Senior Software Engineer, Security
$220k - $330k • Remote • San Francisco • FullTime
Posted 2d ago
Job Location
San Francisco
Tech Stack
Remote Work Policy
Fully remote
Employment Type
FullTime
Categories
Applied AI Engineer
About the job
Harvey is seeking a Senior Software Engineer for its Security Engineering team. This role involves building and operating the core security services that power all other engineering functions at Harvey, including identity and access management, secrets management, and privileged access. You will be responsible for designing, coding, and running these systems in production, with a focus on making the secure path the fast path. Security at Harvey is treated as an engineering discipline, emphasizing the creation of platforms and libraries that guide engineers towards secure practices and are measured by adoption and outcomes. The program is risk-informed, prioritizing investments where customer data exposure is greatest.
Responsibilities
- Design, build, and operate core security services (authentication, authorization, access governance, secrets management, privileged access) across workforce, infrastructure, and production environments.
- Own the end-to-end identity infrastructure, including SSO, SCIM, and fine-grained authorization for enterprise customers.
- Develop secure-by-default libraries, abstractions, and self-service tooling for engineering teams.
- Take systems from greenfield to production-grade, including architecture definition, shipping, instrumentation, and reliability ownership.
- Contribute to incident response and drive technical mitigations for security issues.
- Improve security across engineering through design and code reviews, and technical mentorship.
Requirements
- 5+ years of software engineering experience with a proven track record of shipping and operating production services.
- Hands-on experience building security infrastructure (IAM, authn/authz, secrets management, or privileged access).
- Working knowledge of common vulnerability classes and attacker-based system failure reasoning.
- Strong programming skills and ability to work across the stack and unfamiliar domains.
- Fluency in building and maintaining production services with agentic coding tools (e.g., Claude Code, Codex).
- Experience with cloud infrastructure (Azure, GCP, or AWS) and modern distributed system patterns.
- Demonstrated ability to translate security requirements into scalable engineering solutions.
- Strong communication and collaboration skills, with the ability to influence engineering teams.