Jobs / United States / Salesforce INC

Incident Responder

Salesforce INC · 🇺🇸 2 Locations

Sponsorship verdict

Sponsorship possible

One solid signal, not two — worth applying, and worth asking about sponsorship early.

  • Employer is on a government sponsor recordThe US Department of Labor certified 1,544 H-1B/E-3 labor condition applications for this employer between Oct 2025 and Jun 2026 (latest Jun 2026) — the step every H-1B hire needs first. USCIS also records 498 H-1B approvals in FY2023. Source: LCA disclosure data (US Department of Labor (OFLC)).
  • The posting doesn’t mention sponsorshipSilence isn’t a refusal — ask the recruiter before investing much time.
  • No salary bar for this routeH-1B has no fixed salary bar: the employer must pay at least the prevailing wage for the role and area. Cap-subject employers enter a lottery weighted by wage level. Source: https://www.federalregister.gov/documents/2025/12/29/2025-23853/weighted-selection-process-for-registrants-and-petitioners-seeking-to-file-cap-subject-h-1b, rules effective 2026-02-27.
  • What Salesforce INC paid sponsored hires in similar roles1 certified filing for “Sr. Incident Responder, CSIRT” (Information Security Analysts) in FL: $178k–$178k, median $178k. Most were filed at wage level IV (100%) — 4 lottery entries, ≈61% projected selection odds for cap-subject employers. Source: US Department of Labor LCA disclosure data (Oct 2025 – Jun 2026).
  • Last confirmed live 1 day agoWhen a source last listed this job as open.

US H-1B: cap-subject employers enter a lottery weighted by wage level — Level I gets 1 entry, Level IV gets 4 (DHS projected selection odds ≈15% at Level I to ≈61% at Level IV). Universities and non-profit research employers are cap-exempt. The $100,000 fee for new petitions from abroad is currently blocked by a court order (appeal pending).

A verdict summarises public evidence; it is not legal advice and never a guarantee — the employer and the immigration authority decide. Sign in to factor in where you can already work.

Start free →

Or apply yourself on the official page →

Sponsor Radar — Salesforce INC

1,544 H-1B filings certified since Oct 2025

The US Department of Labor certified 1,544 H-1B/E-3 labor condition applications for this employer between Oct 2025 and Jun 2026 (latest Jun 2026) — the step every H-1B hire needs first. USCIS also records 498 H-1B approvals in FY2023. Source: LCA disclosure data (US Department of Labor (OFLC)).

Past sponsorship or register membership never guarantees sponsorship for this vacancy or for you. Full Sponsor Radar for Salesforce INC →

About the role

To get the best candidate experience, please consider applying for a maximum of 3 roles within 12 months to ensure you are not duplicating efforts. Job Category Enterprise Technology & Infrastructure Job Details About Salesforce Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action. Tech meets trust. And innovation isn’t a buzzword — it’s a way of life. The world of work as we know it is changing and we're looking for Trailblazers who are passionate about bettering business and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all. Ready to level-up your career at the company leading workforce transformation in the agentic era? You’re in the right place! Agentforce is the future of AI, and you are the future of Salesforce. Job Description: The Experience Salesforce is seeking an Incident Responder to join our Computer Security Incident Response Team (CSIRT). The CSIRT provides around-the-clock security monitoring and rapid incident response across all Salesforce environments, acting as the last line of defense protecting company and customer data from security threats. As a key member of the Global CSIRT, you'll help protect Salesforce's critical infrastructure and customer data from evolving threats. This role operates from our 24x7 operations center and requires shift work, including on-call shifts and weekends. What You'll Actually Be Doing • Perform CSIRT's Tier 1 monitoring function around the clock, triaging and prioritizing security alerts to identify threats requiring escalation. • Support containment, eradication, and recovery efforts during security incidents, following established playbooks and guidance from senior team members. • Collaborate with engineering, business, and security teams to coordinate response efforts and drive organizational security improvements. • Document findings clearly and keep stakeholders informed with accurate incident notes and summaries throughout the response process. You're Our Person If... • You have 2+ years of experience in an IT operations environment, or 1+ years of specialized security operations experience. • You have foundational knowledge of information security, including current threats, best practices, network fundamentals, and common internet protocols (DNS, HTTP, HTTPS/TLS, SMTP). • You understand operating system administration and security controls for macOS, Microsoft Windows, and Linux/Unix, along with core concepts of incident response (phases of response, vulnerabilities vs. threats vs. actors, and Indicators of Compromise). • You're able to build strong working relationships across internal and external teams, and hold U.S. citizenship (born or naturalized, no dual citizenship) with the ability to pass a Minimum Background Investigation for a Moderate Public Trust position with the U.S. federal government. Even Better If... • You have hands-on experience with security infrastructure such as intrusion detection/response tools, WAFs, firewalls, proxies, antivirus, file integrity monitoring, and OS logs. • You have an in-depth understanding of the information security threat landscape, including attack vectors, tools, and best practices. • You've contributed to cross-functional, global security projects and enjoy continuously learning new skills and processes. • You hold relevant certifications (e.g., CompTIA Security+, BTL1, SANS GCFA, GCIH) or have a degree in Computer Science, Cybersecurity, or a related field, plus foundational understanding of GenAI, Agentic AI, and prompt engineering. This candidate must be a U.S. citizen (U.S. born or naturalized) who does not hold dual citizenship and agrees to complete a U.S. federal government Minim

View the official posting →

Source: Employer career site (Workday) First seen: 2026-10-01 Last confirmed: 2026-10-02 How our data works → Report this job

Similar opportunities