Staff Security Research Engineer

Menlo Ventures
Mountain View, CA

Harness is a high-growth company that is disrupting the software delivery market. Our mission is to enable the 30 million software developers in the world to deliver code to their users reliably, efficiently, securely and quickly, increasing customers’ pace of innovation while improving the developer experience. We offer solutions for every step of the software delivery lifecycle to build, test, secure, deploy and manage reliability, feature flags and cloud costs. The Harness Software Delivery Platform includes modules for CI, CD, Cloud Cost Management, Feature Flags, Service Reliability Management, Security Testing Orchestration, Chaos Engineering, Software Engineering Insights and continues to expand at an incredibly fast pace.

Position Summary

Harness is expanding into DevSecOps with the integration of Traceable, and we're hiring a Staff or Principal Security Research Engineer to help lead the charge. This is a rare opportunity to work with visionary leaders like Jyoti Bansal and help shape security across the modern software delivery lifecycle—from code to cloud.

You'll drive research into cutting‑edge threats targeting APIs, CI/CD pipelines, and emerging technologies like LLMs. Your work will directly influence product direction, detection capabilities, and customer protection strategies. This is a hands‑on, high‑impact role where you’ll collaborate across teams, interface with top‑tier customers, and represent Harness at leading security conferences.

If you're passionate about solving hard security problems at scale, this role puts you at the center of innovation in a fast‑growing DevSecOps platform.

About the role

  • Conduct cutting‑edge research on modern attack vectors across AppSec, CI/CD pipelines, runtime environments, and emerging technologies like LLMs
  • Develop and refine advanced exploit techniques to prevent attacks targeting software delivery, runtime from code to cloud
  • Collaborate with research, product and engineering to prototype and implement detection and mitigation strategies for emerging threats
  • Perform in‑depth security assessments and penetration testing of web applications, APIs, build systems, and cloud‑native environments
  • Engage with customers to understand their application landscape and provide expert guidance on integrating product capabilities with their security requirements
  • Support pre‑sales, POCs, and post‑sales engagements by troubleshooting and solving complex detection and protection challenges
  • Build internal tools to automate and enhance security research workflows.
  • Evangelize our research and platform through blogs, white papers, and talks at premier security conferences
  • Analyze global cybersecurity incidents to extract learnings and apply them across domains

About you

  • Bachelor's or Master's degree in Computer Science.
  • 8-10+ years of work experience
  • Deep expertise with modern application stacks (microservices, containers, Kubernetes, cloud platforms like AWS/GCP)
  • Prior development experience and a fair understanding of programming languages and frameworks are a must
  • Proficient in at least one modern programming language (Python, Go, Java, JavaScript, etc.)
  • Demonstrated experience in penetration testing, vulnerability research, and exploitation of Web/API ecosystems
  • Strong foundation in computer science fundamentals, identity aware, network, application and runtime security
  • Strong experience with various pen testing tools like Burpsuite, ZAP, etc.
  • Strong applied knowledge of attacks in Web/API eco‑system - Web attacks, API attacks, API abuse, API Fraud, ATO, etc.
  • Strong knowledge of modern application security threats and mitigation platforms like (WAFs, WAAP, RASP, etc.).
  • Working knowledge of IAST, DAST, and SAST
  • Experience in responsible disclosure of vulnerabilities and a track record of CVEs or similar
  • Proven track record of publishing high‑quality research or presenting at top security conferences (e.g., Black Hat, DEF CON, RSAC, BSides) is a strong plus
  • Certifications such as CEH, OSCP, OSCE, or relevant security credentials
  • Strong analytical skills and the ability to conduct complex security research autonomously
  • Ability to work autonomously and drive complex security investigations from hypothesis to implementation

Work Location

San Francisco Bay Area - Hybrid

What you will have at Harness

  • Competitive salary
  • Comprehensive healthcare benefits
  • Flexible Spending Account (FSA)
  • Flexible work schedule
  • Employee Assistance Program (EAP)
  • Flexible Time Off and Parental Leave
  • Monthly, quarterly, and annual social and team building events
  • Monthly internet reimbursement

Pay transparency: Equity is offered in addition to the salary below.

