Jobs · Engineering · Washington

Senior Software Engineer (SMTS), Identity & Access Management - Device Trust

Salesforce · Bellevue, WA · Today
HybridEngineering$149k–$224k/yrFull-time

About Salesforce

Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action. Tech meets trust. And innovation isn’t a buzzword — it’s a way of life. The world of work as we know it is changing and we're looking for Trailblazers who are passionate about bettering business and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all. Ready to level-up your career at the company leading workforce transformation in the agentic era? You’re in the right place! Agentforce is the future of AI, and you are the future of Salesforce.

About the Team

The Salesforce Enterprise Security Engineering team designs and operates highly scalable, fault-tolerant distributed systems that deliver cloud-scale security software across multiple public cloud platforms and Salesforce's internal infrastructure. We provide the core building blocks that protect customer trust in Salesforce's products and services. As a software engineer on our Identity and Access Management (IAM) platform team, you work at the intersection of distributed systems and enterprise security — building the foundational services that let every Salesforce engineer operate securely, regardless of environment. This is a high-impact, high-visibility role on one of our most critical platform investments: a unified, policy-driven containment and device trust infrastructure underpinning Salesforce's Zero Trust and Cybersecurity Mesh Architecture.

What You'll Actually Be Doing

  • Design and build scalable authentication and authorization services for distributed environments.
  • Develop and maintain system software for multiple operating systems (Linux, macOS, Windows).
  • Implement and operate large-scale security services using Golang or Python.
  • Integrate and extend secure device attestation mechanisms, including Trusted Platform Module (TPM)-based hardware trust.
  • Contribute to platform-level identity and security solutions using Public Key Infrastructure (PKI), certificates, and secure transport.
  • Build and manage containerized workloads with Kubernetes, Docker, and infrastructure-as-code tools like Terraform.
  • Operate and maintain services in a full DevOps model: monitor, troubleshoot, and continuously improve.
  • Work in an Agile team to deliver iteratively and collaboratively.
  • Partner with cross-functional teams across security, infrastructure, and engineering to ensure platform integrity and trustworthiness.

Requirements

  • 7+ years of industry experience, including at least 5+ years building distributed systems in Software as a Service (SaaS), Platform as a Service (PaaS), or Infrastructure as a Service (IaaS) environments, and 5+ years operating in high-availability, mission-critical environments (99.999% uptime).
  • Strong experience designing and operating distributed systems on public cloud platforms (Amazon Web Services (AWS), Google Cloud Platform (GCP), or Microsoft Azure).
  • Proficient in Golang and/or Python.
  • Expertise in security protocols and identity frameworks: Transport Layer Security (TLS), OAuth, Security Assertion Markup Language (SAML), PKI, and certificates.
  • Familiar with system patterns and Application Programming Interface (API) standards including REST and OpenAPI/Swagger.
  • Solid understanding of DevOps practices, continuous integration and delivery (CI/CD), monitoring, and full ownership of production systems.
  • Experience building software for Linux and/or Windows environments.
  • Experience with CI/CD tools such as Jenkins, AWS CodePipeline, or AWS CodeBuild.
  • Working understanding of large-scale infrastructure-as-a-service platforms (e.g., Amazon AWS, Microsoft Azure, OpenStack).
  • Familiar with source code management and version control systems (e.g., git, Perforce).
  • Hands-on experience with container technologies such as Docker and Kubernetes.
  • Strong communication skills and a collaborative mindset that prioritizes team success.
  • A related technical degree required.

Even Better If

  • Prior experience developing system-level features related to platform security or device attestation.
  • Experience working with hardware-backed security mechanisms such as TPM, Hardware Security Module (HSM), or Secure Boot.
  • Familiar with security compliance frameworks such as NIST, ISO, or SOC 2.
  • Experience securing products and infrastructure against the OWASP Top 10 and/or CWE Top 25.
  • Broad exposure to security disciplines and a deep understanding of models behind core security concepts such as Multi-Factor Authentication (MFA), Zero Trust, and securely managing secrets or tokens.

Benefits

Salesforce offers a variety of benefits to help you live well including: time off programs, medical, dental, vision, mental health support, paid parental leave, life and disability insurance, 401(k), and an employee stock purchasing program. More details about company benefits can be found at the following link: https://www.salesforcebenefits.com.

Pay

In the United States, compensation offered will be determined by factors such as location, job level, job-related knowledge, skills, and experience. Certain roles may be eligible for incentive compensation, equity, and benefits. The typical base salary range for this position is $148,500 - $223,900 annually. The range represents base salary only, and does not include company bonus, incentive for sales roles, equity or benefits, as applicable.

This response is AI-generated, for reference only.

Similar jobs