At a Glance
- Tasks: Enhance Salesforce security through coding, testing, and collaboration with engineering teams.
- Company: Join Oliver James, a leader in information services, driving digital transformation.
- Benefits: Enjoy hybrid work options, competitive salary, and opportunities for professional growth.
- Why this job: Be part of a transformative journey, improving security in a dynamic DevSecOps environment.
- Qualifications: Hands-on Salesforce experience, strong coding skills, and knowledge of security practices required.
- Other info: Ideal for those passionate about merging engineering with security in innovative ways.
The predicted salary is between 43200 - 72000 £ per year.
We are looking for a Salesforce Security Engineer who brings strong engineering fundamentals and hands-on experience to the intersection of Salesforce development and security engineering. You will play a critical role in enhancing the security posture of our Salesforce platform, contributing directly to secure code practices, threat modelling, and security testing across our CI/CD pipeline. This role is ideal for someone with engineering roots who has evolved into the security space and is passionate about improving security maturity in modern DevSecOps environments.
What You’ll Do
- Lead and contribute to the security engineering of our Salesforce platform, especially in the context of APEX code, API design, and secure development lifecycle.
- Apply the DSOMM (DevSecOps Maturity Model) and OWASP security principles to assess and uplift Salesforce security maturity.
- Own and improve pipeline security including static code analysis (SAST), dynamic application security testing (DAST), dependency checks, and secure deployment patterns.
- Conduct threat modelling for Salesforce-based estates, identifying and mitigating risks early in the development lifecycle.
- Perform and refine security tests across APIs and applications within the Salesforce environment.
- Work collaboratively with platform engineers, developers, and the broader infosec team to embed security by design.
- Advise on approaches to code signing, policy enforcement, and change validation in a distributed Salesforce landscape.
- Explore and address the unique challenges of securing a Salesforce-first architecture, integrated across the broader estate.
What You Bring
- Hands-on experience with Salesforce development (particularly APEX) and a deep understanding of how engineering and security intersect.
- Strong grasp of secure coding practices and experience running DAST/SAST on Salesforce environments.
- Exposure to or working knowledge of DSOMM, OWASP, and threat modelling methodologies.
- Experience integrating security into CI/CD pipelines, especially in complex enterprise platforms.
- Ability to approach platform security from an engineering-first mindset, not just compliance.
- Confident communicator who can translate technical security needs into engineering requirements.
If you’re ready to play a key role in a transformative digital journey and have the expertise to lead high-performing engineering teams, we’d love to hear from you!
Salesforce Security Engineer employer: Oliver James
Contact Detail:
Oliver James Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Salesforce Security Engineer
✨Tip Number 1
Familiarise yourself with the Salesforce platform, especially APEX code and its security features. Understanding how to implement secure coding practices will give you a significant edge during discussions with our team.
✨Tip Number 2
Brush up on your knowledge of the DevSecOps Maturity Model (DSOMM) and OWASP principles. Being able to articulate how these frameworks apply to Salesforce security will demonstrate your expertise and commitment to enhancing security maturity.
✨Tip Number 3
Prepare to discuss your experience with integrating security into CI/CD pipelines. Highlight specific examples where you've successfully implemented security measures in complex environments, as this is crucial for the role.
✨Tip Number 4
Showcase your ability to communicate technical security needs effectively. Being able to translate these requirements into engineering terms will be vital when collaborating with platform engineers and developers.
We think you need these skills to ace Salesforce Security Engineer
Some tips for your application 🫡
Understand the Role: Before applying, make sure you fully understand the responsibilities and requirements of a Salesforce Security Engineer. Familiarise yourself with key concepts like APEX code, DevSecOps, and OWASP principles.
Tailor Your CV: Highlight your hands-on experience with Salesforce development and security engineering in your CV. Use specific examples that demonstrate your understanding of secure coding practices and your ability to integrate security into CI/CD pipelines.
Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for security and your engineering background. Explain how your skills align with the role and how you can contribute to enhancing the security posture of the Salesforce platform.
Proofread Your Application: Before submitting, carefully proofread your application materials. Check for any spelling or grammatical errors, and ensure that all information is clear and concise. A polished application reflects your attention to detail.
How to prepare for a job interview at Oliver James
✨Showcase Your Technical Skills
Be prepared to discuss your hands-on experience with Salesforce development, particularly APEX. Highlight specific projects where you applied secure coding practices and how you integrated security into CI/CD pipelines.
✨Understand Security Principles
Familiarise yourself with the DSOMM and OWASP security principles. Be ready to explain how these frameworks can enhance the security posture of a Salesforce platform and provide examples of how you've applied them in past roles.
✨Demonstrate Problem-Solving Abilities
Prepare to discuss scenarios where you identified and mitigated risks through threat modelling. Use concrete examples to illustrate your thought process and how you approach security challenges in a development lifecycle.
✨Communicate Effectively
As a confident communicator, practice translating complex technical security needs into clear engineering requirements. This will show your ability to work collaboratively with platform engineers and developers, which is crucial for this role.