Security Grc Lead

Salesforce Salesforce · Enterprise · San Francisco, CA +1

Salesforce is seeking a Security GRC Lead to manage compliance programs for a global CCaaS launch. The role involves partnering with a Senior Lead to execute compliance initiatives, prepare regulatory submissions to national telecom authorities, and manage day-to-day compliance deliverables across various teams. The ideal candidate will have 5+ years of experience in Security GRC, managing frameworks like FedRAMP, SOC 2, and ISO 27001, with a strong understanding of cloud compliance and risk management.

What you'd actually do

  1. Act as a flexible, high-impact contributor, ready to pivot and tackle emerging project needs, ad hoc regulatory challenges, and urgent deliverables to support the project’s critical path.
  2. Prepare, coordinate, and execute quarterly, annual, and ad hoc regulatory filings to national telecom authorities (such as the FCC and CRTC), working across teams to gather necessary telemetry and compliance data.
  3. Assist the Senior Lead in translating guidance from partners and external advisors into trackable compliance initiatives for the business, including managing the critical lead times necessary to satisfy technical and regulatory obligations prior to launching in new markets.
  4. Drive the day-to-day execution of compliance deliverables, coordinating seamlessly across Product, Legal, Tax, and Operations teams to ensure regulatory milestones are met on schedule.

Skills

Required

  • 5+ years of hands-on experience in Security GRC
  • managing comprehensive compliance frameworks (ex. FedRAMP, SOC 2, ISO 27001)
  • High degree of adaptability and a proven track record of thriving in fast-paced, dynamic project environments with shifting priorities
  • Experience with, or strong willingness to learn, the preparation and submission of formal government/regulatory filings (FCC, CRTC, etc.)
  • Strong understanding of cloud compliance principles and risk management
  • Highly organized, detail-oriented, and proficient in project management and GRC tooling

What the JD emphasized

  • high-priority, fast-paced global CCaaS launch
  • highly adaptable professional ready to pivot, tackle emerging challenges, and drive whatever ad hoc project needs arise
  • Agile Compliance Execution
  • flexible, high-impact contributor, ready to pivot and tackle emerging project needs, ad hoc regulatory challenges, and urgent deliverables
  • critical path
  • ad hoc regulatory filings
  • dynamic, rapid-deployment environment
  • shifting priorities
  • formal government/regulatory filings
  • regulatory milestones