To get the best candidate experience, please consider applying for a maximum of 3 roles within 12 months to ensure you are not duplicating efforts.Job Category
Products and TechnologyJob Details
Job Details – Security Analyst
Salesforce – the leader in enterprise cloud computing and one of the top 10 places to work according to Fortune magazine – is seeking Security Response Engineer to join an exciting team within our world-leading security programme.
The Security Analyst will be part of the hunting and response planning arm of Salesforce Security Response Center, responsible for analysing detection logics & Incidents and creating standard operating procedures and playbooks for handling security events and incidents. Security Response Engineer will also be working with different teams, performing security process reviews, UATs, POCs and posture checks. Security Response Engineer use their exceptional judgment and security expertise to distinguish truly interesting events from ‘noise’ while performing alert/incident reviews and consistently hunt for obsolete detection logics and rules.
This role also needs exceptional communication skills (verbal and written), and an ability quickly understand complex information while recognising familiar elements within complex situations. The role is a key part of our global information security team, involving daily interaction with the Salesforce CSIRT and other security teams, which means excellent written/verbal communication is essential.
As a key member of our growing Salesforce Security Response Center, Security Analysts will also work on building and conducting blue team exercises for the wider Security Org and consistently look for possible automation opportunities in the response processes and implement them.
Required Skills & Experience

  • At least 3 years of full-time experience within a Security Operations Centre (SOC) or Incident Response team.
  • Strong passion in information security, including awareness of current threats and security best practices.
  • Experience in investigating security issues and / or complex operational issues on Windows, *nix and Cloud environments such as AWS, GCP, Azure.
  • Technical security background and understanding of network fundamentals and common Internet protocols.
  • Strong technical understanding of the information security threat landscape (attack vectors and tools, best practices for securing systems and networks, etc.).
  • Experience collaborating with peer teams under Security umbrella.
  • Sound knowledge & experience of scripting and common web technologies (e.g., Python, Perl, Unix shell scripts, PowerShell, JavaScript).

Desired Skills & Experience

  • Experience coordinating incident response, troubleshooting, or other complex issues across a global organisation.
  • Familiarity with core concepts of security incident response, e.g., the typical phases of response, vulnerabilities vs threats vs actors, Indicators of Compromise (IoCs), etc.
  • Relevant information security certifications such as GIAC Certifications, Security+, SSCP, or CISSP.
  • System forensics/investigation skills, including analysing Malware and system artifacts (file system, memory, running processes, network connections) for indicators of infection/compromise.
  • Active involvement in the information security community.

Accommodations If you require assistance due to a disability applying for open positions please submit a request via this Accommodations Request Form. (http://cloud.mail.salesforce.com/accommodations-request-form)Posting Statement
At Salesforce we believe that the business of business is to improve the state of our world. Each of us has a responsibility to drive Equality in our communities and workplaces. We are committed to creating a workforce that reflects society through inclusive programs and initiatives such as equal pay, employee resource groups, inclusive benefits, and more. Learn more about Equality at Salesforce and explore our benefits.
(http://salesfore.com/) or Salesforce.org.
Salesforce welcomes all.


Source link