This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
At Harvey, we’re transforming how legal and professional services operate — not incrementally, but end-to-end. By combining frontier agentic AI, an enterprise-grade platform, and deep domain expertise, we’re reshaping how critical knowledge work gets done for decades to come. This is a rare chance to help build a generational company at a true inflection point. With 1000+ customers in 58+ countries, strong product-market fit, and world-class investor support, we’re scaling fast and defining a new category in real time. The work is ambitious, the bar is high, and the opportunity for growth — personal, professional, and financial — is unmatched.
Job Responsibility:
Respond to customer security questions at scale by using AI
Meet with customers to address security-related questions and concerns
Manage ISO and SOC 2 Type 2 and other emerging compliance programs
Maintain and update corporate information security policies
Maintain and improve our internal documentation
Maintain and improve security documentation and resources we share with customers and partners
Identify opportunities to streamline Trust workflows through tooling and automation
Requirements:
4+ years experience in Information Security
3+ years experience in roles requiring a high degree of project management
A strong foundation across a broad range of security, risk, and governance topics
Excellent organizational skills, including project management and process design with a drive for simplification
Excellent written communication skills
Ability to communicate complex technical and regulatory topics to diverse audiences
Ability to manage external contractors, vendors, and consultants
Customer-centric mindset
Strong attention to detail while keeping focused on the big picture
Nice to have:
Experience leading compliance certification projects such as SOC 2, ISO, IRAP, FedRAMP
Experience operationalizing controls at the intersection of product and enterprise security (secure SDLC, data protection/privacy-by-design, third‑party risk, incident response) in AI-centric contexts