Skip to content

This website works best using cookies which are currently disabled.Cookie policy  Allow cookies
JobServe
 

San Francisco, California - USD Full Time Posted: Monday, 19 June 2017
 
 
Trust is the #1 company value at salesforce.com . Our Enterprise Security team contributes to the Trust of our customers and employees by securing the company's applications, vendor solutions, and infrastructure. We serve as security subject matter experts for sales, support, IT, etc. We also provide guidance and best practices on how to protect the company in today's rapidly evolving threat landscape.

As a member of the Enterprise Security team in San Francisco you will join a global group of curious and motivated engineers that specialize in security research, penetration testing, risk evaluation and security automation. You will take part in assessing a broad range of technologies including complex web applications, distributed processing, virtualized environments and public cloud infrastructure. In addition, you will create new tools, conduct industry-leading research, and solve challenging technical problems on the forefront of application security.

Responsibilities:

. Perform black-box penetration testing and code reviews of our flagship services, product offerings and vendor applications.

. Guide the technology organization's security and privacy initiatives by participating in design reviews and threat modeling.

. Assist in our vulnerability remediation efforts by triaging bug bounty findings, and guiding teams through the implementation of fixes.

. Perform cutting-edge applied research on new attacks and present new findings to both internal and external audiences.

. Evaluate application security tools for internal consumption. Develop new automation and tooling to improve our detection and prevention capabilities.

. Develop secure code practices and provide hands-on training to developers and quality engineers.

Minimum Qualifications:

. B.S./M.S. in Computer Science, Electrical Engineering or related experience.

. 3+ years work experience in an application security role.

. In-depth experience identifying and protecting against web application and web service security vulnerabilities including those found in the OWASP Top 10 and CWE Top 25.

. Relevant experience in several of these languages: Java, JavaScript/NodeJS, Ruby, .NET, C/Objective C, PHP, Python.

. Solid knowledge of the browser security model, crypto, and network security.

. Attacker mindset: Passion for breaking all the things unbreakable.

Bonus Points:

. Excellent communication and executive presentation skills.

. Highly motivated, driven to overcome obstacles and execute on provided objectives.

. Contributions to the security community such as research, public CVEs, bug-bounty recognitions, open-source projects, and blogs or publications.

. Familiarity with security tools such as static analysis, runtime analysis, black-box testing.

Salesforce, the Customer Success Platform and world's #1 CRM, empowers companies to connect with their customers in a whole new way. The company was founded on three disruptive ideas: a new technology model in cloud computing, a pay-as-you-go business model, and a new integrated corporate philanthropy model. These founding principles have taken our company to great heights, including being named one of Forbes's "World's Most Innovative Company" five years in a row and one of Fortune's "100 Best Companies to Work For" eight years in a row. We are the fastest growing of the top 10 enterprise software companies, and this level of growth equals incredible opportunities to grow a career at Salesforce. Together, with our whole Ohana (Hawaiian for "family") made up of our employees, customers, partners and communities, we are working to improve the state of the world.

. LI-Y

Pentest, Network Security, 0-Day, Netsec

Posted by StartWire



San Francisco, California, United States of America
Engineering
USD
Salesforce.com, Inc.
Salesforce.com, Inc.
JS2124_B107E461377C2C634A99E7B9EC671C97_228_I/228137535
6/19/2017 9:09:09 AM

We strongly recommend that you should never provide your bank account details to an advertiser during the job application process. Should you receive a request of this nature please contact support giving the advertiser's name and job reference.

Other jobs like this

San Francisco, California
USD
San Francisco, California
USD
Santa Clara, California
See more