Security Research Engineer - Customer Success
Harness
You should be extremely passionate about building the next generation cloud native security product and researching modern cloud native security vulnerabilities and attacks. In this role, you'll partner closely with customers to understand their environments, align Traceable's detection and protection capabilities with their use cases, and ensure smooth adoption, deployment, and ongoing success. You will also collaborate with product and engineering teams to bring real-world insights that shape the product roadmap.
Responsibilities:
- Working closely with product, engineering, and customers in researching modern cloud native attacks and solving detection and protection use-cases in product.
- Working closely with customers to understand their application environment, security use-cases, and help map them to product features, and working closely with sales engineering in POCs and Deployments.
- Conducting a Security Assessment/Penetration Test.
- Research on the next generation of detection and protection methodologies.
- Designing and developing any internal tools for security research.
- Troubleshooting and debugging customer-facing issues around the detection and protection of attacks.
- Evangelise product capabilities in security researchers and pen testing communities by publishing relevant blogs/podcasts, etc.
- Studying cyber security attacks happening globally, doing root cause analysis for some of the relevant attacks, and understanding the relevance of Traceable product in preventing the attacks.
Requirements:
- Bachelor's or Master's degree in computer science.
- 1-3 years of work experience.
- Experience in modern tech stack - microservices, Docker, Kubernetes, cloud platform (AWS/GCS, etc).
- Prior development experience and a fair understanding of programming languages and frameworks are a must.
- Proficiency in web app security, vulnerability research, and penetration testing.
- Strong experience with various pentesting tools like Burp Suite, ZAP, etc.
- Strong applied knowledge of attacks in Web/API eco-system - Web attacks, API attacks, API abuse, API Fraud, ATO, etc.
- Strong understanding of Application Security Solutions (WAF, RASP, etc. ).
- Working knowledge of IAST, DAST, and SAST.
- Nice to Have: Active participation in security communities like OWASP, NullCon.
Harness in the news:
- Harness AI Tackles Software Development’s Real Bottleneck
- After 'Vibe Coding' Comes 'Vibe Testing' (Almost)
- Startup Within a Startup: Empowering Intrapreneurs for Scalable Innovation - Jyoti Bansal (Harness)
- Jyoti Bansal, Harness | theCUBEd Awards
- Eight years after selling AppDynamics to Cisco, Jyoti Bansal is pursuing an unusual merger
- Harness snags Split.io, as it goes all in on feature flags and experiments
- Exclusive: Jyoti Bansal-led Harness has raised $150 million in debt financing
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex or national origin.
Note on Fraudulent Recruiting/Offers
We have become aware that there may be fraudulent recruiting attempts being made by people posing as representatives of Harness. These scams may involve fake job postings, unsolicited emails, or messages claiming to be from our recruiters or hiring managers.
Please note, we do not ask for sensitive or financial information via chat, text, or social media, and any email communications will come from the domain @harness.io. Additionally, Harness will never ask for any payment, fee to be paid, or purchases to be made by a job applicant. All applicants are encouraged to apply directly to our open jobs via our website. Interviews are generally conducted via Zoom video conference unless the candidate requests other accommodations.
If you believe that you have been the target of an interview/offer scam by someone posing as a representative of Harness, please do not provide any personal or financial information and contact us immediately at security@harness.io. You can also find additional information about this type of scam and report any fraudulent employment offers via the Federal Trade Commission’s website (https://consumer.ftc.gov/articles/job-scams), or you can contact your local law enforcement agency.