Software Security Engineer (Distributed Systems)

PVH (Tommy Hilfiger/Calvin Klein)

San Francisco (CA)

On-site

USD 140,000 - 210,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Salesforce is seeking a proactive Software Security Engineer to strengthen its security posture across distributed micro-services on Google Cloud Platform. You will build automated tooling, drive threat modeling, and own vulnerability lifecycle across network, cloud, and application layers.

You will partner with DevOps, Product, and security teams to ensure secure SDLC adoption, lead audits, and implement scalable security solutions in a modern CI/CD environment.

Qualifications

  • 2+ years in security engineering for MTS, 5+ years for SMTS.
  • Strong experience in Go, Java, or Python with OO design and automation.
  • Deep experience with GCP and Terraform for cloud security posture (CSPM) and infrastructure.
  • Practical experience with Linux OS hardening and modern attack vectors.
  • Desire to work cross-functionally with DevOps to embed security into the SDLC.

Responsibilities

  • Build and integrate high-performance security tools into CI/CD pipelines (SAST/DAST, SCA, SIEM).
  • Develop and secure Terraform/IaC templates to harden cloud infrastructure before production.
  • Lead the end-to-end vulnerability lifecycle with a risk-based remediation approach.
  • Partner with DevOps and Product teams for threat modeling and architectural reviews.
  • Lead audits (SOC2, ISO 27001) with automation for evidence and timely risk closure.
  • Troubleshooting security issues in production using distributed tracing and modern monitoring tools.

Skills

Engineering mindset
Security engineering
Go, Java, Python
GCP
Docker
Kubernetes
DevOps collaboration

Tools

Terraform
SAST/DAST
SCA
SIEM
OCI/CSPM

Job description

To get the best candidate experience, please consider applying for a maximum of 3 roles within 12 months to ensure you are not duplicating efforts.

Job Category

Software Engineering

Job Details

About Salesforce

Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action. Tech meets trust. And innovation isn't a buzzword - it's a way of life. The world of work as we know it is changing and we're looking for Trailblazers who are passionate about bettering business and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all.

Ready to level-up your career at the company leading workforce transformation in the agentic era? You're in the right place! Agentforce is the future of AI, and you are the future of Salesforce.

Overview

Salesforce and Google Cloud have embarked on a groundbreaking partnership worth $2.5 billion to revolutionize customer relationship management (CRM) through advanced artificial intelligence (AI). By integrating Google's Gemini AI models into Salesforce's Agentforce platform, we're enabling businesses to harness multi-modal AI capabilities-processing images, audio, and video-to deliver unparalleled customer experiences. Join our team of talented engineers and help us advance the integration of Salesforce applications on Google Cloud Platform (GCP). You will have the unique opportunity to work at the forefront of IDP, AI and cloud computing and contribute to enabling a full suite of Salesforce applications on Google Cloud. You will get an opportunity to build a platform on GCP to enable agentic solutions on Salesforce.

We are seeking a proactive and skilled Software Security Engineer to join our GCP team. The ideal candidate will be responsible for enhancing our security posture across various domains, focusing on development, vulnerability management, infrastructure security, and the security of distributed and scalable distributed systems. This role requires hands‑on experience with security systems, a deep understanding of modern threats, and the ability to drive security improvements through engineering solutions.

As a Software Security Engineer, you won't just find vulnerabilities, you'll engineer the systems that prevent them. You will play a pivotal role in securing our distributed micro‑services architecture on GCP, moving security by building automated, high-performance tools that empower our entire engineering organization.

Your Impact
  • Build and integrate high-performance security tools and custom scripts into our CI/CD pipelines (SAST/DAST, SCA, SIEM) to automate manual toil.
  • Develop and secure Terraform/IaC templates to ensure our cloud infrastructure is hardened by design before it ever reaches production.
  • Lead the end-to-end vulnerability lifecycle, using a risk-based approach to prioritize remediation across network, cloud, and application layers.
  • Partner with DevOps and Product teams to conduct threat modeling and architectural reviews, ensuring new features are resilient and scalable.
  • Act as the technical lead for audits (SOC2, ISO 27001), leveraging automation to provide evidence of consistent monitoring and timely closure of risks.
  • Troubleshooting and resolving complex security issues in production using distributed tracing and modern monitoring tools.
Required Skills
  • Engineering Mindset: 2+ years of experience for MTS, 5+ years for SMTS, in Security Engineering with a focus on building tools, not just managing them.
  • Strong experience in Go, Java, or Python with a solid grasp of Object-Oriented Programming and automation.
  • Deep experience with GCP (similar) and Terraform for managing cloud security posture (CSPM) and infrastructure.
  • Practical experience with network protocols, OS hardening (Linux), and modern attack vectors.
  • A desire to work cross-functionally with DevOps to embed security into the SDLC.
Desired Qualifications
  • Experience in secure software development lifecycle (SDLC) practices.
  • Familiarity with container security technologies (e.g., Docker, Kubernetes).
  • Experience with developing or contributing to open source tools.
Accommodations

If you need a reasonable accommodation during the application

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Software Security Engineer (Distributed Systems)
Software Security Engineer (Distributed Systems)

salesforce.com, inc. • San Francisco (CA)

On-site
USD 117,000 - 224,000
Medical insurance
Dental insurance
Employee stock purchase plan
Software Security Engineer — Cloud & IaC Automation
Software Security Engineer — Cloud & IaC Automation

salesforce.com, inc. • San Francisco (CA)

On-site
USD 117,000 - 224,000
Medical insurance
Dental insurance
Employee stock purchase plan
Software Engineering MTS
Software Engineering MTS

Relha LLC • Bellevue (WA)

On-site
USD 117,000 - 177,000
Security Engineer, Distributed Systems
Security Engineer, Distributed Systems

Salesforce, Inc. • San Francisco (CA)

Hybrid
USD 117,000 - 224,000
Software Security Engineer (Distributed Systems)
Software Security Engineer (Distributed Systems)

Salesforce, Inc. • San Francisco (CA)

Hybrid
USD 117,000 - 224,000
Software Engineering SMTS
Software Engineering SMTS

salesforce.com, inc. • Bellevue (WA)

On-site
USD 148,000 - 224,000
Medical, dental, vision insurance
Paid parental leave
401(k) plan
+1
Cloud Security Engineer – Distributed Systems
Cloud Security Engineer – Distributed Systems

PVH (Tommy Hilfiger/Calvin Klein) • San Francisco (CA)

On-site
USD 140,000 - 210,000
Industry Advisor
Industry Advisor

Salesforce • New York (NY)

On-site
USD 180,000 - 220,000
Systems Engineer SMTS/LMTS
Systems Engineer SMTS/LMTS

salesforce.com, inc. • New York (NY)

On-site
USD 148,000 - 224,000
Time off programs
Medical, dental, and vision insurance
Mental health support
+3
Sr. Security Software Engineer, Vulnerability Management - Slack
Sr. Security Software Engineer, Vulnerability Management - Slack

salesforce.com, inc. • San Francisco (CA)

On-site
USD 172,000 - 286,000