Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Salesforce

Senior Product Security Engineer

Salesforce

. Provide expert security advisory for large-scale cloud initiatives .

Posted 9/29/2026full-timeUnited StatesSenior💰 $148,500 - $223,900 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in security advisory for cloud initiatives, with a strong focus on risk mitigation, threat modeling, and secure software development lifecycle practices. Proficient in evaluating security risks and communicating effectively with both technical and non-technical stakeholders.

Highest-signal resume keywords
Security EngineeringCloud SecurityThreat ModelingRisk MitigationSecure Software Development Lifecycle

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Security ArchitectureSecurity AssuranceCloud Service ModelsOWASP Top 10CWE Top 25OAuth/OIDCSAMLTCP/IPEncryption StandardsPenetration Testing
Soft Skills
Strong Communication SkillsRelationship Building
Tools & Technologies
Amazon Web ServicesGoogle Cloud PlatformMicrosoft AzureKubernetesDockerIstioCSPM ToolsVulnerability Scanning ToolsSASTInfrastructure-as-Code Security
Industry Keywords
Security PostureRisk-Based Security InitiativesSecurity Design ReviewsService-to-Service AuthenticationSecrets Management

Tech Stack

Tools & technologies
AWSAzureCloudDockerGoogle Cloud PlatformJavaKubernetesPythonSDLCTCP/IPGo

About the role

Key responsibilities & impact
  • Provide expert security advisory for large-scale cloud initiatives
  • Offer strategic guidance to engineering teams on complex enterprise architectures across the application and infrastructure stack
  • Drive proactive security through architecture and threat modeling
  • Partner with engineering teams to identify vulnerabilities and develop risk mitigation plans throughout the SDLC
  • Collaborate with product teams to recommend secure design solutions balancing functional goals with security requirements
  • Work with Product BISOs to curate and prioritize risk-based security initiatives
  • Analyze risk signals and emerging threats to shape security roadmaps
  • Serve as the primary security point of contact for engineering partners and leadership
  • Cultivate strong relationships and deliver critical security recommendations
  • Shape and enhance the security posture of core infrastructure platforms
  • Champion secure software development lifecycle best practices

Requirements

What you’ll need
  • 5-8 years of experience in a security engineering, security architecture, or security assurance role
  • Experience securing products and infrastructure across one or more public cloud environments, including Amazon Web Services, Google Cloud Platform, Microsoft Azure, Alibaba Cloud, or equivalent
  • Understanding of cloud service models, shared responsibility boundaries, and identity primitives at scale
  • Experience conducting structured security design reviews and threat modeling across infrastructure and application security domains
  • Familiarity with OWASP Top 10 and CWE Top 25
  • Ability to evaluate and communicate security risk to technical and non-technical audiences
  • Understanding of OAuth/OIDC, SAML, service-to-service authentication, and API authorization models
  • Understanding of TCP/IP, TLS, network segmentation, key management, certificate lifecycles, secrets handling, and encryption standards
  • Strong written and verbal communication skills
  • Familiarity with penetration testing methodologies or offensive security techniques is a plus
  • Experience participating in or driving improvements to a secure development lifecycle, security review process, or security advisory program is a plus
  • Ability to work with structured data, identify patterns across a broad service portfolio, and propose root-cause mitigations is a plus
  • Ability to read and reason about code in Java, Go, or Python is a plus
  • Hands-on familiarity with Kubernetes, Docker, service mesh such as Istio, secrets/key management and PKI tooling, CSPM and vulnerability scanning tools, or SAST and infrastructure-as-code security scanning is a plus

Benefits

Comp & perks
  • Time off programs
  • Medical insurance
  • Dental insurance
  • Vision insurance
  • Mental health support
  • Paid parental leave
  • Life insurance
  • Disability insurance
  • 401(k)
  • Employee stock purchasing program
  • Incentive compensation may be available for certain roles
  • Equity may be available for certain roles
  • Benefits may be available for certain roles