Jobs Companies Harvey Staff Product Security Engineer

Sobre esta vaga de Staff Product Security Engineer na Harvey

Harvey · Híbrido · New York

Why Harvey

At Harvey, we’re transforming how legal and professional services operate. By combining frontier agentic AI, an enterprise-grade platform, and deep domain expertise, we’re reshaping how critical knowledge work gets done for decades to come.

This is a rare chance to help build a generational company at a true inflection point. With 2400+ customers in 70+ countries, strong product-market fit, and world-class investor support, we’re scaling fast and defining a new category in real time. The work is ambitious, the bar is high, and the opportunity for growth — personal, professional, and financial — is unmatched.

Our team moves fast, takes ownership, and is deeply committed to the mission — operating with intensity, staying close to our customers, and pushing each other for excellence. We live by three values: Decisiveness, Simplicity, and Job's Not Finished. We act quickly on clear judgment over perfect information, we believe simplicity is what scales, and we're never satisfied with where we are. If you want to do the best work of your career alongside people who share that drive, we'd love to build with you.

At Harvey, the future of professional services is being written today — and we’re just getting started.

Role Overview

As a Staff Software Engineer on the Product Security team at Harvey, you'll play a critical role in shaping how security is built into our AI platform from the ground up. We store and process our customers’ most sensitive data, and as a result, security is paramount at every stage of our product lifecycle. You'll take ownership of securing critical parts of the product while driving high-leverage security initiatives that raise the bar for the entire engineering org — balancing hands-on technical work with cross-functional leadership and mentorship. This is a rare opportunity to define and build a product security program at a company scaling fast.

Our security program is driven by our collective offensive security experience: breaking into systems at other companies (in white-hat capacities), responding to real security incidents, and learning from other companies’ data breaches. We regularly conduct penetration tests and red team exercises with external security firms. At the same time, we are all software engineers - contributing code daily and approaching security with an engineering-first mindset.

What You'll Do

  • Define and own the product security roadmap, prioritizing initiatives based on risk, business impact, and engineering org maturity.

  • Establish and evolve security posture across the engineering organization, setting standards that scale with the company

  • Partner with Product Engineering, Infrastructure, and Platform teams to incorporate secure design principles at every stage of development

  • Own and review security-critical code across key parts of the product, including authentication and access control

  • Architect secure-by-default libraries and tools that make the secure path the easiest choice for developers

  • Drive mitigation strategies during security-related incident responses, coordinating cross-functional efforts

  • Mentor engineers and raise the security bar across teams through code reviews, design reviews, and technical guidance

What You Have

  • 8+ years of experience in product security, application security, offensive security, and/or security-focused software engineering

  • Long track record of identifying and remediating software vulnerabilities, demonstrated through CVEs, bug bounty awards, published research, or prior work experience

  • Track record of leading complex cross-functional security initiatives and delivering measurable improvements, with demonstrated ability to influence engineering teams without direct authority.

  • Experience mentoring senior engineers and developing security talent within an engineering organization

  • Strong programming skills with demonstrated experience writing high-quality, production software

  • Excellent communication and collaboration skills, particularly when translating security risks into business terms for non-security stakeholders

    Nice to Have

    • Experience building security programs or practices at hyper-growth startups

    • Background with cloud environments (Azure, GCP, AWS) and cloud-native security patterns

    • Experience with AI/ML systems and emerging security considerations for LLM-based applications

Compensation

$220,000 - $330,000

Depending on your location, an Applicant Privacy Notice may apply to you. You can find all of our Applicant Privacy Notices [here].

#LI-KV1

Harvey is an equal opportunity employer and does not discriminate on the basis of race, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition, or any other basis protected by law.

We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made by emailing accommodations@harvey.ai

Pronto para se candidatar à Harvey?
Candidatar-se à Harvey

Como este salário de Application Security se compara

Esta vaga paga $275,000/yracima da faixa típica para vagas de Application Security.

$170,300 a mediana $220,525 $296,823

Faixa típica $188,125–$265,575/yr, com base em 25 vagas de Application Security comparáveis na JobsRadar (pagamento anualizado em USD). Ver insights salariais de Application Security →

Vagas semelhantes

Mercor
Security Engineer, Application Security
Mercor
⚡ Candidate-se cedo San Francisco or NYC Presencial $130,000–$400,000
● Nova 👁 Vista ✓ Candidatada há 16h
Compass
Staff Security Engineer, Product Security and Architecture
Compass
⚡ Candidate-se cedo New York City Presencial $210,000–$234,100
● Nova 👁 Vista ✓ Candidatada há 18h
VE
Product Security Engineer
Vercel
⚡ Candidate-se cedo Hybrid - San Francisco, New Yo... Híbrido $208,000–$312,000
● Nova 👁 Vista ✓ Candidatada há 20h
Oscar Health
Senior Product Security Engineer I
Oscar Health
⚡ Candidate-se cedo New York, New York, United Sta... Presencial $215,176–$215,176
● Nova 👁 Vista ✓ Candidatada há 1d
Gemini
Staff Application Security Engineer
Gemini
⚡ Candidate-se cedo New York, New York; Miami, Flo... · local restrito $168,000–$240,000
● Nova 👁 Vista ✓ Candidatada há 2d
StubHub
Software Engineer II - Product Security
StubHub
⚡ Candidate-se cedo Los Angeles, California, Unite... Híbrido $165,000–$200,000
● Nova 👁 Vista ✓ Candidatada há 1sem
Robinhood
Security Engineer, Application Security
Robinhood
⚡ Candidate-se cedo Bellevue, WA; Menlo Park, CA Presencial $157,000–$185,000
● Nova 👁 Vista ✓ Candidatada há 1sem
K Health
Senior Security Engineer - Application Security
K Health
⚡ Candidate-se cedo New York, NY Presencial $150,000–$200,000
● Nova 👁 Vista ✓ Candidatada há 1sem
Anthropic
Staff+ Application Security Engineer - M&A
Anthropic
⚡ Candidate-se cedo Remote-Friendly (Travel-Requir... · local restrito $320,000–$485,000
● Nova 👁 Vista ✓ Candidatada há 1sem

Cadastre-se para receber sugestões sob medida com base nas vagas que você abre e nas buscas que você salva.

Mais vagas na Harvey

Ver todas as vagas na Harvey →

Candidatar-se agora
🤖

Opa — calma aí

A JobsRadar foi feita para pessoas de verdade passando por um momento difícil na busca por emprego — não para requisições automatizadas. Você está clicando rápido demais e agora está temporariamente bloqueado.

Volte mais tarde. Se você está mesmo procurando emprego, estamos com você — apenas aja como um ser humano.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Ganhe vantagem na sua busca por emprego.

Entre no nosso canal do Telegram para o que ajuda você a conseguir a vaga — referências salariais, o pulso semanal do mercado e avisos de novos recursos. Sem spam, só sinal.

Entre no canal — é grátis