Skip to main content
Back to jobs

Security GRC Senior Analyst

External
Salesforce logoSalesforce · Bellevue, WA
Full-timeOn-site1mo ago30+ days old, may be filled
AWSComplianceCRMDocumentationHIPAALeadership
Cover LetterConnect

Prepare for this interview

Elite

AI-generated questions, company research, and talking points tailored to this role


Requirements

  • 4+ years of experience in IT audit or internal controls, managing global compliance assessments in a complex environment with a strong focus on cloud/SaaS platforms.
  • Prior experience in a compliance and regulatory environment related to security and privacy including security compliance standards across industries and geographies such as ISO 27001, SOC, HIPAA, PCI, HITRUST, SOX and FedRAMP, etc.
  • Strong program and stakeholder management experience, including cross-functional leadership in a highly collaborative environment.
  • Experience with compliance tooling, control testing automation, or audit workflow platforms and processes
  • Technical knowledge and understanding of different hyperscaler environments such as AWS.
  • Required Qualifications
  • Strong Analytical and problem solving skills with the ability to assess risks and recommend solutions.
  • Detail oriented with strong organizational and documentation skills.
  • Ability to solve unique, complex and often ambiguous problems with broad impact on the business
  • Conceptual and innovative thinking to develop and implement solutions
  • Ability to work independently and collaboratively in a fast paced regulatory environment.
  • Identify risk in processes and environments, and strategies to mitigate the risk.
  • Certifications (CRISC, CISSP, CCIE, CISM, CISA, CCSK) are a plus
  • *LI-Y
  • Unleash Your Potential

Additional Information

To get the best candidate experience, please consider applying for a maximum of 3 roles within 12 months to ensure you are not duplicating efforts. Job Category Enterprise Technology & Infrastructure Job Details About Salesforce Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action. Tech meets trust. And innovation isn't a buzzword - it's a way of life. The world of work as we know it is changing and we're looking for Trailblazers who are passionate about bettering business and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all. Ready to level-up your career at the company leading workforce transformation in the agentic era? You're in the right place! Agentforce is the future of AI, and you are the future of Salesforce. About Salesforce We're Salesforce, the Customer Company, inspiring the future of business with AI+ Data +CRM+Trust. Leading with our core values, we help companies across every industry blaze new trails and connect with customers in a whole new way. And, we empower you to be a Trailblazer, too - driving your performance and career growth, charting new paths, and improving the state of the world. If you believe in business as the greatest platform for change and in companies doing well and doing good - you've come to the right place! About Our Team The Global Compliance and Certification (GCC) team is responsible for enterprise wide compliance processes, ensuring Salesforce leadership has the information needed to make strategic risk-based decisions. You will be part of the GCC org, a division within the Product Security Organization and you will play a pivotal role in partnering with engineering, translating complex mandates into actionable controls, ensuring timely remediation, continuous risk mitigation, and adherence to the Salesforce security frameworks Impact - Responsibilities Serve as cloud compliance subject matter experts, supporting internal and external audits by ensuring effective control implementation while driving efficiency through deep process knowledge Act as the primary liaison between external audit requests and engineering. Be able to lead walkthroughs with external assessors as needed. Lead Audit execution and supporting evidence focused on Salesforce environments, ensuring alignment with ISO 27001, SOC 1/2, and other regulatory frameworks. Partner with cross-functional teams to execute audit recommendations and strengthen compliance preparedness. Partner with Engineering teams to translate complex compliance frameworks and regulatory mandates into clear, actionable engineering deliverables, ensuring alignment across teams. Collaborate with cross-functional partners to operationalize audit recommendations and enhance compliance posture. Identify opportunities to streamline and automate evidence collection, driving operational efficiency and continuous improvement. Document detailed playbooks on processes and domains that can be leveraged for assessments. Proactively manage compliance risk by driving timely remediation with engineering partners and delivering clear leadership reporting on remediation progress and residual risk.


Your Match

How well this role fits your profile.

Company Intel

What employees say

Worked at Salesforce? Share your experience

Interested in this role?

Apply on the company's website.

Cover LetterConnect