The Salesforce Admins Podcast

Salesforce Security Made Simple with Invisibles, Configurables and Enhanceables

Nov 6, 2025
In this insightful discussion, Laura Pelkey and Kylie McKlveen from Salesforce dive into the evolving security landscape, warning about the sophistication of AI-driven attacks like phishing and deepfakes. They introduce a simple security framework consisting of invisibles—automated defenses, configurables—admin actions to enhance security, and enhanceables—advanced tools for sensitive data. Laura emphasizes the importance of auditing security settings and educating users, while Kylie highlights innovative features on the horizon to improve threat detection and compliance.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

Three-Layer Security Framework

  • Salesforce's security framework has three clear layers: invisibles, configurables, and enhanceables.
  • This model helps admins know what Salesforce handles, what they must set, and what to buy for extra protection.
ANECDOTE

24/7 Threat Hunting Team

  • Laura describes Salesforce's global Cybersecurity Operations Center doing 24/7 threat hunting for anomalies.
  • The team contacts customers immediately when they spot issues and helps resolve them.
ADVICE

Enforce Least Privilege

  • Apply the principle of least privilege when creating users and permission sets.
  • Limit permissions so compromised accounts cannot perform admin-level damage.
Get the Snipd Podcast app to discover more snips from this episode
Get the app