Federal Compliance & Security Architect

100 Salesforce, Inc.

Virginia, Washington (MN, District of Columbia)

Hybrid

USD 218,000 - 365,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Salesforce is seeking a Principal Federal Compliance & Security Architect to serve as the chief technical authority for our federal platform footprint. You will define the technical vision and bridge FedRAMP High and DoD IL5 requirements with robust cloud engineering to achieve and maintain federal authorizations.

Partner with Engineering and Product leadership to establish architectural standards, translate NIST SP 800-53 and FIPS requirements into scalable cloud architectures (AWS GovCloud or

Qualifications

  • 12+ years in security architecture or cloud engineering
  • 5+ years leading federal compliance initiatives (FedRAMP IL5/DoD IL5)
  • Experience with NIST SP 800-53, RMF, FIPS 140-2/140-3

Responsibilities

  • Define architectural standards and platform strategy for federal apps
  • Translate DoD/NIST requirements into scalable cloud architectures
  • Lead architecture reviews, governance, and risk mitigation for FedRAMP/DoD authorizations

Skills

Security architecture
Cloud engineering
Federal compliance leadership
Executive communication
DoDFedRAMP knowledge

Education

Certifications: CISSP/CCSP/CISM

Tools

AWS GovCloud
Azure Government

Job description

Job Category Software Engineering Job Details About Salesforce Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action. Tech meets trust. And innovation isn’t a buzzword — it’s a way of life. The world of work as we know it is changing and we're looking for Trailblazers who are passionate about bettering business and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all. Ready to level-up your career at the company leading workforce transformation in the agentic era? You’re in the right place! Agentforce is the future of AI, and you are the future of Salesforce.

The Experience: We are seeking a Principal Federal Compliance & Security Architect to serve as the chief technical authority for our federal platform footprint. In this role, you will define and inform technical vision and bridge high-level compliance directives with robust cloud engineering to achieve and maintain Federal Risk and Authorization Management Program (FedRAMP) Moderate, High, and Department of Defense (DoD) Impact Level 5 (IL5) authorizations. You will partner with the Engineering team to drive systemic engineering excellence, align cross-functional initiatives with long-range strategic goals, and act as a trusted advisor to executive leadership, key customers, and federal authorizing bodies. The incumbent will have deep experience in Federal security and compliance requirements and focus on identifying and risks and mitigation strategies to deploy secure and compliant products.

What You'll Actually Be Doing:
  • Architectural Leadership & Platform Strategy: Partner with Engineering and Product leadership to establish architectural standards, ensure technical quality, and design highly available, resilient federal platforms capable of achieving Federal Risk and Authorization Management Program (FedRAMP) High and Department of Defense (DoD) Impact Level 5 (IL5) authorizations. Evaluate technical feasibility for complex architecture initiatives, perform architectural governance reviews to ensure enterprise-wide alignment with a focus in proactive risk identification and mitigation strategy development and implementation. Establish strategic architectural principles and reusable design frameworks that empower engineering teams with compliant-by-default guidance rather than prescriptive constraints. Explore emerging technologies, cloud design patterns, and open-source innovations, quantifying trade-offs between delivery velocity, risk profile, and federal compliance mandates.
  • Federal Security & Compliance Engineering: Translate National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53 controls, Department of Defense (DoD) Cloud Computing Security Requirements Guide (SRG), and Federal Information Processing Standards (FIPS) requirements into scalable, high-performance cloud architectures across Amazon Web Services (AWS) GovCloud, Microsoft Azure Government, or dedicated enclaves. Drive end-to-end accountability for compliance and security architecture across the platform lifecycle, proactively closing structural gaps in technical and security requirements. Advance engineering excellence by defining standardized frameworks, refining Continuous Monitoring (ConMon) practices, and optimizing developer productivity. Author high-impact architecture specifications, System Security Plans (SSPs), and portfolio strategy documents tailored for executive, technical, and regulatory audiences.
  • Operational Excellence & Delivery: Conduct rigorous architecture and code reviews, drive Root‑Cause Analyses (RCAs) to permanent resolution, and ensure alignment across technical deliverables and organizational goals. Partner with Product Management on Long‑Range Planning (LRP), leveraging data‑driven insights to align release trajectories with strategic federal platform vision. Monitor execution risk, optimize continuous delivery feedback loops, resolve operational friction, and balance strategic business mandates with technical trade‑offs. Evangelize incremental delivery models and maintain refined engineering backlogs that balance continuous compliance posture with rapid technical innovation. Analyze service health metrics, advocate for true service ownership across engineering teams, and systematically identify and remediate long‑term technical debt.
  • Stakeholder Engagement & Leadership: Engage directly with key senior leaders, internal and external customers to align custom requirements, platform strategy with market trends, and champion customer needs and learnings internally. Advise executive leadership on strategic architectural choices while serving as the primary technical liaison to Third‑Party Assessment Organizations (3PAOs), sponsoring agencies, and Authorizing Officials (AOs). Oversee cross‑product technical alignment, guide platform consumption models, and ensure seamless, secure transitions into production federal environments. Articulate complex security and architectural concepts to executive and customer leadership through tailored messaging, active listening, and concise presentation. Coach and mentor architects and engineering leaders in soft skills, business acumen, and systemic problem‑solving to build organizational capability.
You're Our Person If:
  • 12+ years of experience in security architecture, cloud engineering, or systems design, with 5+ years leading major federal compliance initiatives (FedRAMP Moderate/High, DoD Impact Level 5).
  • Proven track record operating as a Principal Architect, driving cross‑organizational alignment, technical strategy, and multi‑year roadmaps across engineering organizations.
  • Deep technical mastery of National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53, NIST SP 800-37 Risk Management Framework (RMF), Federal Information Processing Standards (FIPS) 140-2/140-3, and Department of Defense (DoD) Cloud Computing Security Requirements Guide (SRG) requirements.
  • Hands‑on experience designing and securing cloud architectures within Amazon Web Services (AWS) GovCloud, Microsoft Azure Government, or equivalent federal environments.
  • Direct experience acting as a technical lead through Third‑Party Assessment Organization (3PAO) assessments, agency sponsorship, and Federal Risk and Authorization Management Program Program Management Office (FedRAMP PMO) / Department of Defense Authorizing Official (DoD AO) authorization cycles.
  • Exceptional written and verbal communication skills, with demonstrated ability to present complex technical topics to C‑level executives and federal officials.
  • Relevant certifications preferred (e.g., Certified Information Systems Security Professional [CISSP], Certified Cloud Security Professional [CCSP], Certified Information Security Manager [CISM]).
Even Better If:
  • Active or eligible‑for United States federal security clearance (Secret or Top Secret) preferred.
LI-Y* Unleash Your Potential

