Senior GRC Policy Operations Lead

salesforce.com, inc.

Herndon (VA)

On-site

USD 117,000 - 177,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Time off programs
Medical
Dental
Vision
Mental health support
Paid parental leave
Life and disability insurance
401(k)
Employee stock purchasing program

Job summary

Salesforce is seeking an Analyst to drive day-to-day operations of the Security Standards and Policy program. You will triage intake, draft standards with SMEs, and manage end-to-end review, publication, and retirement of documents.

You will maintain a traceable standards register, build dashboards, and coordinate stakeholder communications, ensuring alignment with external obligations like SOC 2 and ISO 27001.

Qualifications

  • 3+ years in security governance, GRC, technical writing, or program management.
  • US Citizenship or Permanent Residency required; visa sponsorship not available.
  • Direct security-domain experience with controls, risk, and challenges to draft.
  • Proven ability to write clear standards/policies for non-security readers.
  • Working knowledge of major security/privacy frameworks (e.g., SOC 2, ISO 27001, NIST CSF, FedRAMP, PCI, HIPAA, EU AI Act).
  • Comfort running cross-functional review cycles with senior stakeholders.
  • Experience with Git; familiarity with OSCAL and Markdown.
  • Experience with a GRC platform (Salesforce eGRC, ServiceNow GRC, Archer, OneTrust, LogicGate).

Responsibilities

  • Triage intake for new or updated standards and assign owners with timelines.
  • Draft and finalize standards with SMEs in plain language and clear technical requirements.
  • Own the end-to-end review cycle—CAB reviews, read-aheads, decisions, and action tracking.
  • Publish approved standards to the eGRC platform and retire outdated documents.
  • Maintain the standards register with owner, review date, and ownership map; flag drift.
  • Build dashboards to monitor standards health (coverage, freshness, adoption).
  • Support onboarding of new standards driven by high-priority initiatives.
  • Coordinate stakeholder communications (changelogs, engineering briefings, Slack updates).
  • Collaborate with the Exception Management team to define exception paths and evidence expectations.
  • Improve operating model with templates, workflows, and AI-assisted drafting guidance.

Skills

Security governance
GRC
Technical writing
Program management
Compliance operations
Security-domain experience
Cross-functional collaboration
Git
OSCAL
Markdown

Tools

Salesforce eGRC
ServiceNow GRC
Archer
OneTrust
LogicGate
Git
OSCAL
Markdown

Job description

Salesforce is seeking an Analyst to drive day-to-day operations of the Security Standards and Policy program. You will triage intake, draft standards with SMEs, and manage end-to-end review, publication, and retirement of documents.

You will maintain a traceable standards register, build dashboards, and coordinate stakeholder communications, ensuring alignment with external obligations like SOC 2 and ISO 27001.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior GRC & Policy Operations Lead
Senior GRC & Policy Operations Lead

Salesforce • San Francisco (CA)

On-site
USD 117,000 - 177,000
Senior GRC Policy Operations Lead
Senior GRC Policy Operations Lead

salesforce.com, inc. • Seattle (WA)

On-site
USD 117,000 - 177,000
Medical
Dental
Vision
+5
Senior GRC Policy Operations Analyst
Senior GRC Policy Operations Analyst

100 Salesforce, Inc. • Washington

On-site
USD 117,000 - 177,000
Senior GRC Policy Operations Lead
Senior GRC Policy Operations Lead

Salesforce, Inc. • Virginia (MN), Northern (KY)

Hybrid
USD 117,000 - 177,000
Accommodations available
Senior Policy & GRC Operations Analyst
Senior Policy & GRC Operations Analyst

salesforce.com, inc. • San Francisco (CA)

On-site
USD 117,000 - 177,000
Senior GRC Analyst — Common Controls & AI Governance
Senior GRC Analyst — Common Controls & AI Governance

Salesforce • San Francisco (CA)

On-site
USD 117,000 - 177,000
Senior GRC Analyst for Common Controls Framework
Senior GRC Analyst for Common Controls Framework

salesforce.com, inc. • San Francisco (CA)

On-site
USD 117,000 - 177,000
Senior Security GRC Analyst — Federal Compliance
Senior Security GRC Analyst — Federal Compliance

salesforce.com, inc. • Washington

On-site
USD 117,000 - 177,000
Senior GRC & Security Compliance Lead (Remote)
Senior GRC & Security Compliance Lead (Remote)

Shift Technology • Boston (MA)

Hybrid
USD 120,000 - 150,000
Flexible remote and hybrid options
Generous PTO and paid holidays
Mental health benefits
+2
Senior GRC Analyst, Common Controls — Hybrid
Senior GRC Analyst, Common Controls — Hybrid

Salesforce, Inc. • Virginia (MN), Northern (KY)

Hybrid
USD 117,000 - 177,000