Software Engineer (MTS), Frontier Strike (EntSecTech)

100 Salesforce, Inc.

Bellevue (WA)

On-site

USD 117,000 - 177,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Time off programs
Medical
Dental
Vision
Mental health support
Paid parental leave
Life and disability insurance
401(k)
Employee stock purchasing program

Job summary

Salesforce is seeking a software engineer to design and operate Go-based microservices that orchestrate large-scale test suites. You’ll build policy gateways, secret isolation, and cost-aware test executions on Kubernetes and AWS, with AI-first tooling guiding development.

Collaboration across security, platform, and AI teams is essential, delivering secure, production-grade code. You will participate in RBAC, geofencing, and auditing practices, ensuring reliability and performance in a large

Qualifications

  • 2-4 years of professional software development experience.
  • Proficiency in Go; Python or Java also acceptable.
  • Experience with distributed systems, microservices, and REST/gRPC APIs.
  • Familiar with Kubernetes, Docker, Helm, and Terraform in AWS.
  • Understand OWASP Top 10, least privilege, and secrets management.
  • Strong problem-solving and debugging in distributed, containerized systems.
  • AI-first approach, using AI tools in development workflows.

Responsibilities

  • Design and extend Go microservices that orchestrate multi-container test suites for repeatable, automated testing.
  • Build policy-based sidecar gateways to mediate test access with least privilege and blast-radius controls.
  • Implement pipeline stages that dedupe, suppress noise, and auto-escalate critical findings to findings store.
  • Design per-test-suite secrets isolation with automated credential rotation.
  • Deploy and operate containerized workloads on Kubernetes via Helm and Terraform on AWS at scale.
  • Integrate with internal LLM gateway services to track token usage and cost per scan; build throttling.
  • Implement RBAC, network sandboxing, and geofencing to extend tests safely to production.
  • Monitor distributed components and ensure data integrity; preempt misconfigurations.
  • Develop production-grade software with AI as a core development tool.

Skills

Go
Python
Java
Distributed systems
Microservices
REST APIs
gRPC APIs
Kubernetes
Docker
Helm
Terraform
AWS
AI-first approach
AI tools: Claude Code
AI tools: GitHub Copilot
AI tools: Codex
AI tools: Cursor
Prompt engineering

Education

Bachelor‘s degree in Computer Science, Software Engineering, or related field
Equivalent experience

Tools

Kubernetes
Docker
Helm
Terraform
AWS
HashiCorp Vault
Open Policy Agent (OPA)
mTLS

Job description

To get the best candidate experience, please consider applying for a maximum of 3 roles within 12 months to ensure you are not duplicating efforts. Job Category Software Engineering Job Details About Salesforce.

Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action. Tech meets trust. And innovation isn’t a buzzword — it’s a way of life. The world of work as we know it is changing and we are looking for Trailblazers who are passionate about bettering business and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all.

Ready to level-up your career at the company leading workforce transformation in the agentic era? You are in the right place! Agentforce is the future of AI, and you are the future of Salesforce.

The Experience Frontier Strike, part of Enterprise Security Technology (EntSecTech), builds and operates the Harness Orchestrator, an autonomous AI red‑teaming platform that continuously tests our own identity and AI‑integrated systems the way a real attacker would.

This role builds the orchestration engine, policy gateways, and secrets‑isolation systems that let the team safely point automated adversarial testing at production. AI serves as a core part of the development workflow here, pairing hands‑on distributed‑systems engineering with modern AI‑assisted tooling to ship secure, production‑grade code faster.

