HarbourVest Partners

HarbourVest Partners

Application Security Engineer

Boston

Sponsorship not specified$145k-$155kDetected 30 days ago
JavaScriptPythonJavaC#Code ReviewGitCloud PlatformsCI/CDAgentic AICybersecurityIncident ResponseComplianceLeadershipCISSP

About the role

  • As our global firm grows, we continue to add individuals who seek a collaborative, open-door culture that values diversity and innovative thinking.
  • In our collegial environment that's marked by low turnover and high energy, you'll be inspired to grow and thrive.

Responsibilities

  • Perform secure build reviews, threat modeling, and application security testing (SAST, DAST, SCA)
  • Identify, assess, and support remediation of vulnerabilities in web applications and APIs
  • Partner with engineering teams to promote secure coding standards utilizing CI/CD pipelines and DevSecOps practices
  • Support audits, regulatory exams, penetration tests, and security incident response

Requirements

  • Experience securing web applications, APIs, and microservices in financial environments
  • Hands-on experience with AI-assisted coding tools such as Cursor, GitHub Copilot, and ChatGPT Codex, with an understanding of their security implications in enterprise software development
  • Proficiency reviewing code in at least one common language (Java, Python, C#, or JavaScript)
  • Familiarity with cloud platforms, containers, IaaC, and modern DevSecOps tooling
  • Ability to clearly communicate technical risk to both technical and non-technical collaborators
  • 3-5 years of experience in application security or secure software development
  • Experience working in controlled sectors such as finance, banking, or fintech
  • And other responsibilities as required!
  • Solid understanding of application security principles and OWASP Top 10 risks
  • ​Education Preferred:
  • Exposure to compliance frameworks (e.g., SOC 2, SOX, PCI DSS, GDPR)
  • #LI-Hybrid

Nice to have

  • Dedicated to protecting sensitive financial data, client information, and critical business systems
  • Skilled in navigating regulated financial services settings
  • Able to assess and prioritize security concerns by considering their effect on business and financial outcomes
  • Proactive, diligent, and calm when responding to security incidents
  • Bachelor's degree or equivalent experience in Computer Science, Information Security, or a related field
  • Security certifications such as CISSP, CSSLP, OSCP, GWAPT, or similar are a plus

Skills

  • Job Description Summary
  • HarbourVest is an equal opportunity employer.
  • This position will be a hybrid work arrangement.

Compensation

  • $145,000.00 - $155,000.00
  • This USD base salary range represents only one component of total compensation for this role and is provided in accordance with local requirements.
  • This role is eligible for a discretionary annual bonus, which is determined based on individual and overall firm performance.
  • In addition to salary and bonus, total compensation may include eligibility for long-term reward programs and a comprehensive total rewards package that may include retirement, health, insurance, paid time off, and wellness programs.
  • Please note the posted ranges do not apply outside the U.S. and should not be converted to other currencies as a proxy for compensation in other countries.

Benefits

  • Establish metrics and reporting to track coverage and effectiveness of security processes
  • Our total rewards offerings are influenced by several business factors, and eligibility for certain components will vary by position and geography.

This listing is sourced directly from HarbourVest Partners's careers page and normalized into a canonical job model.