Security Engineering Manager, GRC

SalesforceSan Francisco, CA
2d

About The Position

About Salesforce Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action. Tech meets trust. And innovation isn’t a buzzword — it’s a way of life. The world of work as we know it is changing and we're looking for Trailblazers who are passionate about bettering business and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all. Ready to level-up your career at the company leading workforce transformation in the agentic era? You’re in the right place! Agentforce is the future of AI, and you are the future of Salesforce. About Our Team The Global Compliance and Certification (GCC) team is responsible for enterprise wide compliance processes, ensuring Salesforce leadership has the information needed to make strategic risk-based decisions. You will be part of the GCC org, a division within the Product Security Organization and you will play a pivotal role in driving internal controls testing to deliver successful cloud security compliance outcomes that support Salesforce’s products. What you will be doing: Develop and execute audit strategies to ensure compliance with global standards and regulatory requirements. Lead and execute the internal controls testing program focused on Salesforce environments, ensuring alignment with SOX, ISO 27001, SOC 1/2, and other regulatory frameworks. Partner directly with Salesforce compliance engineering and platform teams to understand technical processes and design effective control testing strategies across multiple domains. Collaborate with cross-functional partners to operationalize audit recommendations and enhance compliance posture. Develop and maintain robust playbooks and control documentation for critical Salesforce processes that serve as the foundation for assessments and audits. Identify opportunities to streamline and automate testing procedures, driving operational efficiency and continuous improvement. Provide timely and actionable reporting to leadership, highlighting testing results, emerging risks, control gaps, and trends across the Salesforce ecosystem.

Requirements

  • 6+ years of experience in IT audit or internal controls, managing global compliance assessments in a complex environment with a strong focus on cloud/SaaS platforms.
  • Prior experience in a compliance and regulatory environment related to security and privacy including security compliance standards across industries and geographies such as ISO 27001, SOC, HIPAA, PCI, HITRUST, SOX and FedRAMP, etc.
  • Strong program and stakeholder management experience, including cross-functional leadership in a highly collaborative environment.
  • Experience with compliance tooling, control testing automation, or audit workflow platforms and processes
  • Technical knowledge and understanding of different hyperscaler environments such as AWS.
  • Strong Analytical and problem solving skills with the ability to assess risks and recommend solutions.
  • Detail oriented with strong organizational and documentation skills.
  • Ability to solve unique, complex and often ambiguous problems with broad impact on the business
  • Conceptual and innovative thinking to develop and implement solutions
  • Ability to work independently and collaboratively in a fast paced regulatory environment.
  • Identify risk in processes and environments, and strategies to mitigate the risk.

Nice To Haves

  • Certifications (CRISC, CISSP, CCIE, CISM, CISA, CCSK) are a plus

Responsibilities

  • Develop and execute audit strategies to ensure compliance with global standards and regulatory requirements.
  • Lead and execute the internal controls testing program focused on Salesforce environments, ensuring alignment with SOX, ISO 27001, SOC 1/2, and other regulatory frameworks.
  • Partner directly with Salesforce compliance engineering and platform teams to understand technical processes and design effective control testing strategies across multiple domains.
  • Collaborate with cross-functional partners to operationalize audit recommendations and enhance compliance posture.
  • Develop and maintain robust playbooks and control documentation for critical Salesforce processes that serve as the foundation for assessments and audits.
  • Identify opportunities to streamline and automate testing procedures, driving operational efficiency and continuous improvement.
  • Provide timely and actionable reporting to leadership, highlighting testing results, emerging risks, control gaps, and trends across the Salesforce ecosystem.

Benefits

  • time off programs
  • medical
  • dental
  • vision
  • mental health support
  • paid parental leave
  • life and disability insurance
  • 401(k)
  • an employee stock purchasing program

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Manager

Education Level

No Education Listed

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service