Veeva Systems
Application Security Architect
Full details on LinkedIn
The complete job description, requirements, and application details are available on the original posting.
About Veeva Systems
Veeva Systems Inc. is a prominent provider of cloud-based software solutions, primarily serving the life sciences industry. Founded in 2007 and based in Pleasanton, California, Veeva operates in over 150 countries with a workforce of more than 7,000 employees. The company specializes in industry-specific cloud applications that help organizations manage documents, data, workflows, and reporting in highly regulated environments. Veeva's offerings include a range of solutions built on the Vault platform, which supports various functions such as commercial CRM, safety management, medical affairs, quality and compliance, and research and development. These tools are designed to help life sciences companies streamline their processes, ensure compliance, and accelerate product delivery. Veeva is committed to customer and employee success, and it became the first publicly traded company to convert to a public benefit corporation in 2021, emphasizing its dedication to balancing the interests of all stakeholders.
Security at Veeva Systems
Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.
Security Philosophy
- Veeva's Application Security philosophy centers on a comprehensive monitoring and testing program.
- They prioritize identifying vulnerabilities through application, database, and network monitoring, supplemented by annual third-party penetration testing.
- Their approach emphasizes 'principles of least privileged access' and integrating security into the software development lifecycle through code analysis and security reviews.
- They view security as a collaborative effort, requiring role-based training and partnering with engineering teams to grow the program.
Security Team
- Veeva Systems' security organization is led by Dan Martin, Chief Information Security Officer, who oversees global cybersecurity across products and operations.
- Michael Vetri serves as the Director of Security Operations.
- The team includes specialized roles such as Application Security Architects and Vulnerability Management Engineers.
- While a full org chart is not public, job postings indicate the team is structured to partner with product engineering and other security leads to grow the program.
Key Initiatives
- Active initiatives at Veeva include the continued development of a vulnerability management lifecycle focused on automation and cross-company collaboration to prioritize risks.
- The team is also focused on 'Shift Left' activities such as performing code analysis and application security reviews during the development process.
- Additionally, they are implementing AI-driven tools to augment SOC operations and reduce manual effort for analysts.
- Annual third-party penetration testing remains a core recurring initiative.
Preparing for an AppSec interview?
Get the weekly briefing 2,000+ security pros trust.