Salesforce Logo

Salesforce

Sr./Lead Software Engineer, Enterprise PKI

Reposted 22 Days Ago
Be an Early Applicant
In-Office
Bellevue, WA, USA
149K-286K Annually
Senior level
In-Office
Bellevue, WA, USA
149K-286K Annually
Senior level
The role involves designing, developing, and managing Enterprise PKI infrastructure, focusing on certificate lifecycle management and secure authentication systems, collaborating with various teams for implementation.
The summary above was generated by AI

To get the best candidate experience, please consider applying for a maximum of 3 roles within 12 months to ensure you are not duplicating efforts.

Job Category

Software Engineering

Job Details

About Salesforce

Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action. Tech meets trust. And innovation isn’t a buzzword — it’s a way of life. The world of work as we know it is changing and we're looking for Trailblazers who are passionate about bettering business and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all.

Ready to level-up your career at the company leading workforce transformation in the agentic era? You’re in the right place! Agentforce is the future of AI, and you are the future of Salesforce.

Overview of the Role:
The Enterprise Security Technology team builds and operates highly scalable, fault-tolerant, distributed systems to deliver cloud-scale security software across multiple public cloud platforms and Salesforce's internal infrastructure. Our key investments are in Identity & Access and Public Key Infrastructure (PKI), where we design and implement consistent, scalable services that empower engineers to operate securely across our IT network, cloud infrastructure, and data centers.
We are seeking a Senior or Lead Software Engineer with hands-on experience in enterprise-grade PKI technologies to contribute to the design, development, automation, and support of certificate lifecycle management capabilities across our environment. This role is based in New York, NY; Bellevue, WA; or San Francisco, CA.
Responsibilities:
 
  • Design, implement, and operate our PKI infrastructure, including Certificate Authority (CA) hierarchies, Registration Authority (RA) functions, Online Certificate Status Protocol (OCSP) responders, Certificate Revocation List (CRL) distribution, and certificate lifecycle automation (provisioning, renewal, revocation, monitoring, and audit logging) using Enrollment over Secure Transport (EST), Simple Certificate Enrollment Protocol (SCEP), Automated Certificate Management Environment (ACME), and Certificate Management Protocol (CMP) workflows.
  • Define and drive the technical roadmap for certificate lifecycle automation, secure key management, and high-assurance identity use cases, collaborating with security architects and infrastructure and application teams to align PKI solutions with organizational policies and compliance requirements.
  • Build and ship high-quality, production-grade software using modern engineering practices, with AI as a core part of your workflow — pushing the boundaries of AI development tools to deliver secure, optimized code and designing systems where AI agents integrate seamlessly into human workflows.
  • Contribute to documentation, operational runbooks, incident response, and troubleshooting for PKI-related issues, while maintaining a shared system context that enables AI to operate accurately and reliably.

Required Qualifications:
 
  • 5+ years of hands-on experience with PKI systems including EJBCA or similar CA/RA platforms, with strong understanding of X.509 certificates, CRLs, OCSP, trust chains, key usage extensions, and enrollment protocols (SCEP, EST, ACME, CMP).
  • 8+ years of experience with scripting or programming languages (e.g., Python, Golang, Java), proficiency in Linux environments and version control (e.g., Git), and solid understanding of DevOps practices, CI/CD, monitoring, and production system ownership.
  • Demonstrated AI-first approach to engineering, including hands-on use of AI tools (e.g., Claude Code, GitHub Copilot, Codex, Cursor) in development workflows, advanced prompt engineering skills, and the ability to cultivate system context that makes AI outputs reliable, secure, and production-ready.
  • Bachelor's degree in Computer Science, Engineering, or Cybersecurity.

Preferred Qualifications:
 
  • Experience with hardware-backed security mechanisms such as Trusted Platform Module (TPM), Hardware Security Module (HSM), or secure enclaves, and PKI in Kubernetes or service mesh environments (e.g., Istio, SPIRE, cert-manager).
  • Exposure to device attestation, platform security, or Secure Boot concepts.
  • Familiarity with relevant security frameworks or compliance standards (e.g., NIST, ISO, SOC 2) and common security weaknesses (OWASP Top 10, CWE Top 25).
  • General understanding of core security concepts such as Multi-Factor Authentication (MFA), Zero Trust, and secrets management.

