Compliance & GRC Analyst (ISO/SOC)

Salesforce

San Francisco (CA)

On-site

USD 117,000 - 177,000

Full time

43 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Salesforce seeks a compliance professional to lead regulatory and security controls across cloud environments. You will partner with engineering and security to translate mandates into actionable controls, drive remediation, and communicate risk to leadership.

The role focuses on audits, evidence collection automation, and continuous improvement within the GCC team, with exposure to cloud security frameworks and large-scale audit execution.

Qualifications

  • 4+ years of experience in IT audit or internal controls.
  • Experience with ISO 27001, SOC 1/2, HIPAA, PCI, HITRUST, SOX, FedRAMP.
  • Strong analytical and problem-solving skills in a regulatory context.
  • Program and stakeholder management experience with cross-functional leadership.

Responsibilities

  • Serve as a cloud compliance subject matter expert, supporting audits and walkthroughs with external assessors.
  • Translate complex compliance frameworks into clear, actionable deliverables; report progress and residual risk to leadership.
  • Identify opportunities to automate evidence collection and document process playbooks for efficiency.
  • Collaborate with cross-functional partners to operationalize audit recommendations and improve compliance posture.
  • Automate evidence collection and compliance operations to drive efficiency.

Skills

IT audit
Internal controls
Cloud security
Regulatory compliance
Stakeholder management

Tools

Compliance tooling
Audit workflows

Job description

Salesforce seeks a compliance professional to lead regulatory and security controls across cloud environments. You will partner with engineering and security to translate mandates into actionable controls, drive remediation, and communicate risk to leadership.

The role focuses on audits, evidence collection automation, and continuous improvement within the GCC team, with exposure to cloud security frameworks and large-scale audit execution.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cloud GRC Analyst - Salesforce Compliance & Audits
Senior Cloud GRC Analyst - Salesforce Compliance & Audits

Jobtailor • California (MO)

On-site
USD 120,000 - 170,000
Senior Security GRC Analyst - Federal Cloud Compliance
Senior Security GRC Analyst - Federal Cloud Compliance

salesforce.com, inc. • McLean (VA)

On-site
USD 117,000 - 177,000
Senior Security GRC Analyst
Senior Security GRC Analyst

Jobtailor • California (MO)

On-site
USD 120,000 - 170,000
Senior Security GRC Analyst — Federal Compliance
Senior Security GRC Analyst — Federal Compliance

salesforce.com, inc. • Washington

On-site
USD 117,000 - 177,000
Senior Security GRC Analyst – Government Cloud
Senior Security GRC Analyst – Government Cloud

salesforce.com, inc. • Herndon (VA)

On-site
USD 117,000 - 177,000
Senior GRC Security Analyst – Federal Cloud & Compliance
Senior GRC Security Analyst – Federal Cloud & Compliance

Salesforce, Inc. • United States

On-site
USD 117,000 - 177,000
Senior GRC Engineer: Cloud Security & Compliance
Senior GRC Engineer: Cloud Security & Compliance

Cloud Software Group • San Ramon (CA)

On-site
USD 160,000 - 240,000
Healthcare benefits
401(k) match
Career development
GRC & Risk Analyst – SOC 2, ISO 27001, PCI
GRC & Risk Analyst – SOC 2, ISO 27001, PCI

CloudData • United States

On-site
USD 80,000 - 100,000
Senior GRC Engineer - Automate Compliance & Security
Senior GRC Engineer - Automate Compliance & Security

Cloud Software Group • San Ramon (CA)

On-site
USD 160,000 - 241,000
Salesforce Security & Compliance Director
Salesforce Security & Compliance Director

Salesforce • Chicago (IL)

On-site
USD 171,000 - 273,000