← Back to results

Staff Software Engineer, Secure Execution

Join Harvey as a Staff Software Engineer to build security foundations for AI agents in a fast-scaling company.

Location
New York
Compensation
$231k–$346.4k/yr
Level
staff
Type
full time

Posted by employer 22 hours ago

First seen on Joblaze 14 hours ago

Last verified on the company career page 6 hours ago

Apply at Harvey → Save job Scanned from harvey.ai

What you'll build

  • Set the technical direction for secure agent execution
  • Design, build, and operate a platform for security agents
  • Build reusable controls for agent tool use and execution
  • Partner with product sandbox and internal agent platform owners
  • Develop adversarial tests and telemetry

Must have

  • 10+ years developing and running production software
  • Strong software engineering skills in Go, Rust, Python, or C++
  • Deep expertise in execution security
  • Experience building shared platforms or services
  • Experience with cloud infrastructure and distributed systems
  • Strong communication and technical judgment

Nice to have

  • Experience with microVMs or hypervisors
  • Experience building agent runtimes or automated security-testing platforms
  • Experience with vulnerability research or penetration testing
  • Experience deploying or securing self-hosted inference models

Role intensity

40% coding

AI in the day-to-day

Fluency with AI-assisted engineering and agentic workflows: you use models to accelerate development.

Requirements

Experience
10+ years

Not disclosed in this posting: work arrangement, visa sponsorship.

Joblaze summary

In the role of Staff Software Engineer on the Security Engineering team at Harvey, the individual will focus on developing a secure platform for AI agents to perform cybersecurity tasks, including vulnerability discovery and validation. Key skills include proficiency in languages like Go, Rust, or Python, along with a strong background in execution security and cloud infrastructure. This position is suited for seasoned engineers with over a decade of experience, particularly those who have led cross-team initiatives and possess deep technical expertise in security frameworks. The team emphasizes collaboration and rapid execution, aiming to establish robust security measures as the company sc

Joblaze insights

  • Listed today — first seen on Joblaze October 1, 2026. Last confirmed on Harvey's careers page October 1, 2026.
  • This exact title is also open at 1 other location at Harvey: San Francisco.
  • Salary band is above the typical range for Security roles (median ~$170,000).
  • Starts above 81% of 37 comparable staff security roles in United States that list Python we track (median $200,000 across 23 companies). See Python salary trends
  • Python appears in 46.2% of 93 comparable staff security roles in United States; sandboxing appears in 1.1% of 93 comparable staff security roles in United States.

Quick facts

What's the salary range?
Harvey lists $231,000–$346,400 for this role.
How much experience is required?
At least 10 years of relevant experience for this Staff Software Engineer, Secure Execution role.
What's the tech stack?
Joblaze extracted these technologies from the posting: AI-assisted engineering, C++, Container Security, Go, Linux, Networking.
What seniority level is this role?
Harvey targets staff-level candidates for this position.
Is this full-time or contract?
Full-time for this Staff Software Engineer, Secure Execution role at Harvey.

From the original posting

Role Overview

As a Staff Software Engineer on the Security Engineering team, you will join as a founding team member and build the security foundations that let Harvey put increasingly capable AI agents to work. You'll lead development of a platform for agents to perform security work, while shaping how agents are sandboxed across our product and internal platforms.

One of the central challenges is enabling models with advanced cybersecurity capabilities to discover and validate vulnerabilities automatically, including through authorized penetration testing, while protecting sensitive data and systems. You'll build the execution environments, orchestration, and controls that make this possible, and help enable the internal use of open-source models with appropriate protections around inference, tool use, and data access.

You'll work closely with the teams building Harvey's product sandbox and internal AI agent platform, shaping architecture and contributing production code to strengthen execution boundaries. Your impact will come from shipping systems, establishing a shared technical direction, and making security capabilities reusable across teams. You'll own work from design through rollout and operation, balancing containment with the reliability, performance, and flexibility that useful agents need.

What you'll do

  • Set the technical direction for secure agent execution, working across Security, Infrastructure, and Product Engineering to turn emerging capabilities and risks into a concrete roadmap.

  • Design, build, and operate a platform for security agents to discover and validate vulnerabilities within authorized targets and execution boundaries, producing reproducible evidence that engineers can act on.

  • Build reusable controls for agent tool use, code execution, network and filesystem access, resource consumption, and workload lifecycle. Integrate with identity and secrets platforms to limit access to the data and credentials each task needs.

  • Partner with the owners of Harvey's product sandbox and internal agent platform to make architectural decisions, implement protections, and integrate shared security capabilities into their execution environments.

  • Enable internal use of open-source models alongside infrastructure teams, building protections around model serving, agent execution, and sensitive-data handling.

  • Develop adversarial tests, evaluations, and telemetry that verify containment and expose failures. Build mechanisms to scope, observe, interrupt, and safely terminate agent activity.

  • Lead delivery and adoption across teams, mentor engineers, and remain hands-on through implementation and production operation, making clear tradeoffs across security, reliability, latency, and cost.

What You Have

  • 10+ years developing and running production software, including technical leadership on initiatives spanning multiple engineering teams.

  • Strong software engineering skills in languages such as Go, Rust, Python, or C++, with practical experience in Linux systems, networking, and containerized infrastructure.

  • Deep expertise in one or more areas of execution security, such as sandboxing, operating-system isolation, container or virtual-machine security, or platforms that execute untrusted code. You can translate threats into enforceable boundaries and test how those boundaries fail.

  • Experience building shared platforms, services, or libraries and helping other teams adopt them through clear interfaces, documentation, and safe migrations.

  • Experience with cloud infrastructure and distributed systems, including observability, failure handling, capacity management, and dependable production operation.

  • Fluency with AI-assisted engineering and agentic workflows: you use models to accelerate development, validate their output, and reason about the risks introduced when agents use tools, execute code, or access sensitive data.

  • Strong communication and technical judgment, with a record of bringing teams to agreement on ambiguous problems and carrying decisions through to delivery.

Nice to have

  • Experience with microVMs, hypervisors, or sandbox runtimes such as Firecracker, gVisor, or Kata Containers, or Linux isolation mechanisms such as namespaces, seccomp, and Landlock.

  • Experience building agent runtimes, tool-execution frameworks, or automated security-testing platforms.

  • Experience with vulnerability research, penetration testing, or adversarial evaluation of agent systems, including turning findings into reproducible tests and effective controls.

  • Experience deploying or securing self-hosted inference and open-source models, including isolation of model-serving workloads and protection of sensitive inputs and outputs.

Compensation

$231,000 - $346,400 USD

 

Depending on your location, an Applicant Privacy Notice may apply to you. You can find all of our Applicant Privacy Notices [here].

#LI-NP1

Standard company text repeated across Harvey's postings is omitted here.

Similar positions

Harvey
Harvey AI
Senior Product Security Engineer
Harvey AI · San Francisco
Harvey AI
Software Engineer, Security
Harvey AI · San Francisco
Harvey AI
Staff Product Security Engineer
Harvey AI · San Francisco
Harvey AI