Director, BISO - Enterprise Security

Salesforce•Bellevue, NY
•Hybrid

About The Position

Salesforce's Enterprise Security organization is looking for a Director, Enterprise Security, Business Information Security Officer (BISO), also known as a Security Partner. In this role, you're accountable for the security posture of major Enterprise Business Units (BUs). You're the primary point of contact between your BU customers and the broader Security organization, personally accountable for making your customer measurably more secure over time. This is a senior technical leadership position, not a relationship-management or governance-only seat. You read the designs, understand the systems, and take positions on architecture, controls, and trade-offs, holding well-reasoned technical points of view in rooms full of engineers, architects, product leaders, and executives. You own the final calls on risk prioritization and remediation sequencing for your portfolio, and you lead a small team of Security Partner professionals. Success in this role requires deep technical fluency across cloud, identity, application, and artificial intelligence/machine learning (AI/ML) security, sound business judgment when prioritizing risk, and the ability to influence senior stakeholders across engineering, product, legal, privacy, compliance, and finance.

Requirements

  • 12+ years of experience in cybersecurity, IT risk, or a related discipline, including significant time in a large, complex enterprise, with prior experience as a BISO, Security Partner, or equivalent senior security leadership role.
  • Deep technical fluency across cloud, identity, application, and AI/ML security, with the ability to hold a substantive technical point of view in design reviews and threat models.
  • A track record of prioritizing and communicating risk with executive-grade written and verbal communication, including experience representing security to CISO, CIO, GM, and Board-level audiences.
  • Experience managing and developing security professionals, and operating effectively under ambiguity in a fast-moving, cross-functional environment.

Nice To Haves

  • CISSP, CISA, CISM, or equivalent certification.
  • Experience in regulated industries or product lines, such as financial services, public sector, or healthcare.
  • Prior experience integrating acquired entities or divestitures into enterprise security programs.
  • Working knowledge of regulatory frameworks such as FedRAMP, SOX, or regional data-protection regimes, and control frameworks such as NIST CSF or NIST SP 800-53.

Responsibilities

  • Own the end-to-end security relationship for your assigned Business Unit (BU), serving as the primary point of contact and credible voice between BU leadership and Enterprise Security.
  • Own the risk register for your portfolio — setting severity, prioritization, and remediation sequencing, and building resourced plans with named owners and dates.
  • Lead security engagement on design reviews, threat models, and architecture decisions, shaping secure-by-design patterns early in the development lifecycle.
  • Lead the customer's side of active security incidents, coordinating with the Cybersecurity Operations Center (CSOC) and executive stakeholders, while managing and developing a team of Security Partner professionals.

Benefits

  • time off programs
  • medical
  • dental
  • vision
  • mental health support
  • paid parental leave
  • life and disability insurance
  • 401(k)
  • employee stock purchasing program
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service