About The Position

The Salesforce Enterprise Security Engineering team designs and operates highly scalable, fault-tolerant distributed systems that deliver cloud-scale security software across multiple public cloud platforms and Salesforce's internal infrastructure. We provide the core building blocks that protect customer trust in Salesforce's products and services. As a software engineer on our Identity and Access Management (IAM) platform team, you work at the intersection of distributed systems and enterprise security — building the foundational services that let every Salesforce engineer operate securely, regardless of environment. This is a high-impact, high-visibility role on one of our most critical platform investments: a unified, policy-driven containment and device trust infrastructure underpinning Salesforce's Zero Trust and Cybersecurity Mesh Architecture.

Requirements

  • 7+ years of industry experience, including at least 5+ years building distributed systems in Software as a Service (SaaS), Platform as a Service (PaaS), or Infrastructure as a Service (IaaS) environments, and 5+ years operating in high-availability, mission-critical environments (99.999% uptime).
  • Strong experience designing and operating distributed systems on public cloud platforms (Amazon Web Services (AWS), Google Cloud Platform (GCP), or Microsoft Azure).
  • Proficient in Golang and/or Python.
  • Expertise in security protocols and identity frameworks: Transport Layer Security (TLS), OAuth, Security Assertion Markup Language (SAML), PKI, and certificates.
  • Familiar with system patterns and Application Programming Interface (API) standards including REST and OpenAPI/Swagger.
  • Solid understanding of DevOps practices, continuous integration and delivery (CI/CD), monitoring, and full ownership of production systems.
  • Experience building software for Linux and/or Windows environments.
  • Experience with CI/CD tools such as Jenkins, AWS CodePipeline, or AWS CodeBuild.
  • Working understanding of large-scale infrastructure-as-a-service platforms (e.g., Amazon AWS, Microsoft Azure, OpenStack).
  • Familiar with source code management and version control systems (e.g., git, Perforce).
  • Hands-on experience with container technologies such as Docker and Kubernetes.
  • Strong communication skills and a collaborative mindset that prioritizes team success.
  • A related technical degree required.

Nice To Haves

  • Prior experience developing system-level features related to platform security or device attestation.
  • Experience working with hardware-backed security mechanisms such as TPM, Hardware Security Module (HSM), or Secure Boot.
  • Familiarity with security compliance frameworks such as NIST, ISO, or SOC 2.
  • Experience securing products and infrastructure against the OWASP Top 10 and/or CWE Top 25.
  • Broad exposure to security disciplines and a deep understanding of models behind core security concepts such as Multi-Factor Authentication (MFA), Zero Trust, and securely managing secrets or tokens.

Responsibilities

  • Design and build scalable authentication and authorization services for distributed environments.
  • Develop and maintain system software for multiple operating systems (Linux, macOS, Windows).
  • Implement and operate large-scale security services using Golang or Python.
  • Integrate and extend secure device attestation mechanisms, including Trusted Platform Module (TPM)-based hardware trust.
  • Contribute to platform-level identity and security solutions using Public Key Infrastructure (PKI), certificates, and secure transport.
  • Build and manage containerized workloads with Kubernetes, Docker, and infrastructure-as-code tools like Terraform.
  • Operate and maintain services in a full DevOps model: monitor, troubleshoot, and continuously improve.
  • Work in an Agile team to deliver iteratively and collaboratively.
  • Partner with cross-functional teams across security, infrastructure, and engineering to ensure platform integrity and trustworthiness.

Benefits

  • time off programs
  • medical
  • dental
  • vision
  • mental health support
  • paid parental leave
  • life and disability insurance
  • 401(k)
  • employee stock purchasing program
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service