✦ Luna Orbit — Software Engineering

Staff Security Software Engineer, Vulnerability Management - Slack

at Salesforce

📍 3 Locations Onsite 💰 $164K – $313K USD / year Posted April 01, 2026
Salary $164K – $313K USD / year
Type Not Specified
Experience senior
Exp. Years 8+ years
Category Software Engineering

Staff Software Engineer, Vulnerability Management at Slack (Salesforce) leading the architecture and roadmap for vulnerability management tooling and integration with scanners and downstream systems.

  • Own the technical architecture and roadmap for vulnerability management tooling, including systems that automate identification, prioritization, tracking, and remediation of vulnerabilities across diverse ecosystems and environments
  • Lead the design and development of scalable engineering solutions
  • Drive integration strategy across vulnerability scanners, aggregation pipelines, and downstream systems
  • Define and evolve metrics and reporting frameworks
  • Partner with cross-functional teams to embed security automation

Focus on Python-based tooling for vulnerability management, CI/CD pipelines, and cloud security; hands-on with vulnerability scanners and integration into SIEM/SOAR ecosystems; leadership and cross-functional collaboration.

The ideal candidate is a staff software engineer with 8+ years in software engineering and vulnerability management, deep Python skills, and a track record delivering end-to-end security-focused projects with strong cross-team collaboration.

U.S. Citizenship or Permanent Residency (Green Card holder). We are unable to provide visa sponsorship for this role.8+ years of industry software engineering experiencewith a meaningful portion of that spent in security engineeringplatform engineeringor infrastructure-adjacent domains.Deep proficiency in Pythonwith a strong track record of writing production-gradetestedmaintainable code in complex systems.Demonstrated experience owning and delivering end-to-end engineering projectsfrom early-stage design through production deployment and ongoing operation.Solid understanding of vulnerability management conceptsincluding how vulnerabilities are discoveredclassifiedprioritizedand remediated in enterprise environments.Experience building or maintaining integrations with security tooling such as vulnerability scannersSIEM systemsor similar platforms.Comfort working with CI/CD pipelinesversion control workflowsand modern software delivery practices.Experience working across teams and communicating technical concepts clearly to both engineers and non-technical stakeholders.Strong judgment in the face of ambiguityand a track record of asking the right questions before building rather than after.
Hands-on experience with vulnerability management tooling such as WizTenable/NessusTwistlockor similar productsparticularly in cloud or containerized environments.Familiarity with compliance frameworks relevant to government or regulated environmentssuch as FedRAMP or DoD IL5/IL6.Experience working with large-scale vulnerability aggregation systems or homegrown data pipelines that normalize findings across multiple scanners.Background in building automated remediation workflowssuch as automated PR generation for dependency vulnerabilities or patch orchestration across diverse package ecosystems.Experience with cloud environments (AWSAzureGCP) and containerized workloads at scale.Contributions to the security or software community through open-source projectspublished researchconference talksor similar.
PythonVulnerability ScannersWizTenable/NessusTwistlockCI/CDAWSAzureGoogle Cloud Platform
PythonVulnerability Management toolingVulnerability scannersCI/CD pipelinesCloud securitySecurity tooling integrationsGoDevOpsSoftware architectureCode reviewsMentorship
PythonVulnerability Management toolingVulnerability scannersCI/CD pipelinesCI/CDSecurity tooling integrationsCloud securityDevOpsSoftware architectureCode reviewsMentorshipTechnical leadership
leadershipmentorshipcommunicationcross-functional collaborationproblem-solving
Industry SaaS
Job Function Architect and deliver vulnerability management tooling and integrations at scale.
Role Subtype Senior Software Engineer
Tech Domains Python, Vulnerability Scanning, Cloud security, CI/CD, Security tooling integrations
pythonvulnerability managementvulnerability scannersci/cdcloud securitysecurity tooling integrationspython programmingvulnerability management toolingci/cd pipelinesproduction-grade codeteam leadershipcross-functionalleadershipsoftware architecture

8+ years of software engineering experience, Deep Python proficiency, Experience delivering end-to-end engineering projects

Apply for this Position →

Get matched to jobs like this

Luna finds roles that fit your skills and career goals — no endless scrolling required.

Create a Free Profile