SlipstreamJobsFresh Startup & VC-Backed Jobs

Director of Product Security

Salesforce - Bellevue, WA, United States - In-office

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Salesforce is seeking a Director of Product Security to lead a mission-critical segment of the Engineering organization. You will own the architectural integrity, scalability, zero-trust security architecture, and operational reliability of distributed services powering millions of customer interactions daily. Key Responsibilities: - Define and execute a long-term roadmap for core backend services, prioritizing high availability, low latency, massive scalability, and end-to-end product security - Champion "Security-by-Design" and "Default-to-Secure" principles across the entire software development lifecycle (SDLC) - Partner with centralized Information Security teams to define threat models, establish secure design standards, and embed shift-left security practices into engineering workflows - Oversee proactive threat modeling, static/dynamic code analysis (SAST/DAST), dependency scanning, penetration testing remediation, and bug bounty resolutions - Drive rapid incident response protocols for platform-level security vulnerabilities - Drive alignment across cross-functional "Clouds" (Sales, Service, Marketing, etc.) and collaborate with dotted-line stakeholders, Security Champions, and Architecture Councils - Hire, develop, and retain a world-class organization of 15–40+ engineers, including Managers and individual contributors - Build a robust Security Champions program within your organization, empowering engineers to lead local threat modeling and secure code reviews - Act as a bridge between executive leadership, CISO stakeholders, and deep-tech engineering teams - Own the full SDLC, championing automated CI/CD pipelines, automated security gates, secrets management, zero-trust access controls, and compliance frameworks (ISO, SOC2, FedRAMP) - Participate in high-level design reviews, security architecture audits, and bottleneck troubleshooting across modern language environments (Java, Golang, Python) Required Qualifications: - 12+ years of software engineering experience, with at least 5 years in a significant engineering leadership role (Manager of Managers preferred for Senior Director level) - Deep product security domain knowledge with proven track record of architecting and managing application/product security controls (OWASP Top 10, OAuth/SAML, cryptography standards, data privacy regulations, secure containerization/Kubernetes security) - Experience or strategic oversight in securing AI models, LLM integration safety, data isolation, and preventing prompt injection or data leakage within ML/AI pipelines - Proven experience building, securing, and operating large-scale distributed systems (Microservices, Service Mesh, Event-driven architectures) under a strict Zero Trust framework

Similar roles