# Platform Security Architect at Salesforce.com

- Company: Salesforce.com
- What the company does: Salesforce is the #1 AI CRM, helping companies become Agentic Enterprises where humans and agents drive success together through a unified AI, data, and Customer 360 platform. Backed by NEA.
- Company website: https://www.salesforce.com/
- Type: Startups
- Level: Mid level
- Location: Indiana - Indianapolis
- Work setup: On-site
- Posted: 2026-09-28
- Apply by: 2026-11-12
- Apply: https://salesforce.wd12.myworkdayjobs.com/en-US/External_Career_Site/job/Indiana---Indianapolis/Platform-Security-Architect_JR360447
- Page: https://www.1752.vc/careers/jobs/salesforce-com-platform-security-architect/

## About the role

We are seeking a Salesforce Platform Expert who specializes in security implementation. You are not just a compliance officer; you are a builder. You understand the Salesforce metadata API better than anyone, you know the limits of Apex Managed Sharing, and you know exactly which "Session Settings" break the user experience if configured incorrectly.

## What they're looking for

- Sharing Architecture: Design and implement complex sharing models. Optimize Org-Wide Defaults (OWD), Sharing Rules, Account Teams, and Territory Management to ensure strict data segregation
- Shield Implementation: Lead the technical deployment of Salesforce Shield. Manage Tenant Secrets, define encryption policies for standard/custom fields, and configure Field Audit Trails to meet retention policies
- Identity Configuration: Configure and troubleshoot SSO (SAML/OIDC), Connected Apps, and Login Flows. managing certificates and Key Management (BYOK) where applicable
- Real-Time Monitoring: Build Transaction Security Policies (using Apex or Low-Code) to block data exfiltration attempts in real-time
- Log Analysis: Configure Event Monitoring to export logs to our SIEM (Splunk/New Relic). Create dashboards to visualize login anomalies and report exports
- Code Security: Act as the "Security Gatekeeper" for deployments. Review Apex and LWC code for common vulnerabilities (SOQL Injection, XSS, Enforcing Sharing)

