Join Harvey AI as an Incident Handler to lead incident response and enhance security in a fast-growing AI company.
Posted by employer 2 days ago
First seen on Joblaze 1 day ago
Last verified on the company career page 11 hours ago
What you'll build
Must have
Requirements
Not disclosed in this posting: work arrangement, visa sponsorship.
Joblaze summary
The Incident Handler at Harvey AI is responsible for leading investigations and managing responses to security incidents across various environments, including cloud infrastructure and AI platforms. This role requires expertise in incident response, threat detection, and a solid understanding of attacker tactics, with proficiency in cloud platforms and scripting languages. It is suited for experienced professionals with a background in mature security organizations who are eager to shape incident response practices in a rapidly evolving AI company. The position offers the chance to work within a small, technical team focused on enhancing security measures and operational standards.
Joblaze insights
Quick facts
From the original posting
Harvey’s products sit at the intersection of frontier AI, sensitive customer data, and critical business workflows. Our customers trust us to protect their information in an always-accelerating threat ecosystem, and security is how we foremost earn and keep our customers’ trust. We’re hiring an experienced Incident Response Handler to drive and ultimately lead incident response for security events. You will command incidents, coordinate containment, and enforce that real fixes are implemented, preventing recurrence. You’ll join a small, highly technical security team early in standing up a dedicated Detection & Response function, with real latitude to define how Harvey does incident response for years to come. Like the rest of Harvey’s security team, our program is built on offensive security experience - most engineers come from red-team, pentesting, or incident-response backgrounds, and we bring an attacker’s mindset to detection and response. This is an individual contributor role for someone who has operated in mature security organizations at leading technology companies and wants to help define incident response at one of the most important AI companies in the world.
Build strong relationships with key employees across the organization
Participate in security incidents, leading investigations across cloud infrastructure, identity systems, corporate environments, and our AI platforms.
Use, maintain, and contribute to an internally developed agentic SOC, fine tuned to Harvey’s threat environment
Work cross functionally across technical and operational orgs, ensuring the right PRs ship and best policies are enforced
Contribute to Harvey’s Detection & Response roadmap, including metrics, SLAs, threat modeling, and tabletop exercises for our most critical business risks.
Work across teams to ensure incident follow ups are meaningfully closed
Mentor engineers and incident responders, build playbooks and operational standards, and raise the security bar across the company.
3+ years of experience in Incident Response, Detection & Response, Security Operations, Threat Detection, or related security engineering disciplines.
Experience participating in investigations and response efforts for complex security incidents in cloud-native environments.
Deep understanding of attacker tactics, techniques, and procedures (MITRE ATT&CK and modern threat actor tradecraft).
Experience with one or more major cloud platforms (AWS, GCP, Azure), plus strong knowledge of operating systems, networking, and identity systems.
Experience building security automation and tooling, with strong scripting or software engineering skills in Python, Go, or similar languages.
Experience communicating incident status and risk to senior leadership.
$133,600 - $200,400 USD
#LI-ES2
Standard company text repeated across Harvey AI's postings is omitted here.
Explore more