Talent.com
Security Research Engineer Shift Left Security
Security Research Engineer Shift Left SecurityHarness • Bengaluru, Karnataka, India
Security Research Engineer Shift Left Security

Security Research Engineer Shift Left Security

Harness • Bengaluru, Karnataka, India
28 days ago
Job description

Harness is a high-growth company that is disrupting the software delivery market. Our mission is to enable the 30 million software developers in the world to deliver code to their users reliably efficiently securely and quickly increasing customers pace of innovation while improving the developer experience. We offer solutions for every step of the software delivery lifecycle to build test secure deploy and manage reliability feature flags and cloud costs. The Harness Software Delivery Platform includes modules for CI CD Cloud Cost Management Feature Flags Service Reliability Management Security Testing Orchestration Chaos Engineering Software Engineering Insights and continues to expand at an incredibly fast pace.

Harness is led by technologist and entrepreneur Jyoti Bansal who founded AppDynamics and sold it to Cisco for $3.7B. Were backed with $425M in venture financing from top-tier VC and strategic firms including J.P. Morgan Capital One Ventures Citi Ventures ServiceNow Splunk Ventures Norwest Venture Partners Adage Capital Partners Balyasny Asset Management Gaingels Harmonic Growth Partners Menlo Ventures IVP Unusual Ventures GV (formerly Google Ventures) Alkeon Capital Battery Ventures Sorenson Capital Thomvest Ventures and Silicon Valley Bank.

Key Responsibilities

  • Contribute to research on modern attack vectors across source code dependencies build systems and CI / CD pipelines.
  • Assist in developing scanning and detection techniques for SAST SCA and DAST to identify security flaws early in the development process.
  • Perform hands-on assessments of web applications APIs and build pipelines under guidance to uncover design flaws misconfigurations and dependency risks.
  • Study software supply chain threats and contribute to identifying and mitigating risks across open-source ecosystems.
  • Perform hands-on assessments of code applications APIs and build pipelines under guidance to uncover design flaws misconfigurations and security risks.
  • Help build and test prototype tools that automate vulnerability detection and developer workflow integration.
  • Collaborate with research product and engineering teams to validate findings and implement security improvements in developer environments.
  • Stay current with new vulnerabilities frameworks and DevSecOps practices to identify emerging threats relevant to modern software delivery.
  • Document findings and share insights through internal reports knowledge bases or external blog drafts.

Required Skills & Experience

  • Bachelors degree in Computer Science Cybersecurity or a related field (or equivalent practical experience).
  • 1 - 4 years of experience application security or security research
  • Foundational understanding of Shift-Left Security concepts such as SAST SCA and DAST.
  • Understanding of CI / CD pipelines build systems and developer workflows.
  • Interest in AI and LLM models and curiosity about how they impact software security (e.g. insecure code generation data leakage dependency risks).
  • Familiarity with dependency management ecosystems (npm PyPI Maven Go modules) and basic knowledge of software supply chain risks.
  • Passion for research security and continuous learning with a never-give-up attitude.
  • Knowledge of OWASP Top 10 API Top 10 LLM Top 10 CI / CD Top 10.
  • Strong analytical mindset with curiosity for exploring how attackers exploit weaknesses in code and pipelines.
  • Proficiency in Java and Python for prototyping and automating rule validation workflows.
  • Excellent communication documentation and cross-functional collaboration skills.
  • Nice to Have

  • Contributions to open-source security projects especially those related to the OWASP Top 10 or OWASP API Top 10.
  • Experience developing custom WAF / WAAP rule engines threat classifiers or signal correlation pipelines.
  • Background in API security runtime protection or detection engineering at scale.
  • Authored publications technical blogs or delivered conference talks.
  • Harness in the news :

  • Harness AI Tackles Software Developments Real Bottleneck
  • After Vibe Coding Comes Vibe Testing (Almost)
  • Startup Within a Startup : Empowering Intrapreneurs for Scalable Innovation - Jyoti Bansal (Harness)
  • Jyoti Bansal Harness theCUBEd Awards
  • Eight years after selling AppDynamics to Cisco Jyoti Bansal is pursuing an unusual merger
  • Harness snags as it goes all in on feature flags and experiments
  • Exclusive : Jyoti Bansal-led Harness has raised $150 million in debt financing
  • All qualified applicants will receive consideration for employment without regard to race color religion sex or national origin.

    Note on Fraudulent Recruiting / Offers

    We have become aware that there may be fraudulent recruiting attempts being made by people posing as representatives of Harness. These scams may involve fake job postings unsolicited emails or messages claiming to be from our recruiters or hiring managers.

    Please note we do not ask for sensitive or financial information via chat text or social media and any email communications will come from the domain @. Additionally Harness will never ask for any payment fee to be paid or purchases to be made by a job applicant. All applicants are encouraged to apply directly to our open jobs via our website. Interviews are generally conducted via Zoom video conference unless the candidate requests other accommodations.

    If you believe that you have been the target of an interview / offer scam by someone posing as a representative of Harness please do not provide any personal or financial information and contact us immediately at . You can also find additional information about this type of scam and report any fraudulent employment offers via the Federal Trade Commissions website ( or you can contact your local law enforcement agency.

