Salesforce

Federal Compliance & Security Architect

Salesforce

AWS GovCloudMicrosoft Azure GovernmentNIST SP 800-53FIPS 140-2FIPS 140-3DoD Cloud Computing Security Requirements GuideContinuous MonitoringSystem Security PlansRisk Management FrameworkThird-Party Assessment Organization

About the Role

To get the best candidate experience, please consider applying for a maximum of 3 roles within 12 months to ensure you are not duplicating efforts.

Job Category

Software Engineering

Job Details

About Salesforce

Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action. Tech meets trust. And innovation isn’t a buzzword — it’s a way of life. The world of work as we know it is changing and we're looking for Trailblazers who are passionate about bettering business and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all.

Ready to level-up your career at the company leading workforce transformation in the agentic era? You’re in the right place! Agentforce is the future of AI, and you are the future of Salesforce.

Applications will be accepted until 10/12/2026.

The Experience:

We are seeking a Principal Federal Compliance & Security Architect to serve as the chief technical authority for our federal platform footprint. In this role, you will define and inform technical vision and bridge high-level compliance directives with robust cloud engineering to achieve and maintain Federal Risk and Authorization Management Program (FedRAMP) Moderate, High, and Department of Defense (DoD) Impact Level 5 (IL5) authorizations. You will partner with the Engineering team to drive systemic engineering excellence, align cross-functional initiatives with long-range strategic goals, and act as a trusted advisor to executive leadership, key customers, and federal authorizing bodies. The incumbent will have deep experience in Federal security and compliance requirements and focus on identifying and risks and mitigation strategies to deploy secure and compliant products.
 

What You'll Actually Be Doing:

Architectural Leadership & Platform Strategy:

  • Partner with Engineering and Product leadership to establish architectural standards, ensure technical quality, and design highly available, resilient federal platforms capable of achieving Federal Risk and Authorization Management Program (FedRAMP) High and Department of Defense (DoD) Impact Level 5 (IL5) authorizations.
  • Evaluate technical feasibility for complex architecture initiatives, perform architectural governance reviews to ensure enterprise-wide alignment with a focus in proactive risk identification and mitigation strategy development and implementation.
  • Establish strategic architectural principles and reusable design frameworks that empower engineering teams with compliant-by-default guidance rather than prescriptive constraints.
  • Explore emerging technologies, cloud design patterns, and open-source innovations, quantifying trade-offs between delivery velocity, risk profile, and federal compliance mandates.


Federal Security & Compliance Engineering:

  • Translate National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53 controls, Department of Defense (DoD) Cloud Computing Security Requirements Guide (SRG), and Federal Information Processing Standards (FIPS) requirements into scalable, high-performance cloud architectures across Amazon Web Services (AWS) GovCloud, Microsoft Azure Government, or dedicated enclaves.
  • Drive end-to-end accountability for compliance and security architecture across the platform lifecycle, proactively closing structural gaps in technical and security requirements.
  • Advance engineering excellence by defining standardized frameworks, refining Continuous Monitoring (ConMon) practices, and optimizing developer productivity.
  • Author high-impact architecture specifications, System Security Plans (SSPs), and portfolio strategy documents tailored for executive, technical, and regulatory audiences.
     

Operational Excellence & Delivery:

  • Conduct rigorous architecture and code reviews, drive Root-Cause Analyses (RCAs) to permanent resolution, and ensure alignment across technical deliverables and organizational goals.
  • Partner with Product Management on Long-Range Planning (LRP), leveraging data-driven insights to align release trajectories with strategic federal platform vision.
  • Monitor execution risk, optimize continuous delivery feedback loops, resolve operational friction, and balance strategic business mandates with technical trade-offs.
  • Evangelize incremental delivery models and maintain refined engineering backlogs that balance continuous compliance posture with rapid technical innovation.
  • Analyze service health metrics, advocate for true service ownership across engineering teams, and systematically identify and remediate long-term technical debt.

Stakeholder Engagement & Leadership:

  • Engage directly with key senior leaders, internal and external customers to align custom requirements, platform strategy with market trends, and champion customer needs and learnings internally.
  • Advise executive leadership on strategic architectural choices while serving as the primary technical liaison to Third-Party Assessment Organizations (3PAOs), sponsoring agencies, and Authorizing Officials (AOs).
  • Oversee cross-product technical alignment, guide platform consumption models, and ensure seamless, secure transitions into production federal environments.
  • Articulate complex security and architectural concepts to executive and customer leadership through tailored messaging, active listening, and concise presentation.
  • Coach and mentor architects and engineering leaders in soft skills, business acumen, and systemic problem-solving to build organizational capability.

