About the role
What will you do at Harness?
Harness is the AI Software Delivery Platform company, led by technologist and
entrepreneur Jyoti Bansal (founder of AppDynamics, acquired by Cisco for $3.7B).
Harness has raised approximately $570M in funding and is valued at $5.5B, backed
by leading investors including Goldman Sachs, Menlo Ventures, IVP, Unusual
Ventures, Citi Ventures, and more. As AI accelerates code creation, the real
bottleneck has shifted to everything after the code – testing, deployments,
application security, reliability, compliance, and cost optimization. Harness
brings AI and automation to this “outer loop,” helping teams ship software
faster while maintaining security and governance throughout the entire software
delivery lifecycle.
Powered by Harness AI and the Software Delivery Knowledge Graph, the Harness
Platform applies deep context and intelligent automation across the software
delivery lifecycle with governance and policy-driven controls embedded
throughout the platform.
Over the past year, Harness powered over 185M deployments, 82M builds, 18T flag
evaluations, 8M security scans, 9.1B optimized tests, 3T protected API calls,
and helped manage $2.8B in cloud spend — enabling customers like United
Airlines, Morningstar, and Choice Hotels to accelerate releases by up to 75%,
reduce cloud costs by up to 60%, and achieve 10x DevOps efficiency.
With a global team across 26 offices and 27 countries, Harness is shaping the
future of AI software delivery — and we’re looking for exceptional talent to
help us move even faster.
ABOUT THE ROLE
Product Security is responsible for ensuring the continuous security of Harness
customer-facing products and internal tools. The team is focused on proactively
discovering security weaknesses, driving and advising risk remediation, building
a paved road for developers to adopt secure development practices, and
developing partnerships with engineering and product teams to accelerate the
release of software with security by design.
The Senior Product Security Engineer is a highly skilled practitioner who drives
hands-on security work across the Harness platform. You will own technical
security initiatives end-to-end, partner closely with engineering and product
teams to identify and remediate vulnerabilities, and build tooling and processes
that elevate the security bar across our development lifecycle. This role is for
engineers who love to build, break, and secure complex systems.
WHAT YOU WILL DO
* Design and develop product security APIs, tools, and utilities for internal
and external stakeholders.
* Conduct threat modeling and secure design reviews for application backend
services and business integrations.
* Perform advanced penetration tests and adversarial attack simulations against
Harness modules, APIs, and codebase using industry-standard frameworks.
* Lead manual and automated code review efforts to discover vulnerabilities,
weaknesses, and anti-patterns in the Harness platform.
* Implement and operate security tooling including SAST, DAST, and SCA, and
integrate these into CI/CD pipelines.
* Consult and advise developers and Product Managers on security standards,
vulnerability remediation, and security architecture.
* Assess risks and trade-offs, and propose solutions for product security
features such as authentication and authorization.
* Participate in the creation, review, and implementation of technical security
standards across global engineering teams.
* Use the Harness platform to integrate security processes like vulnerability
management into the SDLC.
* Collaborate cross-functionally with Engineering and Product to accelerate the
release of software with security by design.
ABOUT YOU
* BS in Computer Science or a related degree.
* 5+ years of relevant industry experience with a strong security focus.
* Solid experience with DevSecOps practices and secure SDLC methodologies.
* Good working knowledge of cyber security frameworks including OWASP, SANS,
NIST, and CIS.
* Ability to describe software supply chain risks and Secure SDLC best
practices.
* Experience with public or private cloud environments such as K8s, AWS, GCP,
or Azure.
* Professional knowledge of enterprise applications, API development, and
modern software delivery processes.
* Previous experience in a cloud-native environment.
* Proficiency in Java or a comparable language and object-oriented programming
methodology.
* Hands-on experience with security testing tools and vulnerability management
workflows.
Pay transparency
$113,000—$125,000 USD
HARNESS IN THE NEWS:
* Accelerating Our Mission to Bring AI to Everything After Code
[https://www.harness.io/blog/240m-financing-to-bring-ai-to-everything-after-code]
* Goldman Sachs leads investment in software delivery startup Harness at $5.5
billion valuation
[https://www.cnbc.com/2025/12/11/harness-is-worth-5point5-billion-in-round-led-by-goldman-sachs.html]
* How Harness runs 16 “startups within a startup” at scale | Jyoti Bansal
[https://www.youtube.com/watch? v=LvOYXKAyAqs]
* Harness Research Shows AI Visibility Crisis Fueling Security Nightmare
[https://www.digit.fyi/ai-visibility-crisis-fuelling-security-nightmare/]
* Harness has been named to the Inc. Power Partner list for software delivery
success
[https://www.harness.io/blog/we-made-inc-s-2025-power-partners-list-again---heres-why-it-matters]
All qualified applicants will receive consideration for employment without
regard to race, color, religion, sex or national origin.
At Harness, we care about your privacy and are committed to protecting your
personal data. For additional information on this topic, you can visit our
privacy Portal: https://harness-privacy.relyance.ai/
[https://harness-privacy.relyance.ai/]
Note on Fraudulent Recruiting/Offers
We have become aware that there may be fraudulent recruiting attempts being made
by people posing as representatives of Harness. These scams may involve fake job
postings, unsolicited emails, or messages claiming to be from our recruiters or
hiring managers.
Please note, we do not ask for sensitive or financial information via chat,
text, or social media, and any email communications will come from the domain
@harness.io. Additionally, Harness will never ask for any payment, fee to be
paid, or purchases to be made by a job applicant. All applicants are encouraged
to apply directly to our open jobs via our website. Interviews are generally
conducted via Zoom video conference unless the candidate requests other
accommodations.
If you believe that you have been the target of an interview/offer scam by
someone posing as a representative of Harness, please do not provide any
personal or financial information and contact us immediately
at [email protected] [[email protected]]. You can also find additional
information about this type of scam and report any fraudulent employment offers
via the Federal Trade Commission’s website
(https://consumer.ftc.gov/articles/job-scams)
[https://consumer.ftc.gov/articles/job-scams)], or you can contact your local
law enforcement agency.
Which skills does this role require?
Make your next move
Build a shortlist and prepare
Identify the requirements you can demonstrate, then choose examples from your work to discuss with the hiring team.
- Build a focused shortlist before you applyCompare role requirements with your experience and give each application a clear reason.
- Practice explaining your experience in an interviewRehearse your answers before meeting the hiring team.
Other roles to compare
Review the responsibilities and requirements before adding an opening to your shortlist.
Cybersecurity Assessment Data Analyst
CACI International Inc · United States
Senior Security Engineer
Credit Sesame · Mountain View, California, United States
Senior Network Security Engineer
GovCIO · United States
Security Engineer
Brightspot · Reston, Virginia, United States
Cloud Security Engineer
Morgan & Morgan, P.A. · Tampa, Florida, United States
Lead Engineer, Information Security (Application Security)
RXO, Inc. · United States
Role information can change. Confirm current details on the original application page.