ForgeApply · Job listing
Sr. Security Software Engineer, Vulnerability Management - Slack
Salesforce
See all 256 open roles at Salesforce →
Tailor your resume for this Salesforce job in about a minute.
ForgeApply tailors your resume and cover letter to this exact posting, then hands you a ready-to-submit application for Salesforce's site. Free trial, no card required.
About this role
To get the best candidate experience, please consider applying for a maximum of 3 roles within 12 months to ensure you are not duplicating efforts.
Job Category Software Engineering Job Details
About Salesforce Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action. Tech meets trust. And innovation isn’t a buzzword — it’s a way of life. The world of work as we know it is changing and we're looking for Trailblazers who are passionate about bettering business and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all.
Ready to level-up your career at the company leading workforce transformation in the agentic era? You’re in the right place! Agentforce is the future of AI, and you are the future of Salesforce.
About Us At Slack, we are committed to making people’s working lives more secure. We are serious about protecting our infrastructure, operations, and most importantly, our customers’ data. Our Vulnerability Management team plays a pivotal role in identifying, assessing, and mitigating security risks across our entire infrastructure. We take a systemic approach to security and strive to ensure we provide low friction, high-impact security across everything we do.
Slack has a positive, diverse, and encouraging culture—we look for people who are curious, innovative, and work to be a little better every single day. In our work together we aim to be smart, humble, hardworking and, above all, collaborative. If this sounds like a good fit for you, read on ahead!
What you will be doing
As a Senior Software Engineer on the Vulnerability Management team, you will build and maintain the systems and tooling we rely on to detect, track, and remediate security vulnerabilities across our organization. You will drive technical strategy for how we automate and scale vulnerability management, work closely with security engineers, product teams, and infrastructure partners to tackle complex cross-functional challenges, and help raise the bar for how the team builds software. This is a high-impact, high-ownership role for someone who wants to do meaningful engineering work while shaping how security gets done at scale.
Key Responsibilities • Contribute towards the technical architecture for vulnerability management tooling, including systems that automate identification, prioritization, tracking, and remediation of vulnerabilities across diverse ecosystems and environments.
• Design and develop of high-quality, scalable engineering solutions, balancing long-term maintainability with the practical needs of a fast-moving security organization.
• Drive integration strategy across vulnerability scanners, aggregation pipelines, and downstream systems, making principled decisions about data ownership, tool consolidation, and signal quality.
• Partner with cross-functional stakeholders including infrastructure, platform engineering, and product security teams to identify opportunities to embed security automation deeper into the development lifecycle.
• Identify systemic gaps and ambiguous, high-priority problems that cut across team boundaries, propose solutions, and drive them to completion with or without direct authority.
What you should have: • U.S. Citizenship or Permanent Residency (Green Card holder). We are unable to provide visa sponsorship for this role.
• 6+ years of industry software engineering experience, with a meaningful portion of that spent in security engineering, platform engineering, or infrastructure-adjacent domains.
• Deep proficiency in Python, with a strong track record of writing production-grade, tested, maintainable code in complex systems.
• Demonstrated experience owning and delivering end-to-end engineering projects, from early-stage design through production deployment and ongoing operation.
• Solid understanding of vulnerability management concepts, including how vulnerabilities are discovered, classified, prioritized, and remediated in enterprise environments.
• Experience building or maintaining integrations with security tooling such as vulnerability scanners, SIEM systems, or similar platforms.
• Comfort working with CI/CD pipelines, version control workflows, and modern software delivery practices.
• Experience working across teams and communicating technical concepts clearly to both engineers and non-technical stakeholders.
• Strong judgment in the face of ambiguity, and a track record of asking the right questions before building rather than after.
Nice-to-Have: • Hands-on experience with vulnerability management tooling such as Wiz, Tenable/Nessus, Twistlock, or similar products, particularly in cloud or containerized environments.
• Familiarity with compliance frameworks relevant to government or regulated environments, such as FedRAMP or DoD IL5/IL6.
• Experience working with large-scale vulnerability aggregation systems or homegrown data pipelines that normalize findings across multiple scanners.
• Background in building automated remediation workflows, such as automated PR generation for dependency vulnerabilities or patch orchestration across diverse package ecosystems.
• Experience with cloud environments (AWS, Azure, GCP) and containerized workloads at scale.
• Contributions to the security or software community through open-source projects, published research, conference talks, or similar.
Unleash Your Potential When you join Salesforce, you’ll be limitless in all areas of your life. Our benefits and resources support you to find balance and be your best , and our AI agents accelerate your impact so you can do your best . Together, we’ll bring the power of Agentforce to organizations of all sizes and deliver amazing experiences that customers love. Apply today to not only shape the future — but to redefine what’s possible — for yourself, for AI, and the world.
Accommodations If you need a reasonable accommodation during the
Salary insight
The midpoint of this range ($216k) is about 8% above the median disclosed salary for San Francisco roles listed on ForgeApply ($200k across 8,449 jobs).
See full Software Engineer salary data for San Francisco →
Based on live postings with disclosed pay on ForgeApply; refreshed daily. Not an estimate of this employer's offer.
Tailor your resume for this Salesforce role before you apply.
Tailor my resume for this jobSimilar jobs
- Senior Security Software Engineer, Vulnerability Management — Roblox · San Mateo, CA, United States
- Sr. Security Software Engineer, Application Security — Pinterest · Remote
- Staff Security Engineer, Vulnerability Management — Coreweave · Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA
- Senior Software Engineer, Security Platform — Robinhood · Bellevue, WA; Menlo Park, CA
- Senior Software Engineer, Security — Assemblyai · Remote
- Senior Software Engineer, Security — Nectar Social · Palo Alto, CA
- Senior Software Engineer, Security — Harvey · San Francisco
- Senior Software Engineer, Security — Crusoe · San Francisco, CA - US
More like this: Software Engineer Jobs · Software Engineer Jobs in San Francisco · Browse all jobs
Free ATS checker · How to Tailor Your Resume to a Job Description (Step by Step)