Job Category
Software Engineering
Job Details
Responsibilities:
- The ideal candidate will lead and inspire a team within Security Infrastructure Identity and Access [IAM]. Deliver Security services, drive change, think independently, communicate clearly, and provide recommendations for process, service and automation initiatives on 1P (first party) and Cloud environments.
- Lead development teams in a full-service ownership model following Agile methodologies
- Lead DevOps activities for owned services in a 24/7 runtime environment, including driving investigations to resolve root cause and implement solutions.
- Collaborate with other engineering teams to solve security problems with minimal disruption to other business functions.
- Hire, train and assess the performance of direct reports according to corporate policies and procedures.
- Assist in the growth of employees through mentor, training and career development activities.
- Define goals and timely deliverables for improving any ofprovisioning/deprovisioning,privileged user management, role based access control (RBAC) entitlement, appropriateness of access and/or IAM services that are needed to support our business internally or externally.
- In conjunction with our engineering teams, work with partners & team members to design/architect, test, deploy and operate our IAM stack. You will partner with other business units, to deliver one enterprise identity solution for Salesforce.
- Drive design and implementation of innovative distributed software platforms for continuous assessment of security posture of the code and third-party packages used by Salesforce engineers
Required Skills/Experience:
- 3+ years of experience in managing identity and access management teams.
- Proficiency with IAM tools such as Okta, SailPoint, Azure AD, CyberArk, ForgeRock, etc.
- Strong knowledge of authentication standards (SAML, OIDC, OAuth2).
- Experience with identity lifecycle management and governance frameworks.
- Familiarity with directory services (LDAP, AD), scripting (PowerShell, Python), and APIs.
- Understanding of compliance frameworks (e.g., NIST, ISO 27001).
- Knowledge of automation/scripting languages and CI/CD processes including GoLang, Python (and/or Terraform, Spinnaker, JSON, Puppet).
- Proven experience driving Software Engineering Excellence practices.
- Proven experience in driving engineering excellence, showcasing strategic technical insight and driving technical partnerships
- Experience in consumption of Web Services APIs (JSON / XML, etc.).
- Experience in multi-tiered mission-critical systems, cloud environments (Amazon AWS, Microsoft Azure, GCP)
- Solid experience in a high-availability 24x7x365 environment with highly structured change management
- Strong technical understanding of systems, network, and identity fundamentals.
- Knowledge and experience with Identity and Access Management technologies and concepts.
Desired Skills/Experience:
- Knowledge of classic auth platforms: (Kerberos, LDAP, Radius, Tacacs+, etc.).
- Knowledge of federation platforms/protocols (Oauth, OpenID, SAML, WS-Fed, etc.)
- Working experience withCommercial/enterpriseIAM platforms (Ping Identity, Active Directory, etc.) or Open Source (OpenLDAP, OpenDJ, etc.).
- Experience with cloud scale Identity, Access Management (Single Sign-On/Multi Factor Authentication), Authorization services or design and architecture of IAM services
*LI-Y
Unleash Your Potential
When you join Salesforce, you’ll be limitless in all areas of your life. Our benefits and resources support you to find balance and
be your best
, and our AI agents accelerate your impact so you canIf you require assistance due to a disability applying for open positions please submit a request via this.
Posting Statement
For Washington-based roles, the base salary hiring range for this position is $184,000 to $253,000.