- Job type
- Full-time
- Work mode
- Hybrid
- Level
- Senior
- Department
- Information Technology
- Experience
- 5+ years experience
- Posted
- Aug 21, 2026
About the role
Role Overview
As a Senior Software Engineer on the Product Security team at Harvey, you will have the opportunity to build security directly into the product. Harvey stores and processes our customers’ most sensitive data and our entire business model depends on a foundation At Harvey, you will find that security is paramount at every stage of our product lifecycle. In this role you will drive high-leverage security initiatives that raise the bar for the entire company — balancing hands-on technical work with cross-functional leadership and mentorship. This is a rare opportunity to design and build a world-class product security program at one of the fastest growing AI-native companies.
The Harvey Security organization has an engineering-first mindset and team members bring a variety of skills and come from various backgrounds. What the team shares in common is a desire to drive impact at scale and solve complex security challenges together. The problems we are solving today are often unsolved in the industry - making this an incredible career and personal growth opportunity.
What You’ll Do
- Lead critical security initiatives with Engineering, Product and Design.
- Build cross-functional partnerships and repeatable business processes at scale.
- Define and implement product security standards.
- Incorporate secure design principles at every stage of development.
- Proactively identify potential threats and vulnerabilities in our systems.
- Develop and implement solutions to safeguard Harvey products.
- Review product features and engineering code changes.
- Drive secure baselines and security-first principles company-wide.
- Build secure-by-default libraries and tooling that enable product velocity at scale.
- Mentor and guide engineers through code reviews, design reviews, and technical guidance.
What You Have
- 5+ years of experience in product security, application security, offensive security, and/or security-focused software engineering.
- Experience identifying and remediating software vulnerabilities, demonstrated through CVEs, bug bounty awards, published research, or prior work experience.
- Experience delivering high-quality, production software.
- Ability to drive prioritization and tradeoff discussions with cross functional teams.
- Excellent communication and collaboration skills, particularly when translating security risks into business terms for non-security stakeholders.
- Excel at measuring and communicating security metrics and business risk reduction as it relates to product security investments.
- Experience mentoring engineers across engineering through code and design reviews.
- Proactive approach to solving complex security challenges.
- Positive attitude and willingness to learn.
Nice to Have
- Experience building security programs or practices at hyper-growth startups.
- Background with cloud environments (Azure, GCP, AWS) and cloud-native security patterns.
- Experience with AI/ML systems and emerging security considerations for LLM-based applications.
We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made by emailing [email protected]