← Back to results

Staff Corporate Security Engineer

Join Harvey as a Staff Corporate Security Engineer to secure enterprise SaaS environments and enhance legal hold programs.

Location
San Francisco
Compensation
$220k–$330k/yr
Level
staff
Type
full time

Posted by employer 2 months ago

First seen on Joblaze 2 months ago

Last verified on the company career page 2 hours ago

AI in the day-to-day

Some of the world's largest companies use Harvey's AI to deliver client services.

Requirements

Experience
4+ years

Not disclosed in this posting: work arrangement, visa sponsorship.

Joblaze summary

In this role, the Staff Corporate Security Engineer at Harvey AI focuses on securing enterprise SaaS environments by designing and implementing security controls for data flows and integrations. Key skills include expertise in API security, eDiscovery processes, and proficiency in programming languages like Python or Go. This position is ideal for someone with over four years of experience in security engineering or IT, particularly those who can navigate complex integrations and communicate risks effectively across teams. Harvey's fast-paced environment emphasizes ownership and a commitment to excellence, making it a fitting opportunity for driven professionals.

Joblaze insights

  • Listed about 2 months ago — first seen on Joblaze August 1, 2026. Last confirmed on Harvey AI's careers page October 9, 2026.
  • This exact title is also open at 1 other location at Harvey AI: New York.
  • Salary band is above the typical range for Security roles (median ~$170,000).
  • Starts above 64% of 59 comparable staff security roles that list Python we track (median $200,000 across 30 companies). See Python salary trends
  • Python appears in 45.1% of 182 comparable staff security roles; Intune appears in 0.5% of 182 comparable staff security roles.

Quick facts

What's the salary range?
Harvey AI lists $220,000–$330,000 for this role.
How much experience is required?
At least 4 years of relevant experience for this Staff Corporate Security Engineer role.
What's the tech stack?
Joblaze extracted these technologies from the posting: Azure, Go, Google Workspace, Intune, Jamf, Microsoft Entra.
What seniority level is this role?
Harvey AI targets staff-level candidates for this position.
Is this full-time or contract?
Full-time for this Staff Corporate Security Engineer role at Harvey AI.

From the original posting

Role Overview

Some of the world's largest companies and their law firms use Harvey's AI to deliver world-class client services at unprecedented scale, entrusting Harvey with their most sensitive documents in the process.

This role joins Harvey's corporate security function, which secures the company's IT and business systems as Harvey grows rapidly, balancing risk with user experience while validating every assumption through threat modeling and real-world testing rather than relying on best practice alone.

It is a strong fit for someone at the intersection of security engineering and enterprise systems- someone who understands how data flows between SaaS applications, can pinpoint where security breaks down in complex integrations, and knows how to build controls that scale. Experience with eDiscovery workflows and legal holds is a meaningful differentiator given the nature of Harvey's customer base.

What You'll Do

  • Enterprise Integrations & SaaS Security: Design, implement, and govern security controls for cross-application data flows, API integrations, OAuth connections, and third-party SaaS platforms. Own the security review lifecycle for new integrations and automate posture monitoring to catch drift early.

  • eDiscovery & Legal Hold Program: Continue to build and operate Harvey's legal hold infrastructure, including data preservation, collection workflows, and custodian management. Partner with Legal and Compliance to meet litigation readiness requirements across our collaboration and productivity stack.

  • IT & Business Systems Partnership: Provide security oversight across the SaaS application lifecycle — vendor onboarding assessments, ongoing configuration review, and decommissioning.

  • Endpoint Security: Support endpoint security policies and vulnerability management, ensuring endpoint telemetry feeds into detection and response workflows.

  • Security Detection & Response: Develop scripts and integrations that extend visibility across corporate systems, partnering with the Detection & Response team to surface signals from SaaS and business applications.

What You Have

  • Demonstrated experience securing enterprise SaaS environments, including integration security, API token management, OAuth governance, and cross-application data flow risk — with working knowledge of authentication/authorization standards (SAML, OIDC, SCIM, X.509) and the ability to debug real-world integration failures.

  • Experience building or managing eDiscovery and legal hold programs, including data preservation workflows, custodian management, and coordination with Legal and outside counsel. Familiarity with tools such as Purview, Vault, Relativity, Everlaw, or similar platforms is a plus.

  • Strong software engineering fundamentals with proficiency in Python and/or Go, including building integrations against SaaS APIs (not just configuring through consoles), and experience with infrastructure-as-code tooling such as Terraform and/or Pulumi for managing security configurations in a repeatable, auditable way.

  • Ability to identify risks and vulnerabilities in IT and business systems and communicate that risk clearly to stakeholders across engineering, legal, and executive audiences.

  • Familiarity with endpoint security for macOS and Windows environments, and experience with tools such as Okta, Google Workspace, Salesforce, Workday, NetSuite, Microsoft Entra/Azure/Intune, JAMF, Tines, or similar platforms.

  • 4+ years of experience in security engineering, corporate engineering, IT, or a related program management function with a security focus. Experience with generative AI or the legal industry is not required — but genuine curiosity about both will serve you well here.

Compensation

$220,000 - $330,000 USD

#LI-AH1

Standard company text repeated across Harvey AI's postings is omitted here.

Similar positions

Harvey AI
Harvey AI
Senior Product Security Engineer
Harvey AI · San Francisco
Harvey
Harvey AI
Software Engineer, Security
Harvey AI · San Francisco
Harvey AI
Senior Software Engineer, Security
Harvey AI · San Francisco