Staff Software Engineer, Secure Execution
$231k - $346k • Remote • New York • FullTime
Posted 5h ago
About the job
Harvey is transforming legal and professional services by combining frontier agentic AI, an enterprise-grade platform, and deep domain expertise. We are scaling fast and defining a new category in real time. This role is a founding team member on the Security Engineering team, responsible for building the security foundations that enable AI agents to perform critical work. You will lead the development of a platform for agents to perform security work, shaping how agents are sandboxed across our product and internal platforms. A central challenge is enabling models with advanced cybersecurity capabilities to discover and validate vulnerabilities automatically, while protecting sensitive data and systems. You will build the execution environments, orchestration, and controls that make this possible, and help enable the internal use of open-source models with appropriate protections.
Responsibilities
- Set the technical direction for secure agent execution across Security, Infrastructure, and Product Engineering.
- Design, build, and operate a platform for security agents to discover and validate vulnerabilities.
- Build reusable controls for agent tool use, code execution, network and filesystem access, and resource consumption.
- Integrate with identity and secrets platforms to limit access to data and credentials.
- Partner with product sandbox and internal agent platform owners on architectural decisions and security integrations.
- Enable internal use of open-source models by building protections around model serving and agent execution.
- Develop adversarial tests and telemetry to verify containment and expose failures.
- Build mechanisms to scope, observe, interrupt, and safely terminate agent activity.
- Lead delivery and adoption across teams, mentor engineers, and remain hands-on through implementation and production operation.
Requirements
- 10+ years developing and running production software, including technical leadership on cross-team initiatives.
- Strong software engineering skills in languages such as Go, Rust, Python, or C++.
- Practical experience in Linux systems, networking, and containerized infrastructure.
- Deep expertise in execution security areas like sandboxing, OS isolation, container/VM security, or platforms executing untrusted code.
- Experience translating threats into enforceable boundaries and testing their failure modes.
- Experience building and driving adoption of shared platforms, services, or libraries.
- Experience with cloud infrastructure and distributed systems, including observability and production operation.
- Fluency with AI-assisted engineering and agentic workflows, including reasoning about risks from agents using tools or accessing sensitive data.
- Strong communication and technical judgment, with a record of driving consensus and delivery on ambiguous problems.