Unleash Your Potential

When you join Salesforce, you’ll be limitless in all areas of your life. Our benefits and resources support you to find balance and be your best, and our AI agents accelerate your impact so you can do your best. Together, we’ll bring the power of Agentforce to organizations of all sizes and deliver amazing experiences that customers love. Apply today to not only shape the future — but to redefine what’s possible — for yourself, for AI, and the world.

Accommodations

If you need a reasonable accommodation during the application or the recruiting process, please submit a request via this Accommodations Request Form.

Please note that Salesforce uses artificial intelligence (AI) tools to help our recruiters assess and evaluate candidates’ resumes and qualifications throughout the recruiting process. Humans will always make any candidate selection and hiring decisions. Please see our Candidate Privacy Statement for more information about how we use your personal data and your rights, including with regard to use of AI tools and opt out options.

Posting Statement

Salesforce is an equal opportunity employer and maintains a policy of non-discrimination with all employees and applicants for employment. What does that mean exactly? It means that at Salesforce, we believe in equality for all. And we believe we can lead the path to equality in part by creating a workplace that’s inclusive, and free from discrimination. Know your rights: workplace discrimination is illegal. Any employee or potential employee will be assessed on the basis of merit, competence and qualifications – without regard to race, religion, color, national origin, sex, sexual orientation, gender expression or identity, transgender status, age, disability, veteran or marital status, political viewpoint, or other classifications protected by law. This policy applies to current and prospective employees, no matter where they are in their Salesforce employment journey. It also applies to recruiting, hiring, job assignment, compensation, promotion, benefits, training, assessment of job performance, discipline, termination, and everything in between. Recruiting, hiring, and promotion decisions at Salesforce are fair and based on merit. The same goes for compensation, benefits, promotions, transfers, reduction in workforce, recall, training, and education.

In the United States, compensation offered will be determined by factors such as location, job level, job-related knowledge, skills, and experience. Certain roles may be eligible for incentive compensation, equity, and benefits. Salesforce offers a variety of benefits to help you live well including: time off programs, medical, dental, vision, mental health support, paid parental leave, life and disability insurance, 401(k), and an employee stock purchasing program. More details about company benefits can be found at the following link: https://www.salesforcebenefits.com.Pursuant to the San Francisco Fair Chance Ordinance and the Los Angeles Fair Chance Initiative for Hiring, Salesforce will consider for employment qualified applicants with arrest and conviction records.

At Salesforce, we believe in equitable compensation practices that reflect the dynamic nature of labor markets across various regions. The typical base salary range for this position is $148,500 - $260,100 annually. In select cities within the San Francisco and New York City metropolitan area, the base salary range for this role is $178,900 - $285,800 annually. The range represents base salary only, and does not include company bonus, incentive for sales roles, equity or benefits, as applicable.

Salesforce Bellevue, Washington, USA Office

929 108th Avenue NE, Bellevue, WA, United States, 98004

Similar Jobs

An Hour Ago
Easy Apply
Hybrid
Easy Apply
Senior level
Senior level
Fintech • Payments • Financial Services
Lead global commercial strategy for Financial Services & Insurance, driving go-to-market, segmentation, value propositions, sales enablement, product feedback, and cross-functional launches to grow market share in key banking-license markets.
An Hour Ago
Hybrid
75K-195K Annually
Senior level
75K-195K Annually
Senior level
Artificial Intelligence • Software
Lead technical sales for complex insurance pricing opportunities: design and deliver persona-led demos, run proofs-of-value, advise on technical evaluations, build Python-based workflows with hx Renew, and feed customer insight to Product and Engineering to shape platform capabilities.
Top Skills: AIHx RenewPython
7 Hours Ago
Remote or Hybrid
140K-165K Annually
Senior level
140K-165K Annually
Senior level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
Create reusable "paved paths" (documentation, reference architectures, IaC modules, code templates, and tools) to simplify building on enterprise platforms. Partner with architects and platform teams, develop and maintain templates and AI-assisted developer workflows, gather feedback from application teams, and iterate to maximize usability and adoption across a large, federated engineering organization.
Top Skills: Agent-Based ToolsAWSAzureCi/CdCloudformation (Cft)GCPInfrastructure As Code (Iac)Internal Developer AssistantsPrompt EngineeringPulumiTerraform

What you need to know about the Seattle Tech Scene

Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.

Key Facts About Seattle Tech

  • Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Amazon, Microsoft, Meta, Google
  • Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Madrona, Fuse, Tola, Maveron
  • Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account