← All jobs

Staff Product Manager - AppSec

Harness · Bengaluru, Karnataka, India

onsitefull-timesenior level

About this role

Harness is the AI Software Delivery Platform company, led by technologist and entrepreneur Jyoti Bansal (founder of AppDynamics, acquired by Cisco for $3.7B). Harness has raised approximately $570M in funding and is valued at $5.5B, backed by leading investors including Goldman Sachs, Menlo Ventures, IVP, Unusual Ventures, Citi Ventures, and more. As AI accelerates code creation, the real bottleneck has shifted to everything after the code – testing, deployments, application security, reliability, compliance, and cost optimization. Harness brings AI and automation to this “outer loop,” helping teams ship software faster while maintaining security and governance throughout the entire software delivery lifecycle.

Powered by Harness AI and the Software Delivery Knowledge Graph, the Harness Platform applies deep context and intelligent automation across the software delivery lifecycle with governance and policy-driven controls embedded throughout the platform. 

Over the past year, Harness powered over 185M deployments, 82M builds, 18T flag evaluations, 8M security scans, 9.1B optimized tests, 3T protected API calls, and helped manage $2.8B in cloud spend — enabling customers like United Airlines, Morningstar, and Choice Hotels to accelerate releases by up to 75%, reduce cloud costs by up to 60%, and achieve 10x DevOps efficiency. 

With a global team across 14 offices and 25 countries, Harness is shaping the future of AI software delivery — and we’re looking for exceptional talent to help us move even faster.

About the Role

We are hiring a Staff Product Manager in India to drive key parts of our Application Security (AppSec) platform, with a strong focus on DevSecOps-integrated security, Application Security Testing (AST), Application Security Posture Management (ASPM), and AI- powered / agentic AppSec workflows.
 
This is a senior individual contributor role with ownership of platform-level capabilities used by global enterprise customers. You will work closely with engineering teams in India and product, security, and GTM leaders globally to define how security findings are discovered, prioritized, and remediated—both by humans and AI agents—across the SDLC.

Key Responsibilities

  • Own the strategy and roadmap for AppSec capabilities, including:
    • AST (SAST, SCA, DAST, secrets detection)
    • ASPM and vulnerability correlation
    • CI/CD-native DevSecOps integrations
    • AI-powered and agentic AppSec workflows (e.g., automated triage, reasoning, and remediation)
  • Define end-to-end AppSec workflows across the SDLC, from code and dependency discovery to risk prioritization and remediation.
  • Partner closely with engineering teams in India to deliver scalable, secure, and high- quality platform capabilities.
  • Design and evolve AI-assisted AppSec experiences, including:
    • Context-aware vulnerability prioritization
    •  AI-generated remediation guidance or PRs.
    •  Guardrails and governance for AI-driven changes
  • Collaborate with global stakeholders across product, sales, customer success, and security to align roadmap with customer and market needs.
  • Engage directly with enterprise customers to understand AppSec workflows, regulatory requirements, and adoption challenges.
  • Drive competitive analysis across AppSec, ASPM, and AI-native security vendors to inform differentiation.
  • Define and track product success metrics, including coverage, signal quality, MTTR, developer experience, and AI effectiveness.

Required Qualifications

  • 6–10 years of product management experience, with ownership of enterprise security,
  • DevSecOps, or developer-focused platforms.
  • Strong understanding of Application Security and DevSecOps, including:
    • AST tools (SAST, SCA, DAST, secrets scanning)
    • CI/CD pipelines and developer workflows
    • ASPM or vulnerability management concepts
  • Familiarity with AI-powered developer or security tools, including LLM-based workflows, automation, or agentic systems.
  • Proven ability to translate complex security and technical requirements into clear, prioritized product plans.
  • Strong communication and stakeholder management skills, with experience working across distributed global teams.

Preferred Qualifications

  • Experience building or scaling AppSec or DevSecOps platforms used by large engineering organizations.
  •  Familiarity with SBOMs, dependency graphs, vulnerability intelligence, and risk prioritization techniques.
  • Exposure to AI governance, policy-as-code, or automated remediation systems.
  • Background in software engineering, security engineering, or DevOps (strong plus).
  • Experience with cloud-native and containerized environments.
Why Join Us
  • Own critical parts of a global AppSec platform from India.
  • Work on cutting-edge AI-driven AppSec and DevSecOps workflows.
  • Collaborate with senior product and engineering leaders across geographies.
  • Build products that meaningfully improve how enterprises secure software at scale.

 

Harness in the news:

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex or national origin.

Note on Fraudulent Recruiting/Offers

We have become aware that there may be fraudulent recruiting attempts being made by people posing as representatives of Harness. These scams may involve fake job postings, unsolicited emails, or messages claiming to be from our recruiters or hiring managers. 

Please note, we do not ask for sensitive or financial information via chat, text, or social media, and any email communications will come from the domain @harness.io. Additionally, Harness will never ask for any payment, fee to be paid, or purchases to be made by a job applicant. All applicants are encouraged to apply directly to our open jobs via our website. Interviews are generally conducted via Zoom video conference unless the candidate requests other accommodations.

If you believe that you have been the target of an interview/offer scam by someone posing as a representative of Harness, please do not provide any personal or financial information and contact us immediately at security@harness.io. You can also find additional information about this type of scam and report any fraudulent employment offers via the Federal Trade Commission’s website (https://consumer.ftc.gov/articles/job-scams), or you can contact your local law enforcement agency.

Jobb.ai is an independent skill benchmarking platform. Applications are submitted on the employer's official website.