ASAI job platform logo
  1. Home
  2. /Jobs
  3. /Security Engineer Jobs in Bengaluru
  4. /Staff Security Research Engineer
Harness

Staff Security Research Engineer

Bengaluru · Staff/Principal

Older listing - lower visibility likelyVerified listingPosted 348d ago

Applicants who checked fit first are 3.1× more likely to hear back

Your match scoreCalculated · locked
86Overall
64Skills
97Experience

Your score for this role already exists

ASAI compared this JD against 41 signals - skills, seniority, domain, stack overlap etc. Add a resume and it unlocks in about 30 seconds.

No credit card · 1 tap with Google

What we know about this role

Hiring pulse

MEDIUM

Harness is reviewing applications at a steady pace. Expect a standard response time as they evaluate the current pool.

Apply window

First 72 hours

Window passed - posted 348d ago

Early applicants get seen before the pile builds.

Not a repost

The first time we've seen this listing - it hasn't been closed and reopened.

Skills required

14 listed
Securities ResearchKnowledge GraphCode GenerationVulnerability DiscoveryDependency ManagementRisk AnalysisLaw EnforcementAppdynamics+6 more
Securities ResearchKnowledge GraphCode GenerationVulnerability DiscoveryDependency Management

You almost certainly match several of these already. Unlock your skill map to see the matches, the gaps, and what to fix first.

Job description

Harness is the AI Software Delivery Platform company, led by technologist and entrepreneur Jyoti Bansal (founder of AppDynamics, acquired by Cisco for $3.7B). Harness has raised approximately $570M in funding and is valued at $5.5B, backed by leading investors including Goldman Sachs, Menlo Ventures, IVP, Unusual Ventures, Citi Ventures, and more. As AI accelerates code creation, the real bottleneck has shifted to everything after the code – testing, deployments, application security, reliability, compliance, and cost optimization. Harness brings AI and automation to this “outer loop,” helping teams ship software faster while maintaining security and governance throughout the entire software delivery lifecycle.

Powered by Harness AI and the Software Delivery Knowledge Graph, the Harness Platform applies deep context and intelligent automation across the software delivery lifecycle with governance and policy-driven controls embedded throughout the platform.

Over the past year, Harness powered over 185M deployments, 82M builds, 18T flag evaluations, 8M security scans, 9.1B optimized tests, 3T protected API calls, and helped manage $2.8B in cloud spend — enabling customers like United Airlines, Morningstar, and Choice Hotels to accelerate releases by up to 75%, reduce cloud costs by up to 60%, and achieve 10x DevOps efficiency.

With a global team across 26 offices and 27 countries, Harness is shaping the future of AI software delivery — and we’re looking for exceptional talent to help us move even faster.

Key Responsibilities

  • Research and build AI-powered security capabilities that enhance early detection and prevention across SAST, SCA, DAST, and CI/CD pipelines.
  • Research risks in AI-assisted development, including insecure code generation, dependency suggestions, and automated refactoring.
  • Lead research into modern attack vectors targeting code, dependencies, build systems, CI/CD pipelines, and cloud environments.
  • Develop AI-assisted detection and testing methods to improve accuracy, automation, and coverage across security tooling.
  • Prototype and validate new detection methods that help developers prevent vulnerabilities before deployment.
  • Collaborate with engineering and product teams to integrate research outcomes directly into developer workflows and platform features.
  • Perform deep technical assessments of applications, APIs, source repositories, and build pipelines to uncover design flaws, dependency risks, and supply chain threats.
  • Work with customers and internal teams to align research with real-world DevSecOps use cases and product improvements.
  • Contribute to pre-sales and technical enablement through proof-of-concepts, demos, and solution design for code-to-cloud protection.
  • Build internal tools and automation that accelerate vulnerability discovery, analysis, and AI-driven security research.
  • Share insights and research outcomes through blogs, whitepapers, and conference talks to advance the field of Shift-Left and AI security.
  • Continuously monitor emerging threats and apply learnings to improve product detection and protection capabilities.