Pay transparency: $180,000 — $235,000 USD

Harness in the news:

  • Harness Grabs a $150m Line of Credit
  • Welcome Split!
  • SF Business Times - 2024 - 100 Fastest Growing Private Companies in the Bay Area
  • Forbes - 2024 America's Best Startup Employers
  • SF Business Times - 2024 Fastest Growing Private Companies Awards
  • Fast Co - 2024 100 Best Workplaces for Innovators

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex or national origin.

Note on Fraudulent Recruiting/Offers

We have become aware that there may be fraudulent recruiting attempts being made by people posing as representatives of Harness. These scams may involve fake job postings, unsolicited emails, or messages claiming to be from our recruiters or hiring managers.

Please note, we do not ask for sensitive or financial information via chat, text, or social media, and any email communications will come from the domain @harness.io. Additionally, Harness will never ask for any payment, fee to be paid, or purchases to be made by a job applicant. All applicants are encouraged to apply directly to our open jobs via our website. Interviews are generally conducted via Zoom video conference unless the candidate requests other accommodations.

If you believe that you have been the target of an interview/offer scam by someone posing as a representative of Harness, please do not provide any personal or financial information and contact us immediately at [email protected]. You can also find additional information about this type of scam and report any fraudulent employment offers via the Federal Trade Commission’s website ( or you can contact your local law enforcement agency.

#J-18808-Ljbffr
Posted 2026-01-15

Recommended Jobs

Armed Guard - San Francisco, CA

Global Secure 3
San Francisco, CA

Armed Guard – San Francisco, CA Pay: Compensation is $27 per hour . (If applicable: Hourly rates may vary depending on the assignment, starting at $27 per hour.) Part-Time | Temporary | Swing S…

View Details
Posted 2025-12-18

Executive Assistant, CFO

Grindr LLC
San Francisco, CA

This is a hybrid role based in our San Francisco office and will require you to be in person Tuesdays and Thursdays. About the Team Grindr is seeking a highly organized, proactive, and resource…

View Details
Posted 2026-01-15

Assistant Manager Assistant Store Manager

ESTÉE LAUDER
San Jose, CA

Proven retail experience preferably within cosmetics The ability to provide inspirational, authentic and personalized customer service Previous supervisory experience with a proven track record of coa…

View Details
Posted 2026-01-03

Financial Analyst: Data-Driven Insights & Reports

Labelbox
San Francisco, CA

A leading financial services firm in San Francisco is seeking a Financial Analyst to analyze financial statements and validate financial metrics. The ideal candidate will have experience in financial…

View Details
Posted 2026-01-15

Recruiter

Foothill Family
Pasadena, CA

Develops and implements strategies to source qualified, diverse candidates to meet position requirements from internal, external, and referral candidate pools. This role is primarily responsible for s…

View Details
Posted 2026-01-15

Studio GM: Growth, Sales & Fitness Leadership

Riser Fitness, LLC
West Hollywood, CA

A leading fitness boutique chain in California is seeking a General Manager to oversee all studio functions and drive membership growth. The ideal candidate will have retail/service sales experience,…

View Details
Posted 2026-01-15

Accounts Receivable Accountant

Gotion
Fremont, CA

Gotion Inc. is based in Silicon Valley, CA, currently building a Manufacturing facility in Manteno, IL and has R&D centers in Ohio, China, Japan and Europe. We innovate in the next generation electri…

View Details
Posted 2026-01-16

Associate Store Manager

PVH
Cabazon, CA

Be part of an iconic story. TOMMY HILFIGER is one of the world’s most recognized global lifestyle brands, confidently welcoming and inspiring consumers since 1985. Originally established in New …

View Details
Posted 2025-12-30

Senior HR Business Partner

Sephora
San Francisco, CA

Sephora is seeking a Senior HR Business Partner in San Francisco to serve as a strategic advisor to senior executives. This role involves shaping people strategies, advising on organizational design, …

View Details
Posted 2025-12-18

Applied Scientist I, Alexa AIDo

Amazon
San Francisco, CA

The Amazon Alexa AI team in India is seeking a talented, self-driven Applied Scientist to work on prototyping, optimizing, and deploying ML algorithms within the realm of Generative AI. Key Respon…

View Details
Posted 2026-01-15