About the Role
As a Senior Software Engineer on the Security Engineering team at Harvey, you'll build and operate foundational security services including identity and access management, secrets management, and privileged access. You will design, code, and own these systems in production, addressing the unique challenges posed by agentic systems interacting with sensitive data.
Responsibilities
- Design, build, and operate Harvey's core security services — authentication, authorization, access governance, secrets management, and privileged access — across workforce, infrastructure, and production environments
- Own Harvey's identity infrastructure end-to-end, including SSO, SCIM, and the fine-grained authorization our enterprise customers require
- Build secure-by-default libraries, paved-road abstractions, and self-service tooling so engineering teams can identify, remediate, and prevent security issues without waiting on us
- Take these systems from greenfield to production-grade: define the architecture, ship it, instrument it, and own its reliability
- Contribute to incident response and drive technical mitigation when security issues surface
- Raise the security bar across engineering through design reviews, code reviews, and technical mentorship
Requirements
- 5+ years of software engineering experience with a track record of shipping and operating production services
- Hands-on experience building security infrastructure — IAM, authn/authz, secrets management, or privileged access
- Working knowledge of common vulnerability classes and the ability to reason about how a system fails under an attacker, not just under load
- Strong programming skills and a willingness to work across the stack and across unfamiliar domains
- Fluency building and maintaining production services with agentic coding tools (Claude Code, Codex, or similar) — you know how to get real leverage from them and where they need supervision
- Experience with cloud infrastructure (Azure, GCP, or AWS) and modern distributed system patterns
- Demonstrated ability to turn security requirements into scalable engineering solutions rather than manual process
- Strong communication and collaboration skills; you can influence engineering teams without formal authority
Skills
- IAM
- Authentication
- Authorization
- Secrets Management
- Privileged Access
- SSO
- SCIM
- Agentic coding tools
- Cloud infrastructure (Azure, GCP, or AWS)
- Modern distributed system patterns
- Security platforms
- Developer platform engineering
- Infrastructure engineering
- SCIM
- OIDC/SAML
- Policy engines (OPA, Cedar, Zanzibar-style systems)
- Hardware-backed credentials
Experience Level
- Senior
About the Company
- At Harvey, we’re transforming how legal and professional services operate by combining frontier agentic AI, an enterprise-grade platform, and deep domain expertise.
- We have strong product-market fit and world-class investor support.
- We’re scaling fast and defining a new category in real time.
- Our team moves fast, takes ownership, and is deeply committed to the mission — operating with intensity, staying close to our customers, and pushing each other for excellence.
- We live by three values: Decisiveness, Simplicity, and Job's Not Finished.
- The future of professional services is being written today — and we’re just getting started.
Equal Opportunity
- Harvey is an equal opportunity employer and does not discriminate on the basis of race, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition, or any other basis protected by law.
- We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made by emailing accommodations@harvey.ai
