Enterprise Security Engineer, Senior & Lead (Enterprise Security - Security AI)
Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action, tech meets trust, and innovation is a way of life. We're looking for Trailblazers passionate about bettering business and the world through AI, driving innovation, and upholding Salesforce's core values.
About the role
Salesforce Enterprise Security is hiring a Senior and Lead Security Engineer for our Secure AI team to assess and maintain the security of AI tooling. In this role, you will partner with business stakeholders and technology partners to ensure AI deployments meet or exceed Salesforce security requirements. You will identify emerging threats, design processes that balance security and business agility, and share your expertise through internal events, conferences, and published research.
Responsibilities
- Lead in-depth, high-quality security assessments of emerging AI technologies (e.g., AI tooling, agentic platforms) including architecture and design reviews, code reviews, and penetration tests.
- Provide guidance to team members and suppliers on Salesforce security requirements, including remediation advice and potential feature enhancements.
- Threat model common attacker methods to develop mitigation techniques, balancing security and functional requirements.
- Develop automated processes and improve tooling to identify and solve problems at scale.
- Collaborate with engineering teams and business partners to drive solutions through a secure development lifecycle (development background preferred).
- Define and develop technical security standards and guidelines with business partners.
- Research new technologies, emerging threats, and vulnerabilities for strategic planning and process improvements.
- Communicate complex security concepts clearly and concisely to partners from diverse backgrounds, including non-technical stakeholders.
Requirements
- 5+ years of experience in a security role (Senior) or 8+ years (Lead). Leveling determined by skills, experience, and interview performance.
- Experience with large language models (LLMs) and agentic systems—building, evaluating, or securing them.
- Familiarity with AI security attack surfaces, including prompt injection, data exfiltration, privilege escalation in agents, and model supply chain risks.
- Excellent interpersonal, collaboration, critical-thinking, and communication skills.
- A related technical degree.
Preferred Qualifications
- Understanding of RAG architectures, classifier models, and retrieval/generation pipelines.
- Familiarity with security frameworks and certifications such as ISO 27001, SOC 2, PCI DSS, OWASP Top 10, CWE Top 25, and MITRE ATT&CK.
- Relevant BA/BS degree and/or certifications such as CRISC, CISSP, CCIE, CISM, CISA, or CCSK.
- Experience defining and communicating security remediation tasks to project and data owners.
Pay
The typical base salary range for this position is $148,500 - $260,100 annually. In select cities within the San Francisco and New York City metropolitan areas, the base salary range is $178,900 - $285,800 annually. This range represents base salary only and does not include company bonus, incentive for sales roles, equity, or benefits.
Benefits
- Time off programs
- Medical, dental, vision, and mental health support
- Paid parental leave
- Life and disability insurance
- 401(k) and employee stock purchasing program
More details about company benefits can be found at Salesforce Benefits.