About You

  • Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or a related field.
  • 8 - 10+ years of experience with special focus on security research and application security.
  • Strong background in shift-left security tools (SAST, DAST, SCA) with experience building or customizing scanning rules, engines, or pipelines.
  • Prior hands-on development experience with a solid understanding of modern programming languages, frameworks, and build systems.
  • Understanding of AI and LLM models, their integration into developer workflows, and potential security risks.
  • Deep understanding of OWASP Top 10, API Security Top 10, LLM Top 10, and CI/CD Security Top 10, with the ability to map real-world vulnerabilities to these risk categories.
  • Familiarity with AI-assisted development tools and experience evaluating or mitigating risks from AI-generated code and dependency suggestions.
  • Proficient in at least one modern programming language (Python, Go, Java, JavaScript, etc.)
  • Familiarity with dependency management ecosystems (npm, PyPI, Maven, Go modules) and open-source risk analysis.
  • Demonstrated experience in publishing security research, authoring technical blogs, or presenting at top security conferences (e.g., Black Hat, DEF CON, RSAC, BSides) is a strong plus.
  • Relevant credentials such as OSCP, OSCE, CEH, or equivalent security certifications are a plus.
  • Strong analytical and problem-solving skills, with the ability to lead complex research independently; from hypothesis to validation and implementation.
  • Proven ability to work autonomously, drive large research efforts, and collaborate cross-functionally with product and engineering teams.
  • Passion for research, security, and continuous learning, with a never-give-up attitude.

Work Location

This role will be out of our Bengaluru, India office on a Hybrid capacity.

Harness in the news:

  • Accelerating Our Mission to Bring AI to Everything After Code
  • Goldman Sachs leads investment in software delivery startup Harness at $5.5 billion valuation
  • How Harness runs 16 “startups within a startup” at scale | Jyoti Bansal
  • Harness Research Shows AI Visibility Crisis Fueling Security Nightmare
  • Harness has been named to the Inc. Power Partner list for software delivery success

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex or national origin.

At Harness, we care about your privacy and are committed to protecting your personal data. For additional information on this topic, you can visit our privacy Portal: https://harness-privacy.relyance.ai/

Note on Fraudulent Recruiting/Offers

We have become aware that there may be fraudulent recruiting attempts being made by people posing as representatives of Harness. These scams may involve fake job postings, unsolicited emails, or messages claiming to be from our recruiters or hiring managers.

Please note, we do not ask for sensitive or financial information via chat, text, or social media, and any email communications will come from the domain @harness.io. Additionally, Harness will never ask for any payment, fee to be paid, or purchases to be made by a job applicant. All applicants are encouraged to apply directly to our open jobs via our website. Interviews are generally conducted via Zoom video conference unless the candidate requests other accommodations.

If you believe that you have been the target of an interview/offer scam by someone posing as a representative of Harness, please do not provide any personal or financial information and contact us immediately at [email protected]. You can also find additional information about this type of scam and report any fraudulent employment offers via the Federal Trade Commission’s website (https://consumer.ftc.gov/articles/job-scams), or you can contact your local law enforcement agency.

Free · no signup

Get tomorrow's jobs before you have to search

Daily job drops, skill trends and free resources - posted straight to the group. Leave any time.

Join WhatsAppJoin Telegram

No spam. Just jobs and resources.

Why people use ASAI

Someone shared one job with you. ASAI keeps finding the rest.

  • Scored, not searched. Every role ranked against your actual profile.

  • Alerts as often as hourly. Reach new roles while the pile is still small.

  • Skill gaps, spelled out. See exactly which requirements you don't meet yet.

  • Verified jobs, only. Say no to ghost jobs. Your time deserves respect.

More Security Engineer roles in Bengaluru

See all

Senior Software engineer - Advanced Threat Protection

Okta · Bengaluru

Lead Security Engineer IGA

Cyderes · Bengaluru

Sr Software Engineer - Cybersecurity Integrations (Armis)

ServiceNow · Bengaluru

Software Engineer (Cybersecurity Integrations) - Armis

ServiceNow · Bengaluru

Keep browsing

All open roles at Harness All Security Engineer jobs in Bengaluru

Two ways in

Applicants who checked fit first are 3.1× more likely to hear back

Your match scoreCalculated · locked
86Overall
64Skills
97Experience

Your score for this role already exists

ASAI compared this JD against 41 signals - skills, seniority, domain, stack overlap etc. Add a resume and it unlocks in about 30 seconds.

No credit card · 1 tap with Google

Free · no signup

Get tomorrow's jobs before you have to search

Daily job drops, skill trends and free resources - posted straight to the group. Leave any time.

Join WhatsAppJoin Telegram

No spam. Just jobs and resources.

Why people use ASAI

Someone shared one job with you. ASAI keeps finding the rest.

  • Scored, not searched. Every role ranked against your actual profile.

  • Alerts as often as hourly. Reach new roles while the pile is still small.

  • Skill gaps, spelled out. See exactly which requirements you don't meet yet.

  • Verified jobs, only. Say no to ghost jobs. Your time deserves respect.

ASAI job platform logo

A job platform finally, balanced in your favour.

Jobs by CityJobs by CompanyGuidesHow We VerifyAboutPrivacy PolicyTerms of Service

Built in India 🇮🇳

© 2026 ASAI. All rights reserved.