Role at a glance
- Salary
- $188K – $282K/yr
- Location
- San Francisco, United States New York, United States
- Work arrangement
- Hybrid
- Employment
- Full-time
- Experience
- 5+ years of experience in product security, application security, offensive security, and/or security-focused software engineering
Spotted an issue?
We’ll check it against the original posting.
Role Summary
The Senior Software Engineer on Harvey’s Product Security team builds security into the product and drives initiatives to strengthen security across the company. The role combines hands-on technical work with cross-functional leadership and mentorship.
What You'll Do
- Lead security initiatives with Engineering, Product, and Design, and build cross-functional partnerships and repeatable processes.
- Define and implement product security standards and incorporate secure design principles throughout development.
- Identify potential threats and vulnerabilities and develop solutions to safeguard Harvey products.
- Review product features and engineering code changes.
- Drive secure baselines and security-first principles company-wide, and build secure-by-default libraries and tooling.
- Mentor engineers through code reviews, design reviews, and technical guidance.
Generated from the employer's posting. Verify important details before applying.
View full postingQualifications
At least 5 years of experience in product security, application security, offensive security, and/or security-focused software engineering; experience identifying and remediating software vulnerabilities and delivering production software. The role also requires cross-functional prioritization, communication, security metrics, mentoring, and a proactive approach to solving security challenges.
Required
- 5+ years of experience in product security, application security, offensive security, and/or security-focused software engineering
- Experience identifying and remediating software vulnerabilities, demonstrated through CVEs, bug bounty awards, published research, or...
- Experience delivering high-quality, production software
- Ability to drive prioritization and tradeoff discussions with cross functional teams
- Excellent communication and collaboration skills, particularly when translating security risks into business terms for non-security...
- Excel at measuring and communicating security metrics and business risk reduction as it relates to product security investments
- Experience mentoring engineers across engineering through code and design reviews
- Proactive approach to solving complex security challenges
Preferred
- Experience building security programs or practices at hyper-growth startups
- Background with cloud environments (Azure, GCP, AWS) and cloud-native security patterns
- Experience with AI/ML systems and emerging security considerations for LLM-based applications
Original job description
Content provided by the employer
Original job description
Content provided by the employer
Why Harvey
At Harvey, we’re transforming how legal and professional services operate. By combining frontier agentic AI, an enterprise-grade platform, and deep domain expertise, we’re reshaping how critical knowledge work gets done for decades to come.
This is a rare chance to help build a generational company at a true inflection point. We have strong product-market fit and world-class investor support. We’re scaling fast and defining a new category in real time. The work is ambitious, the bar is high, and the opportunity for growth — personal, professional, and financial — is unmatched.
Our team moves fast, takes ownership, and is deeply committed to the mission — operating with intensity, staying close to our customers, and pushing each other for excellence. We live by three values: Decisiveness, Simplicity, and Job's Not Finished. We act quickly on clear judgment over perfect information, we believe simplicity is what scales, and we're never satisfied with where we are. If you want to do the best work of your career alongside people who share that drive, we'd love to build with you.
At Harvey, the future of professional services is being written today — and we’re just getting started.
Role Overview
As a Senior Software Engineer on the Product Security team at Harvey, you will have the opportunity to build security directly into the product. Harvey stores and processes our customers’ most sensitive data and our entire business model depends on a foundation At Harvey, you will find that security is paramount at every stage of our product lifecycle. In this role you will drive high-leverage security initiatives that raise the bar for the entire company — balancing hands-on technical work with cross-functional leadership and mentorship. This is a rare opportunity to design and build a world-class product security program at one of the fastest growing AI-native companies.
The Harvey Security organization has an engineering-first mindset and team members bring a variety of skills and come from various backgrounds. What the team shares in common is a desire to drive impact at scale and solve complex security challenges together. The problems we are solving today are often unsolved in the industry - making this an incredible career and personal growth opportunity.
What You’ll Do
Lead critical security initiatives with Engineering, Product and Design.
Build cross-functional partnerships and repeatable business processes at scale.
Define and implement product security standards.
Incorporate secure design principles at every stage of development.
Proactively identify potential threats and vulnerabilities in our systems.
Develop and implement solutions to safeguard Harvey products.
Review product features and engineering code changes
Drive secure baselines and security-first principles company-wide.
Build secure-by-default libraries and tooling that enable product velocity at scale.
Mentor and guide engineers through code reviews, design reviews, and technical guidance
What You Have
5+ years of experience in product security, application security, offensive security, and/or security-focused software engineering
Experience identifying and remediating software vulnerabilities, demonstrated through CVEs, bug bounty awards, published research, or prior work experience.
Experience delivering high-quality, production software.
Ability to drive prioritization and tradeoff discussions with cross functional teams.
Excellent communication and collaboration skills, particularly when translating security risks into business terms for non-security stakeholders.
Excel at measuring and communicating security metrics and business risk reduction as it relates to product security investments.
Experience mentoring engineers across engineering through code and design reviews.
Proactive approach to solving complex security challenges.
Positive attitude and willingness to learn.
Nice to Have
Experience building security programs or practices at hyper-growth startups
Background with cloud environments (Azure, GCP, AWS) and cloud-native security patterns
Experience with AI/ML systems and emerging security considerations for LLM-based applications
Harvey is an equal opportunity employer and does not discriminate on the basis of race, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition, or any other basis protected by law.
We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made by emailing [email protected]
About the company
Harvey
Startup
Harvey is an innovative technology company focused on streamlining the recruitment process through cutting-edge artificial intelligence solutions. By leveraging data-driven insights, Harvey enhances the connection between employers and job seekers, making it easier for companies to find the right talent efficiently. With a commitment to improving the hiring experience for both candidates and organizations, Harvey is at the forefront of transforming traditional recruitment methods into a more effective, user-friendly approach.