EarlyAIJobs
Jobs at AI companies, found early.

Staff Software Engineer, Secure Execution

Harvey·New Yorkjust now
EngineeringFull-time

Why Harvey

At Harvey, we’re transforming how legal and professional services operate. By combining frontier agentic AI, an enterprise-grade platform, and deep domain expertise, we’re reshaping how critical knowledge work gets done for decades to come.

This is a rare chance to help build a generational company at a true inflection point. We have strong product-market fit and world-class investor support. We’re scaling fast and defining a new category in real time. The work is ambitious, the bar is high, and the opportunity for growth — personal, professional, and financial — is unmatched.

Our team moves fast, takes ownership, and is deeply committed to the mission — operating with intensity, staying close to our customers, and pushing each other for excellence. We live by three values: Decisiveness, Simplicity, and Job's Not Finished. We act quickly on clear judgment over perfect information, we believe simplicity is what scales, and we're never satisfied with where we are. If you want to do the best work of your career alongside people who share that drive, we'd love to build with you.

At Harvey, the future of professional services is being written today — and we’re just getting started.

Role Overview

As a Staff Software Engineer on the Security Engineering team, you will join as a founding team member and build the security foundations that let Harvey put increasingly capable AI agents to work. You'll lead development of a platform for agents to perform security work, while shaping how agents are sandboxed across our product and internal platforms.

One of the central challenges is enabling models with advanced cybersecurity capabilities to discover and validate vulnerabilities automatically, including through authorized penetration testing, while protecting sensitive data and systems. You'll build the execution environments, orchestration, and controls that make this possible, and help enable the internal use of open-source models with appropriate protections around inference, tool use, and data access.

You'll work closely with the teams building Harvey's product sandbox and internal AI agent platform, shaping architecture and contributing production code to strengthen execution boundaries. Your impact will come from shipping systems, establishing a shared technical direction, and making security capabilities reusable across teams. You'll own work from design through rollout and operation, balancing containment with the reliability, performance, and flexibility that useful agents need.

What you'll do

  • Set the technical direction for secure agent execution, working across Security, Infrastructure, and Product Engineering to turn emerging capabilities and risks into a concrete roadmap.

  • Design, build, and operate a platform for security agents to discover and validate vulnerabilities within authorized targets and execution boundaries, producing reproducible evidence that engineers can act on.

  • Build reusable controls for agent tool use, code execution, network and filesystem access, resource consumption, and workload lifecycle. Integrate with identity and secrets platforms to limit access to the data and credentials each task needs.

  • Partner with the owners of Harvey's product sandbox and internal agent platform to make architectural decisions, implement protections, and integrate shared security capabilities into their execution environments.

  • Enable internal use of open-source models alongside infrastructure teams, building protections around model serving, agent execution, and sensitive-data handling.

  • Develop adversarial tests, evaluations, and telemetry that verify containment and expose failures. Build mechanisms to scope, observe, interrupt, and safely terminate agent activity.

  • Lead delivery and adoption across teams, mentor engineers, and remain hands-on through implementation and production operation, making clear tradeoffs across security, reliability, latency, and cost.

What You Have

  • 10+ years developing and running production software, including technical leadership on initiatives spanning multiple engineering teams.

  • Strong software engineering skills in languages such as Go, Rust, Python, or C++, with practical experience in Linux systems, networking, and containerized infrastructure.

  • Deep expertise in one or more areas of execution security, such as sandboxing, operating-system isolation, container or virtual-machine security, or platforms that execute untrusted code. You can translate threats into enforceable boundaries and test how those boundaries fail.

  • Experience building shared platforms, services, or libraries and helping other teams adopt them through clear interfaces, documentation, and safe migrations.

  • Experience with cloud infrastructure and distributed systems, including observability, failure handling, capacity management, and dependable production operation.

  • Fluency with AI-assisted engineering and agentic workflows: you use models to accelerate development, validate their output, and reason about the risks introduced when agents use tools, execute code, or access sensitive data.

  • Strong communication and technical judgment, with a record of bringing teams to agreement on ambiguous problems and carrying decisions through to delivery.

Nice to have

  • Experience with microVMs, hypervisors, or sandbox runtimes such as Firecracker, gVisor, or Kata Containers, or Linux isolation mechanisms such as namespaces, seccomp, and Landlock.

  • Experience building agent runtimes, tool-execution frameworks, or automated security-testing platforms.

  • Experience with vulnerability research, penetration testing, or adversarial evaluation of agent systems, including turning findings into reproducible tests and effective controls.

  • Experience deploying or securing self-hosted inference and open-source models, including isolation of model-serving workloads and protection of sensitive inputs and outputs.

Compensation

$231,000 - $346,400 USD


 

Depending on your location, an Applicant Privacy Notice may apply to you. You can find all of our Applicant Privacy Notices [here].

#LI-NP1

Harvey is an equal opportunity employer and does not discriminate on the basis of race, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition, or any other basis protected by law.

We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made by emailing [email protected]

Listing collected from Harvey's official careers feed. EarlyAIJobs is not affiliated with Harvey; applications are handled entirely on their site and EarlyAIJobs never collects your details.

Apply on Harvey's site ↗