Senior Security Engineer - Salesforce Platform

Workday Workday · Enterprise · IND.Pune

Senior Security Engineer for Salesforce Platform responsible for technical hardening, operationalizing SAST/DAST, embedding security guardrails in DevSecOps pipelines, conducting code reviews, architecting secure integrations, enforcing least-privilege access, and coordinating vulnerability remediation.

What you'd actually do

  1. Drive the technical security of Salesforce by operationalizing SAST/DAST tools and embedding automated security guardrails directly into CI/CD pipelines.
  2. Perform deep-dive security assessments of Apex code, Lightning Web Components (LWC), and custom configurations to identify and mitigate vulnerabilities.
  3. Implement secure integrations using OAuth/SSO and enforce least-privilege access and data protection standards across multi-org environments.
  4. Execute threat modeling for high-risk features and partner directly with developers to provide technical guidance and verify the remediation of identified risks.

Skills

Required

  • Salesforce security
  • SAST/DAST tools
  • DevSecOps
  • CI/CD pipelines
  • Apex code review
  • LWC code review
  • OAuth
  • SSO
  • Least-privilege access
  • Threat modeling
  • Vulnerability management
  • Secure integrations

Nice to have

  • Salesforce platform customizations
  • Enterprise security strategy
  • Visualforce
  • APIs
  • Metadata security
  • External identity providers

What the JD emphasized

  • Salesforce Platform
  • SAST/DAST
  • DevSecOps pipelines
  • Apex
  • LWC
  • OAuth/SSO
  • least-privilege access
  • multi-org environments
  • threat modeling
  • vulnerabilities