About the Role
Long Finch Technologies is seeking an experienced Security Analyst / Engineer to support the security posture of Salesforce Service Cloud (SFSC) for its client, lululemon.
This role focuses on vulnerability management, security incident response, application security, security remediation, and security assessments. You will work closely with internal security and engineering teams as well as external security vendors to identify risks, coordinate remediation, and strengthen the overall security posture of the platform.
The position is based in Seattle, Washington, with a hybrid schedule requiring three days onsite. Local candidates are required.
Key Responsibilities
Triage and prioritize security vulnerabilities identified through internal security scans.
Assess vulnerabilities based on severity, exploitability, and business impact.
Drive and coordinate vulnerability remediation activities.
Plan and coordinate security patches and hotfixes with application and engineering teams.
Lead and support security incident response, including investigation, remediation, documentation, and post-incident reviews.
Coordinate penetration testing activities with internal security teams and external security vendors.
Support security assessments and provide application security guidance for Salesforce Service Cloud changes.
Collaborate with security and engineering teams on exploit assessment and remediation planning.
Maintain accurate security documentation covering vulnerabilities, incidents, and remediation status.
Proactively identify security risks and recommend improvements to strengthen the platform's security posture.
Support application security activities across the software development lifecycle.
Contribute to security analysis involving application code, APIs, dependencies, and threat scenarios.
Required Qualifications
5+ years of professional experience in one or more of the following:
Cybersecurity
Application Security
Security Engineering
Vulnerability Management
Strong experience with vulnerability management and security incident response.
Hands-on experience with:
Security scanning
Vulnerability triage
Risk assessment
Security remediation
Experience coordinating penetration testing and security assessments.
Strong understanding of Application Security principles and security risk management.
Experience collaborating with:
Internal security teams
Application and engineering teams
External security vendors
Strong analytical and problem-solving capabilities.
Excellent communication and documentation skills.
Ability to coordinate multiple security remediation activities and stakeholders.
Preferred Qualifications
Experience with Salesforce Service Cloud / Salesforce Security.
Knowledge of OWASP and common application security vulnerabilities.
Experience with enterprise security scanning tools.
Familiarity with vulnerability management platforms.
Experience with SIEM tools.
Relevant security certifications such as:
Security+
CySA+
CEH
GSEC
CISSP
Application Security Expertise
Experience in the following application security areas is valuable:
SAST — Static Application Security Testing
DAST — Dynamic Application Security Testing
SCA — Software Composition Analysis
API Security
Secure Code Review
Threat Modeling
Vulnerability Assessment
Security Remediation
Application Security Testing
Security & Risk Management Focus
The role combines hands-on technical security work with risk assessment and stakeholder coordination.
Key areas include:
Vulnerability identification and prioritization
Exploitability assessment
Business-impact analysis
Security patch management
Incident investigation
Incident remediation
Penetration testing
Security assessments
Application security guidance
Risk mitigation
Security documentation
Remediation tracking
Salesforce Security
The Security Analyst / Engineer will support the security of Salesforce Service Cloud, helping ensure that application changes and integrations meet appropriate security expectations.
Responsibilities may involve assessing security risks associated with platform changes, coordinating remediation activities, and working with engineering and security stakeholders to address identified vulnerabilities.
Incident Response
You will participate in the full incident-response lifecycle, including:
Initial investigation and triage
Root-cause analysis
Remediation coordination
Documentation
Stakeholder communication
Post-incident review
Follow-up security improvements
Collaboration & Stakeholder Management
This role requires strong cross-functional collaboration. You will coordinate with:
Internal Cybersecurity Teams
Application Security Teams
Software Engineering Teams
Salesforce / Application Teams
External Security Vendors
Penetration Testing Teams
Business Stakeholders
Clear communication and thorough documentation are essential for maintaining visibility into security risks, incidents, and remediation progress.
Work Arrangement
- Location: Seattle, Washington
- Schedule: Hybrid
- Onsite Requirement: 3 days per week
- Candidate Requirement: Local Seattle-area candidates
The role combines onsite collaboration with hybrid working flexibility.
Ideal Candidate Profile
The ideal candidate is an experienced cybersecurity professional with a strong background in vulnerability management, application security, incident response, and security remediation.
You should be comfortable analyzing security findings, assessing business and technical risk, coordinating remediation with engineering teams, supporting penetration testing, and communicating security issues clearly to both technical and non-technical stakeholders.
Experience securing Salesforce Service Cloud and familiarity with modern application security testing practices will be particularly relevant.
Core Competencies
Cybersecurity
Security Engineering
Application Security
Vulnerability Management
Incident Response
Risk Assessment
Vulnerability Triage
Security Remediation
Penetration Testing
Security Assessments
Salesforce Service Cloud Security
OWASP
SAST / DAST / SCA
API Security
Threat Modeling
SIEM
Security Scanning
Security Documentation
Stakeholder Management
Incident Investigation
Problem Solving
Mention you found this on Data First Jobs — it helps us bring you more roles like this.
Security Analyst
Torentify
Similar Analytics Jobs
View all Analytics jobs→Huntress
Staff CSIRT Analyst
Confidential
IT Systems Analyst - (Application Support)
Springs Window Fashions
Product Configuration Business Analyst
CACI International Inc
Operations Analyst
CACI International Inc
Manufacturing Finance Analyst
CACI International Inc
Cyber Analyst
Like this role? Get carefully selected jobs like it, twice a week, straight to your inbox.
Free, no spam. Unsubscribe anytime.