Skip to content
HarveyHarvey

Software Engineer, Security

Build and operate foundational security services spanning identity, access, secrets, privileged access, and secure AI-agent infrastructure. The role requires at least two years of production software engineering experience, cloud expertise, and experience translating security requirements into reliable automated systems.

About the job

Responsibilities

  • Build and operate core identity and access services across customer-facing products, workforce systems, and infrastructure, including authentication, authorization, access governance, secrets, and privileged access.
  • Improve customer security configuration experiences, including identity, access, policies, and integrations, while maintaining secure defaults.
  • Build identity controls, sandboxes, and safety harnesses that enable services and AI agents to operate with least privilege, constrained actions, auditability, and monitoring.
  • Create secure-by-default libraries, paved-road abstractions, self-service tooling, and agentic workflows that automate security triage, remediation, and evidence collection.
  • Design, productionize, and operate security systems with attention to trust boundaries, attacker paths, operational failure modes, reliability, and security.
  • Participate in on-call rotations and incident response for mission-critical security services.
  • Contribute through design reviews, code reviews, documentation, and technical collaboration.

Requirements

  • 2+ years of software engineering experience, including shipping and operating production services.
  • Experience building or contributing to security infrastructure such as identity and access management, authentication and authorization, secrets management, or privileged access.
  • Strong programming, debugging, testing, and problem-solving skills.
  • Experience with cloud infrastructure such as Microsoft Azure, Google Cloud Platform, or Amazon Web Services.
  • Familiarity with modern distributed-system patterns.
  • Track record of translating security requirements into maintainable, automated systems.
  • Experience using agentic coding tools and creating automated workflows, with the judgment to critically evaluate their output.
  • Clear communication and collaboration skills, including explaining technical risks, decisions, and tradeoffs.
  • Working knowledge of common vulnerability classes and attacker-oriented system failure analysis.

Nice to Have

  • Experience building security infrastructure at a fast-growing company.
  • Experience with SCIM, OpenID Connect (OIDC), Security Assertion Markup Language (SAML), policy engines such as Open Policy Agent (OPA), Cedar, or Zanzibar-style systems.
  • Experience with hardware-backed credentials.
  • Experience securing agentic or AI-powered systems that act on behalf of users against sensitive data.
  • Experience in highly regulated enterprise environments.

Skills

Identity And Access Management, Authentication, Authorization, Secrets Management, Privileged Access Management, Microsoft Azure, GCP, Amazon Web Services, Distributed Systems, SCIM, Openid Connect, SAML, Open Policy Agent, Cedar, Zanzibar

Sentry

Sentry

San Francisco, CA
Security Engineer, Detection & Response
CA$162k+/yrHybrid2+ YOESecurity Engineering

Security engineer responsible for detection engineering, investigations, incident response, identity and access management, and preventative security controls across corporate and production environments. Requires 2+ years of security engineering experience, programming ability, and familiarity with cloud and defensive security tooling.

Sentry

Sentry

San Francisco, CA
Security Engineer, Application Security
CA$162k+/yrHybrid2+ YOESecurity Engineering

Security Engineer focused on application and platform security, security reviews, threat modeling, vulnerability management, and secure development practices. The role requires at least two years of relevant experience, programming ability, and familiarity with cloud security technologies.

Flexport

Flexport

San Francisco, CA

Security Engineer, Corporate Security
$165k+/yrOn-site2+ YOESecurity Engineering

Build and operate corporate security controls across identity, endpoints, SaaS applications, and automation. The role requires 2–5 years of security engineering experience, hands-on endpoint and EDR expertise, identity protocol knowledge, and scripting ability.

Greptile

Greptile

San Francisco, CA

Product Engineer, Security
$170k+/yrOn-site1+ YOESecurity Engineering

Build Greptile’s security product, including code scanning, vulnerability detection and reproduction, security-focused pull-request workflows, and agent infrastructure. The role requires a computer science degree, software or DevOps experience, JavaScript/TypeScript expertise, and hands-on security experience.

Hover

Hover

San Francisco, CA
Security Software Engineer
$148k+/yrHybrid1+ YOESecurity Engineering

Build foundational security services and automation protecting Hover’s applications, users, and cloud infrastructure. The role suits an early-career software engineer with strong programming fundamentals, a computer science background, and interest in secure development practices.