高级产品安全工程师
Senior Product Security Engineer
为什么选择Harvey
在Harvey,我们正在改变法律和专业服务的运作方式。通过结合前沿的代理AI、企业级平台和深厚的专业知识,我们正在重塑未来数十年的关键知识工作。
这是一个难得的机会,帮助打造一家具有时代意义的公司,在真正的转折点上参与其中。我们拥有强大的产品与市场匹配度和世界级的投资支持。我们正在快速扩展,并实时定义一个新类别。这项工作充满雄心,标准很高,个人、职业和财务上的成长机会无与伦比。
我们的团队行动迅速,有责任感,并对使命有着深刻的承诺——以高强度运作,贴近客户,不断追求卓越。我们秉持三个价值观:果断、简洁、工作未完成。我们在明确判断的基础上快速行动,而非等待完美信息;我们相信简洁才是可扩展的;我们从不满足于现状。如果你希望与志同道合、有同样激情的人一起完成职业生涯中最出色的工作,我们期待与你共同创造。
在Harvey,专业服务的未来正在今天被书写——而我们才刚刚开始。
职位概述
作为Harvey产品安全团队的高级软件工程师,你将是一个关键的技术贡献者,塑造我们的AI平台如何构建安全性。我们存储并处理客户最敏感的数据,因此安全性在产品的整个生命周期中都是重中之重。你将负责关键产品区域的安全性,进行深入的漏洞研究和代码审查,并与工程团队紧密合作,提高你在所工作的领域中的安全标准(包括人类和代理)。你将在Harvey平台上实现技术和安全功能。
我们的安全计划由我们集体的进攻性安全经验驱动:以白帽身份入侵其他公司的系统,应对真实的安事件,并从其他公司的数据泄露中学习。我们定期与外部安全公司进行渗透测试和红队演练。同时,我们都是软件工程师——每天提交代码,以工程优先的思维看待安全。
你将负责
- 协助定义并实施你所合作团队的安全标准
- 在开发的每个阶段融入安全设计原则
- 负责并审查
查看英文原文
WHY HARVEY
At Harvey, we’re transforming how legal and professional services operate. By combining frontier agentic AI, an enterprise-grade platform, and deep domain expertise, we’re reshaping how critical knowledge work gets done for decades to come.
This is a rare chance to help build a generational company at a true inflection point. We have strong product-market fit and world-class investor support. We’re scaling fast and defining a new category in real time. The work is ambitious, the bar is high, and the opportunity for growth — personal, professional, and financial — is unmatched.
Our team moves fast, takes ownership, and is deeply committed to the mission — operating with intensity, staying close to our customers, and pushing each other for excellence. We live by three values: Decisiveness, Simplicity, and Job's Not Finished. We act quickly on clear judgment over perfect information, we believe simplicity is what scales, and we're never satisfied with where we are. If you want to do the best work of your career alongside people who share that drive, we'd love to build with you.
At Harvey, the future of professional services is being written today — and we’re just getting started.
ROLE OVERVIEW
As a Senior Software Engineer on the Product Security team at Harvey, you'll be a key technical contributor shaping how security is built into our AI platform. We store and process our customers’ most sensitive data, and as a result, security is paramount at every stage of our product lifecycle. You'll own the security of critical product areas, conduct deep vulnerability research and code review, and partner closely with engineering teams to raise the security bar in the areas you work in (both for humans and agents). You’ll implement both technical controls and security features within the Harvey platform.
Our security program is driven by our collective offensive security experience: breaking into systems at other companies (in white-hat capacities), responding to real security incidents, and learning from other companies’ data breaches. We regularly conduct penetration tests and red team exercises with external security firms. At the same time, we are all software engineers - contributing code daily and approaching security with an engineering-first mindset.
WHAT YOU’LL DO
- Help define and implement security standards across the teams you partner with
- Incorporate secure design principles at every stage of development
- Own and review security-critical code across key parts of the product, including authentication and access control
- Build secure-by-default libraries and tooling that make secure path easier for the engineers
- Drive mitigation during security-related incidents, working cross-functionally as needed with Detection & Response as well as other teams
- Mentor engineers and raise the security bar across teams through code reviews, design reviews, and technical guidance
WHAT YOU HAVE
- 5+ years of experience in product security, application security, offensive security, and/or security-focused software engineering
- Long track record of identifying and remediating software vulnerabilities, demonstrated through CVEs, bug bounty awards, published research, or prior work experience
- Ability to collaborate on cross-functional security initiatives and influence engineering teams on security best practices
- Experience educating engineers to improve security practices across a team
- Strong programming skills with demonstrated experience writing high-quality, production software
- Strong communication and collaboration skills across technical and non-technical audiences
- Track record of executing on complex security projects and delivering measurable security improvements
NICE TO HAVE
- Experience building security programs or practices at hyper-growth startups
- Background with cloud environments (Azure, GCP, AWS) and cloud-native security patterns
- Experience with AI/ML systems and emerging security considerations for LLM-based applications
COMPENSATION RANGE
$188,000-282,000 USD
DEPENDING ON YOUR LOCATION, AN APPLICANT PRIVACY NOTICE MAY APPLY TO YOU. YOU CAN FIND ALL OF OUR APPLICANT PRIVACY NOTICES [HERE https://www.notion.so/harveyai/Harvey-Candidate-Privacy-Policies-319ac3fcdd7a803bb807d5094f249922].
#LI-KV1
Harvey is an equal opportunity employer and does not discriminate on the basis of race, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition, or any other basis protected by law.
We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made by emailing accommodations@harvey.ai