What You’ll Actually Be Doing
  • Design and extend Go microservices that orchestrate multi‑container test suites (primary and utility containers, shared episodic volumes, lifecycle synchronization) so new attack and test techniques can be onboarded as repeatable, automated suites.
  • Build policy‑based sidecar gateways that mediate every test suite’s access to its target system, whether mocked, staging, or production, enforcing least‑privilege and blast‑radius limits as tests move up the risk tiers.
  • Implement pipeline stages that dedupe, suppress noise, and auto‑escalate critical findings (injection, server‑side request forgery (SSRF), privilege escalation, data exfiltration) so only real signal reaches the persistent findings store.
  • Design per‑test‑suite secrets isolation (dedicated vault, pod, and service account per suite) with automated credential rotation, so a compromised or misbehaving test suite can’t reach another suite's credentials.
  • Deploy and operate containerized workloads on Kubernetes via Helm and Terraform on Amazon Web Services (AWS), at a scale where individual test runs can cost significantly more or less depending on suite complexity.
  • Integrate with internal large language model (LLM) gateway services to track token usage and cost per scan, and build throttling and authorization controls for expensive test executions.
  • Implement role‑based access control (RBAC), network sandboxing, and geofencing so automated red‑teaming can be safely extended from test environments to production.
  • Monitor and troubleshoot the platform’s distributed components, ensuring findings‑pipeline data integrity and proactively catching misconfigurations before they become production incidents.
  • Build and ship high‑quality, production‑grade software using modern engineering practices, with AI as a core part of your development workflow, pushing the boundaries of AI development tools to deliver secure, optimized, and high‑quality code.
  • Design and orchestrate complex systems where AI agents integrate seamlessly into human workflows, driving efficiency and innovation at scale.
  • Contribute to building and maintaining shared system context, an explicit repository of system designs, constraints, and standards that enables AI to operate accurately and reliably.
  • Critically evaluate code, whether human‑or or AI‑generated, for correctness, quality, security, and performance.
You're Our Person If...
  • 2 - 4 years of professional software development experience.
  • Demonstrates proficiency in Go; experience with Python or Java is also acceptable.
  • Has experience with distributed systems, microservices, and Representational State Transfer (REST) or gRPC application programming interfaces (APIs).
  • Is familiar with Kubernetes, Docker, Helm, and Terraform in a cloud environment, AWS preferred.
  • Understands software security fundamentals: the OWASP Top 10, least privilege, and secrets management.
  • Shows strong problem‑solving and debugging skills in distributed, containerized systems.
  • Works comfortably in a large‑scale enterprise environment with production‑safety constraints.
  • Takes a demonstrated, genuine AI‑first approach to engineering, using AI to move faster, build fluency across the stack, and contribute well beyond a core specialty.
  • Has experience using AI tools (e.g., Claude Code, GitHub Copilot, Codex, Cursor) in development workflows.
  • Applies advanced prompt engineering skills, writing precise, structured prompts and cultivating the system context that makes AI outputs reliable, secure, and production‑ready.
  • A Bachelor's degree in Computer Science, Software Engineering, or a related field, or equivalent experience.
Even Better If...
  • Experience with policy engines (e.g., Open Policy Agent (OPA)) or other fine‑grained authorization frameworks.
  • Exposure to AI/LLM security, adversarial testing, or red‑teaming.
  • Experience with secrets vault technologies (HashiCorp Vault, cloud key management services (KMS), etc.).
  • Familiarity with sidecar proxy/gateway patterns and mutual Transport Layer Security (mTLS).
  • Experience with identity and access management (IAM), cybersecurity, or compliance frameworks (NIST, ISO, SOC 2).
Unleash Your Potential

When you join Salesforce, you’ll be limitless in all areas of your life. Our benefits and resources support you to find balance and be your best, and our AI agents accelerate your impact so you can do your best. Together, we’ll bring the power of Agentforce to organizations of all sizes and deliver amazing experiences that customers love.

The typical base salary range for this position is $117,200 - $176,700 annually. The range represents base salary only, and does not include company bonus, incentive for sales roles, equity or benefits, as applicable.

