H

Software Engineer, Security

Harvey

San Francisco, California, USAFull Time$161k–$245k
Apply with OnJob Free profile · takes about a minute

Software Engineer, Security at Harvey is a full time role based in San Francisco, California, USA. The listing states pay of $161k–$245k. It was published on 1 September 2026 and was open at last check.

Software Engineer, Security at Harvey — key details
RoleSoftware Engineer, Security
CompanyHarvey
LocationSan Francisco, California, USA
Employment typeFull Time
Pay (as listed)$161k–$245k
Published1 September 2026
StatusOpen at last check

Why Harvey

At Harvey, we’re transforming how legal and professional services operate. By combining frontier agentic AI, an enterprise-grade platform, and deep domain expertise, we’re reshaping how critical knowledge work gets done for decades to come.

This is a rare chance to help build a generational company at a true inflection point. We have strong product-market fit and world-class investor support. We’re scaling fast and defining a new category in real time. The work is ambitious, the bar is high, and the opportunity for growth — personal, professional, and financial — is unmatched.

Our team moves fast, takes ownership, and is deeply committed to the mission — operating with intensity, staying close to our customers, and pushing each other for excellence. We live by three values: Decisiveness, Simplicity, and Job's Not Finished. We act quickly on clear judgment over perfect information, we believe simplicity is what scales, and we're never satisfied with where we are. If you want to do the best work of your career alongside people who share that drive, we'd love to build with you.

At Harvey, the future of professional services is being written today — and we’re just getting started.

Role Overview

As a Software Engineer on the Security Engineering team at Harvey, you'll build and operate foundational security services for both our customer-facing product and the internal systems our workforce depends on: identity and access management, secrets and privileged access, agent sandboxes, and tooling that makes the secure path the fast path. You'll turn security needs into production systems and own the reliability and security of what you build, working closely with engineers and partner teams along the way. Attackers increasingly operate at agent speed, so we’re building defenses that can keep pace.

Security at Harvey is an engineering discipline, not a gatekeeper function. We build platforms and libraries that make it hard for engineers to get security wrong, and we measure ourselves on adoption and outcomes rather than tickets filed. Our program is informed by risk: we invest where the actual exposure to our most sensitive data and resources is greatest, rather than where a framework tells us to.

What You'll Do

  • Build and operate Harvey’s core identity and access services across customer-facing product, workforce, and infrastructure systems, including authentication, authorization, access governance, secrets, and privileged access
  • Evolve how Harvey customers set up and manage their environments, making security-critical configuration—from identity and access to policies and integrations—delightful to use and secure by default
  • Build identity controls, sandboxes, and safety harnesses that let services and AI agents operate with least privilege, constrained actions, clear auditability, and effective monitoring
  • Create secure-by-default libraries, paved-road abstractions, self-service tooling, and agentic workflows that automate security triage, remediation, and evidence collection
  • Take security systems from design through production, accounting for trust boundaries, attacker paths, and operational failure modes while owning their reliability and security
  • Share an on-call rotation for Harvey’s mission-critical security services, contribute to incident response, and raise the engineering bar through design reviews, code reviews, and clear documentation

What You Have

  • 2+ years of software engineering experience, including experience shipping and operating production services
  • Experience building or contributing to security infrastructure such as identity and access management, authentication and authorization, secrets management, or privileged access
  • Strong programming, debugging, testing, and problem-solving skills, with the ability to work across unfamiliar systems and domains
  • Experience with cloud infrastructure such as Microsoft Azure, Google Cloud Platform, or Amazon Web Services and familiarity with modern distributed-system patterns
  • A track record of translating security requirements into maintainable, automated systems
  • Experience using agentic coding tools and creating workflows that automate repetitive security work, with the judgment to review their output critically and measure whether they improve security outcomes
  • Clear communication and collaboration skills, including the ability to explain technical risks, decisions, and tradeoffs to engineering partners
  • Working knowledge of common vulnerability classes and the ability to reason about how a system fails under an attacker, not just under load

Nice to Have

  • Experience building security infrastructure at a fast-growing company
  • Experience with SCIM; OpenID Connect (OIDC); Security Assertion Markup Language (SAML); policy engines such as Open Policy Agent (OPA), Cedar, or Zanzibar-style systems; or hardware-backed credentials
  • Experience securing agentic or AI-powered systems, especially systems that act on behalf of users against sensitive data
  • Experience working in a highly regulated enterprise environment

Compensation

$161,000 - $245,000 USD

Depending on your location, an Applicant Privacy Notice may apply to you. You can find all of our Applicant Privacy Notices [here].

#LI-NP1

Harvey is an equal opportunity employer and does not discriminate on the basis of race, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition, or any other basis protected by law.

We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made by emailing accommodations@harvey.ai

Share:WhatsAppLinkedIn

Create your free OnJob profile to apply — we'll take you to Harvey's application after sign-up. · Posted 1 Sept 2026.

Software Engineer, Security at Harvey — questions answered

What does the Software Engineer, Security role at Harvey pay?

The Software Engineer, Security at Harvey listing states pay of $161k–$245k for the San Francisco, California, USA position. That figure is taken directly from the employer's own posting as published, not estimated or averaged from other roles.

Where is the Software Engineer, Security role at Harvey based?

Harvey lists this Software Engineer, Security role in San Francisco, California, USA, advertised as full time work at that location. Larger employers sometimes cover several sites under one city name, so confirm the exact office with Harvey before you apply.

Is the Software Engineer, Security role at Harvey still open?

The Software Engineer, Security posting at Harvey was open at OnJob's last check of the employer's careers page, having been published on 1 September 2026. OnJob re-checks source listings on each build and marks a role closed once it disappears, but listings can close without notice, so the employer's own page is the final word.

How do you apply for the Software Engineer, Security role at Harvey?

Apply to the Software Engineer, Security at Harvey role through OnJob with a free profile: OnJob scores your fit against the listing, shows the skills lowering that score, and submits an ATS-ready profile to Harvey's own application page. Creating a profile is free and needs no card.

Explore more on OnJob

Hiring for a role like this?

Post a job on OnJob and reach AI-matched candidates.

Post a Job