You're Our Person If:

  • 12+ years of experience in security architecture, cloud engineering, or systems design, with 5+ years leading major federal compliance initiatives (Federal Risk and Authorization Management Program [FedRAMP] Moderate/High, Department of Defense [DoD] Impact Level 5 [IL5]).
  • Proven track record operating as a Principal Architect, driving cross-organizational alignment, technical strategy, and multi-year roadmaps across engineering organizations.
  • Deep technical mastery of National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53, NIST SP 800-37 Risk Management Framework (RMF), Federal Information Processing Standards (FIPS) 140-2/140-3, and Department of Defense (DoD) Cloud Computing Security Requirements Guide (SRG) requirements.
  • Hands-on experience designing and securing cloud architectures within Amazon Web Services (AWS) GovCloud, Microsoft Azure Government, or equivalent federal environments.
  • Direct experience acting as a technical lead through Third-Party Assessment Organization (3PAO) assessments, agency sponsorship, and Federal Risk and Authorization Management Program Program Management Office (FedRAMP PMO) / Department of Defense Authorizing Official (DoD AO) authorization cycles.
  • Exceptional written and verbal communication skills, with demonstrated ability to present complex technical topics to C-level executives and federal officials.
  • Relevant certifications preferred (e.g., Certified Information Systems Security Professional [CISSP], Certified Cloud Security Professional [CCSP], Certified Information Security Manager [CISM]).


Even Better If:

  • Active or eligible-for United States federal security clearance (Secret or Top Secret) preferred.

LI-Y*

Unleash Your Potential

When you join Salesforce, you’ll be limitless in all areas of your life. Our benefits and resources support you to find balance and be your best, and our AI agents accelerate your impact so you can do your best. Together, we’ll bring the power of Agentforce to organizations of all sizes and deliver amazing experiences that customers love. Apply today to not only shape the future — but to redefine what’s possible — for yourself, for AI, and the world.

Accommodations

If you need a reasonable accommodation during the application or the recruiting process, please submit a request via this Accommodations Request Form.

Please note that Salesforce uses artificial intelligence (AI) tools to help our recruiters assess and evaluate candidates’ resumes and qualifications throughout the recruiting process. Humans will always make any candidate selection and hiring decisions. Please see our Candidate Privacy Statement for more information about how we use your personal data and your rights, including with regard to use of AI tools and opt out options.

Posting Statement

Salesforce is an equal opportunity employer and maintains a policy of non-discrimination with all employees and applicants for employment. What does that mean exactly? It means that at Salesforce, we believe in equality for all. And we believe we can lead the path to equality in part by creating a workplace that’s inclusive, and free from discrimination. Know your rights: workplace discrimination is illegal. Any employee or potential employee will be assessed on the basis of merit, competence and qualifications – without regard to race, religion, color, national origin, sex, sexual orientation, gender expression or identity, transgender status, age, disability, veteran or marital status, political viewpoint, or other classifications protected by law. This policy applies to current and prospective employees, no matter where they are in their Salesforce employment journey. It also applies to recruiting, hiring, job assignment, compensation, promotion, benefits, training, assessment of job performance, discipline, termination, and everything in between. Recruiting, hiring, and promotion decisions at Salesforce are fair and based on merit. The same goes for compensation, benefits, promotions, transfers, reduction in workforce, recall, training, and education.

In the United States, compensation offered will be determined by factors such as location, job level, job-related knowledge, skills, and experience. Certain roles may be eligible for incentive compensation, equity, and benefits. Salesforce offers a variety of benefits to help you live well including: time off programs, medical, dental, vision, mental health support, paid parental leave, life and disability insurance, 401(k), and an employee stock purchasing program. More details about company benefits can be found at the following link: https://www.salesforcebenefits.com.

At Salesforce, we believe in equitable compensation practices that reflect the dynamic nature of labor markets across various regions. The typical base salary range for this position is $218,400 - $365,200 annually. In select cities within the San Francisco and New York City metropolitan area, the base salary range for this role is $263,200 - $401,400 annually. The range represents base salary only, and does not include company bonus, incentive for sales roles, equity or benefits, as applicable.

You'll be redirected to Salesforce's application page

Job Details

Salary

$218K–$365K

Location

United States - Virginia Washington DC Metro

Job type

Full-time

Category

Cloud Security

Experience

12+ years

Posted

Today

Job Highlights

  • $218K–$365K salary
  • 12+ years level role
  • 100% Remote — open to candidates in United States

About Salesforce

This job is hosted by Salesforce. Clicking Apply opens their site.

More jobs from Salesforce on RC9

Remote Work Style

Mixed

Mix of flexible and scheduled meetings

Your Match

See how well your skills line up with this role, and what you're missing.

AI Cover Letter

Generate a cover letter tailored to this job from your profile.