Product Vulnerability Engineer

Salesforce
Bellevue
Workplace: HybridFull timeUSD 117,200 - 176,700 annuallyFunction: Communications, PR & CommunitySkills: ["Critical thinking","Calm under pressure","Verbal communication","Written communication","Research and learning"]

Join Salesforce’s security team on a vulnerability response group, leading mitigation for lower/moderate severity issues and supporting response for high-severity vulnerabilities. You’ll triage multiple vulnerabilities, use application forensics to assess exploit impact, and communicate complex scenarios clearly to non-technical partners. The role emphasizes strong fundamentals (networking, protocols, system architecture, software development) and working with web proxy techniques and OWASP Top 10-style vulnerability patterns.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Salesforce
Salesforce
4 days ago

Product Vulnerability Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 15 hours agoStatus: Live

Job Summary

Join Salesforce’s security team on a vulnerability response group, leading mitigation for lower/moderate severity issues and supporting response for high-severity vulnerabilities. You’ll triage multiple vulnerabilities, use application forensics to assess exploit impact, and communicate complex scenarios clearly to non-technical partners. The role emphasizes strong fundamentals (networking, protocols, system architecture, software development) and working with web proxy techniques and OWASP Top 10-style vulnerability patterns.
Location: Bellevue
Workplace: Hybrid
Employment Type: Full time
Job Function: Communications, PR & Community
Seniority: Mid level

Key Responsibilities

  • •Lead the response to lower/moderate severity vulnerabilities.
  • •Participate in response activities for high severity vulnerabilities.
  • •Continuously triage and prioritize vulnerabilities based on risk and impact.
  • •Collect and analyze code artifacts to assess exploit impact and guide investigation.
  • •Communicate complex vulnerability scenarios effectively to non-technical colleagues.

Pay and Benefits

Salary: USD 117,200 - 176,700 annually
Perks:MedicalDentalVisionHealth InsuranceParental Leave401kLife InsuranceDisability InsuranceEquity

Key Requirements

  • •5-7 years of experience in information security (or closely related) with direct experience of security vulnerability response.
  • •Manage and constantly triage multiple security vulnerabilities, differentiating urgent issues from important ones.
  • •Use application-forensics skills to collect and analyze code artifacts and assess potential impact if exploited.
  • •Experience managing common vulnerability types (e.g., OWASP Top 10) and familiarity with related threats (e.g., credential phishing, data leaks).
  • •Strong technical fundamentals (networking, common application protocols, system architecture, and software development basics) plus ability to research unfamiliar technologies quickly.
Experience:Information security
Skills:Critical thinkingCalm under pressureVerbal communicationWritten communicationResearch and learning
Certifications:GIAC GWAPTGIAC GCIHGIAC GPENGIAC GXPNOffensive Security OSCP
Tech Stack:AWSOWASP Top 10Web proxy tools

Eligibility

Nationality:US National
Security Clearance:Moderate Public Trust

Company Brief

Salesforce
Provides a leading cloud-based customer relationship management (CRM) platform with sales, service, marketing, analytics, and integration tools that empower businesses to manage customer relationships and digital transformation at scale.
Industry: SaaS
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: San Francisco, United States
Founded: 1999
Glassdoor
Glassdoor: 4.1
WebsiteLinkedInGlassdoor