    Key Skills

    Splunk,IDS,Network security,Computer Networking,Identity & Access Management,PKI,PCI,NIST Standards,Security System Experience,Information Security,Encryption,Siem

    Employment Type : Part-Time

    Experience : years

    Vacancy : 1

    Create a job alert for this search

    Security Engineer • Bengaluru, Karnataka, India

    Related jobs
    Eightfold AI - Senior Security Engineer

    Eightfold AI - Senior Security Engineer

    EIGHTFOLD AI INDIA PRIVATE LIMITED • Bangalore
    Description was founded with a vision to solve for employment in our society.For decades, the connection between individuals and opportunities has been based on who the individuals are and the str...Show more
    Last updated: 30+ days ago • Promoted
    Lead Security Engineer

    Lead Security Engineer

    Arcana • Bengaluru, IN
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show more
    Last updated: 30+ days ago • Promoted
    Senior Security Research Engineer - AI Security

    Senior Security Research Engineer - AI Security

    Confidential • Bengaluru / Bangalore, India
    Harness is a high-growth company that is disrupting the software delivery market.Our mission is to enable the 30 million software developers in the world to deliver code to their users reliably, ef...Show more
    Last updated: 20 days ago • Promoted
    Security Engineer

    Security Engineer

    Infogain • Bengaluru, Karnataka, India
    Title : Security Engineer (6+ Years).Use CrowdStrike reports to evaluate all security vulnerabilities on both Windows and Linux systems. Analyze the requirements to remediate the security vulnerabili...Show more
    Last updated: 30+ days ago • Promoted
    Proofpoint Email security Engineer

    Proofpoint Email security Engineer

    Tata Consultancy Services • Greater Bengaluru Area, India
    Proofpoint Email security Engineer (L3).Bachelor’s degree in computer science.Information Technology, Cybersecurity, or a related field. Proofpoint Email Security solutions.Strong understanding of e...Show more
    Last updated: 3 days ago • Promoted
    Senior Staff Security Researcher (Cortex Cloud)

    Senior Staff Security Researcher (Cortex Cloud)

    Palo Alto Networks • Bengaluru, Republic Of India, IN
    At Palo Alto Networks® everything starts and ends with our mission : .Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and m...Show more
    Last updated: 30+ days ago • Promoted
    Security Research Engineer - Shift Left Security

    Security Research Engineer - Shift Left Security

    Confidential • Bengaluru / Bangalore, India
    Harness is a high-growth company that is disrupting the software delivery market.Our mission is to enable the 30 million software developers in the world to deliver code to their users reliably, ef...Show more
    Last updated: 24 days ago • Promoted
    Staff Security Research Engineer

    Staff Security Research Engineer

    Confidential • Bengaluru / Bangalore, India
    Harness is a high-growth company that is disrupting the software delivery market.Our mission is to enable the 30 million software developers in the world to deliver code to their users reliably, ef...Show more
    Last updated: 24 days ago • Promoted
    Product Security Engineer II

    Product Security Engineer II

    FICO • Bengaluru, Karnataka, India
    Join our world-class team today and fulfill your career potential!.As a Product Security Engineer II in Cyber Security, you will be supporting security governance for a wide set of customer-facing ...Show more
    Last updated: 30+ days ago • Promoted
    Security Engineer

    Security Engineer

    London Stock Exchange Group • Bangalore, India
    Are you an Active Directory specialist with a security mentality? We are looking for a support specialist to work within a team operating within a 24 / 7 service, who are responsible for maintaining ...Show more
    Last updated: 30+ days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Razorpay • Bengaluru, Karnataka, India
    Title : Senior Product Security Security Engineer.Razorpay is looking for a Senior Application Security Engineer with solid experience in AppSec fundamentals—secure code review, vulnerability discov...Show more
    Last updated: 5 days ago • Promoted
    C&S Infrastructure Security Engineer

    C&S Infrastructure Security Engineer

    Tata Consultancy Services • Greater Bengaluru Area, India
    C&S Infrastructure Security Engineer – Windows server OS and Mac OS.Windows OS, Mac Os Developer, server.Windows Server OS and Mac OS environment. Hands-on experience in analyzing, testing and imple...Show more
    Last updated: 3 days ago • Promoted
    AI Security Lead

    AI Security Lead

    Delphi Consulting Middle East • hosur, tamil nadu, in
    Join Delphi - Where Innovation meets transformation.At Delphi, we believe in creating an environment where our people thrive. We are committed to supporting your personal goals, family, and overall ...Show more
    Last updated: 4 days ago • Promoted
    Engineer I - Security T500-21027

    Engineer I - Security T500-21027

    lululemon • Bengaluru, Republic Of India, IN
    Setting the bar in technical fabrics and functional design, we create transformational products and experiences that support people in moving, growing, connecting, and being well.We owe our success...Show more
    Last updated: 30+ days ago • Promoted
    Implementation Engineer - Security - F5

    Implementation Engineer - Security - F5

    Tech Data APAC​ • Bengaluru, Karnataka, India
    We are looking for a skilled Implementation Engineer to design, deploy, and support F5 solutions across enterprise environments. The ideal candidate will have strong hands-on experience with F5 tech...Show more
    Last updated: 19 days ago • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.ai • Bengaluru, IN
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show more
    Last updated: 30+ days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    apna • Bengaluru, Karnataka, India
    Job Title : Senior Security Engineer (Sr.AI platforms, microservices, data pipelines and mobile / web products.You will design, build and automate scalable security controls that integrate seamlessly ...Show more
    Last updated: 13 days ago • Promoted
    Security Operations Engineer

    Security Operations Engineer

    ITPeopleNetwork • hosur, tamil nadu, in
    We are looking for a junior to mid-level.Saviynt Identity Access Management (IAM / IGA).CyberArk Endpoint Privilege Manager (EPM). The ideal candidate will assist in user access governance, email thre...Show more
    Last updated: 3 days ago • Promoted