Staff Product Security Engineer

Harvey

San Francisco Remote Full-time$220k–$330k / year Posted 4w ago
Above market. This role pays above the $220k median for similar USD roles (386 comparable postings in our corpus).
Log in to apply
WHY HARVEY At Harvey, we’re transforming how legal and professional services operate. By combining frontier agentic AI, an enterprise-grade platform, and deep domain expertise, we’re reshaping how critical knowledge work gets done for decades to come. This is a rare chance to help build a generational company at a true inflection point. We have strong product-market fit and world-class investor support. We’re scaling fast and defining a new category in real time. The work is ambitious, the bar is high, and the opportunity for growth — personal, professional, and financial — is unmatched. Our team moves fast, takes ownership, and is deeply committed to the mission — operating with intensity, staying close to our customers, and pushing each other for excellence. We live by three values: Decisiveness, Simplicity, and Job's Not Finished. We act quickly on clear judgment over perfect information, we believe simplicity is what scales, and we're never satisfied with where we are. If you want to do the best work of your career alongside people who share that drive, we'd love to build with you. At Harvey, the future of professional services is being written today — and we’re just getting started. ROLE OVERVIEW As a Staff Software Engineer on the Product Security team at Harvey, you will have the opportunity to build security directly into the product. Harvey stores and processes our customers’ most sensitive data and our entire business model depends on a foundation At Harvey, you will find that security is paramount at every stage of our product lifecycle. In this role you will drive high-leverage security initiatives that raise the bar for the entire company — balancing hands-on technical work with cross-functional leadership and mentorship. This is a rare opportunity to design and build a world-class product security program at one of the fastest growing AI-native companies. The Harvey Security organization has an engineering-first mindset and team members bring a variety of skills and come from various backgrounds. What the team shares in common is a desire to drive impact at scale and solve complex security challenges together. The problems we are solving today are often unsolved in the industry - making this an incredible career and personal growth opportunity. WHAT YOU’LL DO * Define and own the product security roadmap * Establish risk based prioritization for product security features, balancing business velocity with customer trust. * Partner with security leadership to drive organization maturity. * Establish secure design principles for every stage of development, directly supporting Engineering, Product and Design teams. * Raise the security bar across Harvey through scalable code and design reviews. * Innovate new ways to Threat Model and surface security vulnerabilities at scale. * Establish and evolve the security posture across Engineering by setting standards that scale with the company * Architect secure-by-default tools and libraries to make the secure path the only path for developers at Harvey. * Drive incident triage and translate vulnerability findings into end to end solutions. * Directly mentor and lead junior engineers to up-level the Security organization. WHAT YOU HAVE * 8+ years of experience in product security, application security and/or security-focused software engineering. * Track record of identifying and remediating software vulnerabilities through CVEs, bug bounty awards or published research. * Experience independently delivering high-quality, production software end to end. * Experience leading complex cross-functional security initiatives. * Ability to handle prioritization and tradeoff discussions with senior leadership. * Excellent communication and collaboration skills, particularly when translating security risks into business terms for non-security stakeholders. * Excel at measuring and communicating security metrics and business risk reduction as it relates to product security investments. * Experience mentoring both junior and senior engineers across engineering. * Proactive approach to solving complex security challenges. * Positive attitude and willingness to learn. NICE TO HAVE * Experience building security programs or practices at hyper-growth startups * Background with cloud environments (Azure, GCP, AWS) and cloud-native security patterns * Experience with AI/ML systems and emerging security considerations for LLM-based applications COMPENSATION $220,000 - $330,000 DEPENDING ON YOUR LOCATION, AN APPLICANT PRIVACY NOTICE MAY APPLY TO YOU. YOU CAN FIND ALL OF OUR APPLICANT PRIVACY NOTICES [HERE]. #LI-KV1 Harvey is an equal opportunity employer and does not discriminate on the basis of race, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition, or any other basis protected by law. We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made by emailing [email protected]

Explore related jobs