HarbourVest Partners
Application Security Engineer
Boston
Sponsorship not specified$145k-$155kDetected 30 days ago
JavaScriptPythonJavaC#Code ReviewGitCloud PlatformsCI/CDAgentic AICybersecurityIncident ResponseComplianceLeadershipCISSP
About the role
- As our global firm grows, we continue to add individuals who seek a collaborative, open-door culture that values diversity and innovative thinking.
- In our collegial environment that's marked by low turnover and high energy, you'll be inspired to grow and thrive.
Responsibilities
- Perform secure build reviews, threat modeling, and application security testing (SAST, DAST, SCA)
- Identify, assess, and support remediation of vulnerabilities in web applications and APIs
- Partner with engineering teams to promote secure coding standards utilizing CI/CD pipelines and DevSecOps practices
- Support audits, regulatory exams, penetration tests, and security incident response
Requirements
- Experience securing web applications, APIs, and microservices in financial environments
- Hands-on experience with AI-assisted coding tools such as Cursor, GitHub Copilot, and ChatGPT Codex, with an understanding of their security implications in enterprise software development
- Proficiency reviewing code in at least one common language (Java, Python, C#, or JavaScript)
- Familiarity with cloud platforms, containers, IaaC, and modern DevSecOps tooling
- Ability to clearly communicate technical risk to both technical and non-technical collaborators
- 3-5 years of experience in application security or secure software development
- Experience working in controlled sectors such as finance, banking, or fintech
- And other responsibilities as required!
- Solid understanding of application security principles and OWASP Top 10 risks
- Education Preferred:
- Exposure to compliance frameworks (e.g., SOC 2, SOX, PCI DSS, GDPR)
- #LI-Hybrid
Nice to have
- Dedicated to protecting sensitive financial data, client information, and critical business systems
- Skilled in navigating regulated financial services settings
- Able to assess and prioritize security concerns by considering their effect on business and financial outcomes
- Proactive, diligent, and calm when responding to security incidents
- Bachelor's degree or equivalent experience in Computer Science, Information Security, or a related field
- Security certifications such as CISSP, CSSLP, OSCP, GWAPT, or similar are a plus
Skills
- Job Description Summary
- HarbourVest is an equal opportunity employer.
- This position will be a hybrid work arrangement.
Compensation
- $145,000.00 - $155,000.00
- This USD base salary range represents only one component of total compensation for this role and is provided in accordance with local requirements.
- This role is eligible for a discretionary annual bonus, which is determined based on individual and overall firm performance.
- In addition to salary and bonus, total compensation may include eligibility for long-term reward programs and a comprehensive total rewards package that may include retirement, health, insurance, paid time off, and wellness programs.
- Please note the posted ranges do not apply outside the U.S. and should not be converted to other currencies as a proxy for compensation in other countries.
Benefits
- Establish metrics and reporting to track coverage and effectiveness of security processes
- Our total rewards offerings are influenced by several business factors, and eligibility for certain components will vary by position and geography.
Apply directly at HarbourVest Partners →Create a free account for alerts like thisView HarbourVest Partners immigration profile
This listing is sourced directly from HarbourVest Partners's careers page and normalized into a canonical job model.