When you join Salesforce, you’ll be limitless in all areas of your life. Our benefits and resources support you to find balance and be your best, and our AI agents accelerate your impact so you can do your best. Together, we’ll bring the power of Agentforce to organizations of all sizes and deliver amazing experiences that customers love.

Please note that Salesforce uses artificial intelligence (AI) tools to help our recruiters assess and evaluate candidates’ resumes and qualifications throughout the recruiting process. Humans will always make any candidate selection and hiring decisions. Please see our Candidate Privacy Statement for more information about how we use your personal data and your rights, including with regard to use of AI tools and opt out options.

Posting Statement Salesforce is an equal opportunity employer and maintains a policy of non‑discrimination with all employees and applicants for employment. What does that mean exactly? It means that at Salesforce, we believe in equality for all. And we believe we can lead the path to equality in part by creating a workplace that’s inclusive, and free from discrimination. Know your rights: workplace discrimination is illegal. Any employee or potential employee will be assessed on the basis of merit, competence and qualifications – without regard to race, religion, color, national origin, sex, sexual orientation, gender expression or identity, transgender status, age, disability, veteran or marital status, political viewpoint, or other classifications protected by law. This policy applies to current and prospective employees, no matter where they are in their Salesforce employment journey. It also applies to recruiting, hiring, job assignment, compensation, promotion, benefits, training, assessment of job performance, discipline, termination, and everything in between. Recruiting, hiring, and promotion decisions at Salesforce are fair and based on merit. The same goes for compensation, benefits, promotions, transfers, reduction in workforce, recall, training, and education. In the United States, compensation offered will be determined by factors such as location, job level, job‑related knowledge, skills, and experience. Certain roles may be eligible for incentive compensation, equity, and benefits. Salesforce offers a variety of benefits to help you live well including: time off programs, medical, dental, vision, mental health support, paid parental leave, life and disability insurance, 401(k), and an employee stock purchasing program. More details about company benefits can be found at the following link: https://www.salesforcebenefits.com. At Salesforce, we believe in equitable compensation practices that reflect the dynamic nature of labor markets across various regions.

The typical base salary range for this position is $218,400 - $365,200 annually.

In select cities within the San Francisco and New York City metropolitan area, the base salary range for this role is $263,200 - $401,400 annually.

If you believe in business as the greatest platform for change and in companies doing well and doing good – you've come to the right place.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Federal Compliance & Security Architect
Federal Compliance & Security Architect

Salesforce, Inc. • Northern (KY)

Hybrid
USD 218,000 - 365,000
Federal Compliance & Security Architect
Federal Compliance & Security Architect

Relha LLC • Washington, Northern (KY)

Hybrid
USD 218,000 - 365,000
Security GRC Senior Analyst
Security GRC Senior Analyst

Salesforce, Inc. • United States

On-site
USD 117,000 - 177,000
Enterprise Endpoint Security Architect
Enterprise Endpoint Security Architect

Salesforce • New York (NY)

On-site
USD 218,000 - 365,000
Security GRC Senior Analyst
Security GRC Senior Analyst

Relha LLC • Herndon (VA)

Hybrid
USD 149,000 - 224,000
Enterprise Endpoint Security Architect
Enterprise Endpoint Security Architect

Salesforce, Inc. • New York (NY), Northern (KY)

Hybrid
USD 263,000 - 401,000
Enterprise Endpoint Security Architect
Enterprise Endpoint Security Architect

salesforce.com, inc. • New York (NY)

On-site
USD 218,000 - 401,000
Enterprise Endpoint Security Architect
Enterprise Endpoint Security Architect

salesforce.com, inc. • Bellevue (WA)

On-site
USD 218,000 - 401,000
Enterprise Endpoint Security Architect
Enterprise Endpoint Security Architect

salesforce.com, inc. • San Francisco (CA)

On-site
USD 218,000 - 401,000
Senior Engineering Manager - Salesforce Management Plane
Senior Engineering Manager - Salesforce Management Plane

Salesforce • Bellevue (WA)

On-site
USD 173,000 - 260,000
Benefits package
Employee stock purchasing program