  • time off programs
  • medical
  • dental
  • vision
  • mental health support
  • paid parental leave
  • life and disability insurance
  • 401(k)
  • employee stock purchasing program
Posting Statement

Salesforce is an equal opportunity employer and maintains a policy of non‑discrimination with all employees and applicants for employment. What does that mean exactly? It means that at Salesforce, we believe in equality for all. And we believe we can lead the path to equality in part by creating a workplace that’s inclusive, and free from discrimination. Know your rights: workplace discrimination is illegal. Any employee or potential employee will be assessed on the basis of merit, competence and qualifications – without regard to race, religion, color, national origin, sex, sexual orientation, gender expression or identity, transgender status, age, disability, veteran or marital status, political viewpoint, or other classifications protected by law. This policy applies to current and prospective employees, no matter where they are in their Salesforce employment journey. It also applies to recruiting, hiring, job assignment, compensation, promotion, benefits, training, assessment of job performance, discipline, termination, and everything in between. Recruiting, hiring, and promotion decisions at Salesforce are fair and based on merit. The same goes for compensation, benefits, promotions, transfers, reduction in workforce, recall, training, and education. In the United States, compensation offered will be determined by factors such as location, job level, job‑related knowledge, skills, and experience. Certain roles may be eligible for incentive compensation, equity, and benefits. Salesforce offers a variety of benefits to help you live well including:

  • time off programs
  • medical
  • dental
  • vision
  • mental health support
  • paid parental leave
  • life and disability insurance
  • 401(k)
  • employee stock purchasing program

More details about company benefits can be found at the following link: https://www.salesforcebenefits.com.

Accommodations

If you need a reasonable accommodation during the application or the recruiting process, please submit a request via this Accommodations Request Form. Please note that Salesforce uses artificial intelligence (AI) tools to help our recruiters assess and evaluate candidates’ resumes and qualifications throughout the recruiting process. Humans will always make any candidate selection and hiring decisions. Please see our Candidate Privacy Statement for more information about how we use your personal data and your rights, including with regard to use of AI tools and opt out options.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Software Engineer (MTS), Frontier Strike (EntSecTech)
Software Engineer (MTS), Frontier Strike (EntSecTech)

salesforce.com, inc. • Bellevue (WA)

On-site
USD 117,000 - 177,000
Time off programs
Medical
Dental
+6
Member of Technical Staff (MTS), Software Engineer, Identity & Access Management
Member of Technical Staff (MTS), Software Engineer, Identity & Access Management

Salesforce • Bellevue (WA)

On-site
USD 117,000 - 177,000
Software Engineering, MTS, Security and Network Defense
Software Engineering, MTS, Security and Network Defense

salesforce.com, inc. • Bellevue (WA)

On-site
USD 117,000 - 177,000
Member of Technical Staff (MTS), Software Engineer, Identity & Access Management
Member of Technical Staff (MTS), Software Engineer, Identity & Access Management

Salesforce • Bellevue (KY)

On-site
USD 117,000 - 177,000
Software Engineering, MTS, Security and Network Defense
Software Engineering, MTS, Security and Network Defense

Salesforce • Bellevue (KY)

On-site
USD 117,000 - 177,000
Software Engineer (MTS), Frontier Strike (EntSecTech)
Software Engineer (MTS), Frontier Strike (EntSecTech)

Salesforce • Bellevue (KY)

On-site
USD 117,000 - 177,000
Member of Technical Staff (MTS), Software Engineer, Identity & Access Management
Member of Technical Staff (MTS), Software Engineer, Identity & Access Management

salesforce.com, inc. • Bellevue (WA)

On-site
USD 117,000 - 177,000
Member of Technical Staff (MTS), Software Engineer, Identity & Access Management
Member of Technical Staff (MTS), Software Engineer, Identity & Access Management

100 Salesforce, Inc. • Bellevue (WA)

On-site
USD 117,000 - 177,000
Time off programs
Medical
Dental
+6
Software Engineering SMTS
Software Engineering SMTS

salesforce.com, inc. • New York (NY)

On-site
USD 149,000 - 246,000
Software Engineering SMTS
Software Engineering SMTS

Salesforce • New York (NY)

On-site
USD 149,000 - 246,000