Senior (SMTS) Endpoint Security Software Engineer

Salesforce · Washington - Bellevue · Bellevue

Spotted 3d agoFull time

What you'll need to apply

Fields this application requires

NameEmailPhoneCountryRésuméWork authorization answerVisa sponsorship answer

Company-specific questions

  • Do you have the unrestricted right to work in the country to which you're applying? (You must answer “No” if you are on any visa or possess any government issued work authorization document that has an expiration date; you should answer “Yes” if you have DACA or TPS authorization in the US)
  • Government Employment: In the last 5 years, have you been an employee of a U.S. federal, state, or local government, including a "special Government employee" (defined under 18 U.S.C. §202), or a member of the U.S. Armed Services (including Reserve and Guard components)?
  • I attest/confirm that I have no post-government employment restrictions currently applicable to me that have not already been addressed or disclosed in the previous questions, OR that if I am aware of any applicable restrictions, I will disclose them to the recruiter if contacted for further processing of my application. If I received written advice from my current or former government employer about work restrictions that are still active, I will provide it to the recruiter if contacted for further processing of my application.
  • Are you currently or have you in the past been debarred, suspended, proposed for debarment or declared ineligible for award of a contract by any federal agency?
  • As a U.S. company that exports software and technology internationally, we must comply with U.S. export control laws in every country where we operate. The information provided will be used to determine whether we need to obtain an Export Control License for your employment if you are hired. Are you a citizen, national or permanent resident of Iran, Cuba, North Korea or Syria?
  • Regarding future positions at Salesforce, please select one of the following options
  • I acknowledge that I have read, reviewed and answered the above questions truthfully and accurately. I further understand, and agree, that any offer of employment I may receive from Salesforce is conditional on the truth of the above statements and that, in the event it is subsequently determined that any of the above is inaccurate, any such offer of employment can be rescinded and, in the event I have commenced employment, such employment will be terminated, to the extent permitted by applicable law. Please select "yes" if you acknowledge.
Job description

About this role

Employer-provided description, formatted for easier reading.

The Experience

The Enterprise Security Technology team builds and operates highly scalable, fault-tolerant, distributed systems that deliver cloud-scale security infrastructure and software across multiple public cloud platforms and Salesforce's internal infrastructure. One of our key investments is in Endpoint Security, where we build a first-class security defense system for Salesforce's enterprise workloads.

As a Senior Endpoint Software Engineer, you develop, deploy, and operate automation, tools, and internal solutions that address the evolving threat landscape, working closely with architects, senior engineers, product managers, and partner teams.

The projects you take on range from building solutions from scratch to automating processes around existing vendor solutions, giving you broad exposure across development, security, and operational work.

What You'll Actually Be Doing

  • Develop security solutions leveraging best development practices and modern tools and approaches.
  • Utilize knowledge of enterprise security technologies like Extended Detection and Response (XDR), Vulnerability Management, Network Security, and Application Control in the design and development of solutions.
  • Employ and leverage best security practices to implement software solutions in a large enterprise environment, following change management processes and procedures.
  • Engage in threat modeling and participate in vendor evaluation.
  • Assist in proof-of-concepts (PoCs) for new technologies that align with evolving security and business needs.
  • Contribute to platform enhancements and design decisions.
  • Support the definition and enforcement of policies, standard operating procedures (SOPs), and operational protocols for endpoint security tools by developing automation and related utilities.
  • Help ensure endpoint hygiene meets or exceeds regulatory and compliance requirements.
  • Design and actively participate in the implementation of robust automation pipelines, leveraging Python scripting, to reduce manual effort, enforce consistency, and support rapid incident response.
  • Work closely with security engineers to contribute toward detection logic and response workflows, collaborating with Security Information and Event Management (SIEM), Security Orchestration, Automation and Response (SOAR), and telemetry teams to integrate and tune event ingestion, alerting, and remediation across multiple systems.
  • Develop and maintain scripts and automation in Python to reduce manual operational effort, improve consistency of endpoint configurations, and support faster remediation and response workflows.
  • Contribute to Continuous Integration and Continuous Deployment (CI/CD), infrastructure-as-code, and configuration-as-code efforts related to endpoint security services.
  • Partner with Product Management throughout the entire project lifecycle, from initial design and vendor selection to implementation and ongoing operations, ensuring projects are delivered on time and with high quality.
  • Develop and maintain comprehensive documentation for security services, policies, and procedures.
  • Stay current with the latest threats and technologies in the cloud security and endpoint security landscape, actively seeking opportunities to innovate and improve our security posture.

You're Our Person If...

  • You have 5+ years (Senior/SMTS) of hands-on security software development experience.
  • You have experience developing automation used in a production environment at a scale of more than ten thousand endpoint systems.
  • You have continuous hands-on experience with scripting or programming, such as Python or Go.
  • You are familiar with Agile development practices and the secure software development lifecycle.
  • You can perform proof-of-concepts (PoCs) for new technologies that align with evolving security and business needs.
  • You have experience with formal change management processes in an enterprise environment.
  • You can lead initiatives or support team goals in fast-paced environments.
  • You have strong communication and collaboration skills.
  • You are open to learning and adapting quickly, with a rapid innovation mindset.
  • You can engage in threat modeling and participate in vendor evaluation.

Even Better If...

  • You have direct experience integrating or operating endpoint protection, security firewall, email security, or exposure management platforms at enterprise scale.
  • You have hands-on experience building detection content or automated response playbooks within a SIEM or SOAR platform.
  • You have experience contributing to infrastructure-as-code or configuration-as-code pipelines in a security operations context.
Interested in this role?Continue on Salesforce's careers page.
Apply on Salesforce