Senior Security GRC Analyst

Salesforce

Confirmed live yesterday High trust
Remote

Quick summary

Work type
Remote
Location
Herndon, VA
Salary
$117,200–$176,700 / yr
Posted
10 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $159k
This role $147k
$108k most similar roles pay here $204k

This role pays less than 64% of similar roles. Most pay $130,375–$188,090 — the shaded band above. At the midpoint, this role pays about $147k versus about $159k for comparable roles.

Based on 239 similar postings.

Employer

About Salesforce

Salesforce is the world''s leading customer relationship management (CRM) platform, offering cloud-based software for sales, service, marketing, analytics, and application development. Industry: Enterprise Software & Cloud Computing

Salesforce currently has 106 open roles on FindRole.

Listed pay typically runs $148,500–$260,100 across 98 roles with salary data.

Most-posted roles

View all roles at Salesforce

At a glance

TL;DR · Senior Security GRC Analyst

The Security GRC Senior Analyst joins the Government Cloud Division to manage security pillars including continuous monitoring, incident response, and AI adoption. This role involves driving initiatives between stakeholder organizations to reduce non-compliance risks, supporting change management with federal authorization bodies, and advising business partners on information security requirements for products and services. The candidate will build and maintain relationships with legal, audit, and engineering teams while designing automated functionalities to improve operational efficiency. Key technical requirements include experience with Government Cloud environments like AWS, Azure, and GCP, as well as knowledge of FedRAMP 20x and DoD SRG frameworks. Essential skills include compliance engineering, data analysis for creating metrics, and the ability to translate complex security requirements between technical and business stakeholders. Preferred qualifications include CISSP or CISA certifications and experience with AI automation strategies.

What you'll do

  • Manage security pillars including continuous monitoring, incident response, AI adoption, and documentation for Government Cloud.
  • Advise business partners on information security requirements and their applicability to products and services.
  • Drive initiatives between stakeholder organizations to ensure compliance with internal and external requirements.
  • Support change management activities and accreditation programs with federal authorization bodies.
  • Design automated functionalities and innovative processes to improve operational efficiency.
  • Build and maintain relationships with legal, audit, engineering, and other internal stakeholders.
  • Communicate complex security positions and accreditation programs to various business stakeholders.

What we're looking for

  • Must be a U.S. citizen (born or naturalized) who does not hold dual citizenship.
  • Minimum 4 years of experience in information security, cybersecurity, accreditation, or related fields.
  • Experience working with Government Cloud environments such as AWS, Azure, or GCP.
  • Knowledge of security frameworks including FedRAMP 20x and DoD SRG.
  • Proven experience in Compliance Engineering and working with federal Authorizing Officials (e.g., DISA).
  • Ability to translate complex technical requirements for business stakeholders and communicate results to management.
  • Experience performing security analysis, creating metrics/dashboards, and summarizing large data sets.
  • Preferred certifications include CISSP, CISA, CISM, or AWS; coding/scripting experience is a plus.

More like this

Similar roles

Security GRC Analyst

Pinterest

Remote (San Francisco, CA) 7 days ago $123,696$254,667
SOC 2 CIS Controls ISO 27001 NIST CSF Risk Management Security Governance GRC Identity and Access Management Vulnerability Management Endpoint Security Third-party Risk Audit Support Control Testing Security Awareness Training
4+ yrs exp Remote

Senior Security Analyst

Microsoft

22 days ago $119,800$234,700
Kusto SQL Azure M365 Sentinel Defender XDR MITRE ATT&CK SIEM GitHub Actions Entra ID Threat Hunting Root Cause Analysis Forensics Reverse Engineering AI Copilot
4+ yrs exp Hybrid

Security Engineer, GRC

Plaid

San Francisco, CA +2 57 days ago $156,000$213,600
Python SQL AWS Terraform CI/CD OPA Rego Sentinel Policy-as-Code OpenAI Claude SOC 2 ISO 27001 NIST CSF FedRAMP Mode GitHub API

Lead Security Engineer, GRC

Anduril Industries

Costa Mesa, CA 168 days ago $166,000$253,000
Go Python Rust Terraform AWS CDK CMMC NIST 800-171 FedRAMP SOC 2 APIs Data Pipelines Kubernetes CSPM STIG ConMon Security Data Lakes Log Aggregation
6+ yrs exp

Lead Security Engineer, GRC

Anduril Industries

Boston, MA 16 days ago $166,000$253,000
Python Go Rust Terraform AWS CDK CMMC NIST 800-171 FedRAMP SOC 2 APIs Data Pipelines Kubernetes CSPM STIG ConMon Security Data Lakes
6+ yrs exp

Lead Security Engineer, GRC

Anduril Industries

Washington, DC 16 days ago $166,000$253,000
Go Python Rust Terraform AWS CDK CMMC NIST 800-171 FedRAMP SOC 2 APIs Data Pipelines Kubernetes CSPM STIG ConMon Security Data Lakes Log Aggregation
6+ yrs exp