Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Salesforce

Product Security Lead

Salesforce

. Provide expert security advisory for large-scale cloud initiatives .

Posted 10/8/2026full-timeUnited StatesSenior💰 $172,500 - $260,100 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Expertise in security engineering and architecture with a focus on cloud environments, risk assessment, and secure software development practices. Proficient in threat modeling, vulnerability assessment, and communication of security risks to diverse audiences.

Highest-signal resume keywords
Security Engineering ExperienceCloud Security ExpertiseThreat Modeling ProficiencySecure Software Development LifecycleRisk Mitigation Planning

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Security ArchitectureThreat ModelingVulnerability AssessmentCloud Service ModelsJava ProgrammingGo ProgrammingPython ProgrammingPenetration TestingOWASP Top 10CWE Top 25
Soft Skills
Strong Communication Skills
Tools & Technologies
AWSGCPMicrosoft AzureKubernetesDockerIstioCSPMSASTVulnerability Scanning ToolsPKI Tooling
Industry Keywords
Security AdvisoryRisk-Based Security InitiativesSecure Design SolutionsIdentity PrimitivesAPI Authorization Models

Tech Stack

Tools & technologies
AWSAzureCloudDockerGoogle Cloud PlatformJavaKubernetesPythonSDLCTCP/IPGo

About the role

Key responsibilities & impact
  • Provide expert security advisory for large-scale cloud initiatives
  • Guide engineering teams on complex enterprise architectures across the application and infrastructure stack
  • Drive proactive security through architecture and threat modeling
  • Partner with engineering teams to identify vulnerabilities and develop risk mitigation plans throughout the SDLC
  • Collaborate with product teams to recommend secure design solutions balancing functional goals and security requirements
  • Work with Product BISOs to curate and prioritize risk-based security initiatives
  • Analyze risk signals and emerging threats to shape security roadmaps
  • Serve as the primary security contact for engineering partners and leadership
  • Provide architectural and infrastructure security expertise across on-premises and public cloud environments
  • Champion secure software development lifecycle best practices

Requirements

What you’ll need
  • 8-10 years of experience in a security engineering, security architecture, or security assurance role
  • Experience securing products and infrastructure across one or more public cloud environments, including AWS, GCP, Microsoft Azure, Alibaba Cloud, or equivalent
  • Understanding of cloud service models, shared responsibility boundaries, and identity primitives at scale
  • Experience conducting structured security design reviews and threat modeling across infrastructure and application security domains
  • Familiarity with OWASP Top 10 and CWE Top 25
  • Ability to evaluate and communicate security risk to technical and non-technical audiences
  • Understanding of OAuth/OIDC, SAML, service-to-service authentication, API authorization models, TCP/IP, TLS, network segmentation, key management, certificate lifecycles, secrets handling, and encryption standards
  • Strong written and verbal communication skills
  • Familiarity with penetration testing methodologies or offensive security techniques
  • Experience participating in or driving improvements to a secure development lifecycle, security review process, or security advisory program
  • Ability to work with structured data, identify patterns across a broad service portfolio, and propose root-cause mitigations
  • Ability to read and reason about code in Java, Go, or Python
  • Hands-on familiarity with Kubernetes, Docker, service mesh such as Istio, secrets/key management, PKI tooling, CSPM, vulnerability scanning tools, SAST, or infrastructure-as-code security scanning

Benefits

Comp & perks
  • Time off programs
  • Medical insurance
  • Dental insurance
  • Vision insurance
  • Mental health support
  • Paid parental leave
  • Life insurance
  • Disability insurance
  • 401(k)
  • Employee stock purchasing program
  • Certain roles may be eligible for incentive compensation and equity