{"schemaVersion":"jobsearcher.job.v1","id":"e5d6eaee231fd603798ea6a1","url":"https://jobsearcher.com/jobs/e5d6eaee231fd603798ea6a1","canonicalUrl":"https://jobsearcher.com/jobs/e5d6eaee231fd603798ea6a1","title":"Staff Software Engineer (AppSec)","description":"Harness is the AI Software Delivery Platform company, led by technologist and entrepreneur Jyoti Bansal (founder of AppDynamics, acquired by Cisco for $3.7B). Harness has raised approximately $570M in funding and is valued at $5.5B, backed by leading investors including Goldman Sachs, Menlo Ventures, IVP, Unusual Ventures, Citi Ventures, and more. As AI accelerates code creation, the real bottleneck has shifted to everything after the code – testing, deployments, application security, reliability, compliance, and cost optimization. Harness brings AI and automation to this “outer loop,” helping teams ship software faster while maintaining security and governance throughout the entire software delivery lifecycle.Powered by Harness AI and the Software Delivery Knowledge Graph, the Harness Platform applies deep context and intelligent automation across the software delivery lifecycle with governance and policy-driven controls embedded throughout the platform.Over the past year, Harness powered over 185M deployments, 82M builds, 18T flag evaluations, 8M security scans, 9.1B optimized tests, 3T protected API calls, and helped manage $2.8B in cloud spend — enabling customers like United Airlines, Morningstar, and Choice Hotels to accelerate releases by up to 75%, reduce cloud costs by up to 60%, and achieve 10x DevOps efficiency.With a global team across 26 offices and 25 countries, Harness is shaping the future of AI software delivery — and we’re looking for exceptional talent to help us move even faster.Position SummaryThis role comes under the AppSec Foundations charter, focused on designing and developing core authentication, authorization, and common services infrastructure that powers Harness's security ecosystem. The team is responsible for building foundational RBAC systems, service-to-service authentication, audit logging, and common security services that enable secure access control across all Harness modules including AppSec Platform, CI/CD, and other product offerings.The Foundations team serves as the security backbone for Harness's multi-product platform, providing essential authentication and authorization services that ensure secure, scalable access management across the entire software delivery lifecycle.About The RoleYou will design and implement scalable authentication and authorization systems using modern RBAC patterns and industry best practicesYou will build high-performance, low-latency microservices for identity management, token validation, and access control that serve millions of API callsYou will develop audit logging and compliance systems that meet enterprise security requirements and regulatory standardsYou will collaborate closely with AppSec Platform, CI/CD, and other product teams to integrate security services seamlesslyYou will solve complex distributed systems challenges around service-to-service authentication, token management, and secrets rotationYou will work with SRE teams to ensure high availability and operational excellence of critical security infrastructureYou will contribute to API design and GraphQL schemas that provide secure, efficient access to organizational resourcesAbout YouEducation: Bachelor's or Master's degree in Computer Science, Software Engineering, or related technical fieldExperience: 6-10 years of backend engineering experience with strong focus on security, authentication, and distributed systemsCore Technologies: Proficiency in JVM-based languages (Java, Scala, Kotlin) with expertise in building production-grade microservicesSecurity Expertise: Deep understanding of authentication protocols (OAuth 2.0, OIDC, JWT), RBAC systems, and modern authorization patternsAPI Development: Experience with RESTful APIs, GraphQL, and designing secure API architectures with proper access controlsDistributed Systems: Strong knowledge of distributed system patterns, service mesh architectures, and microservices design principlesDatabase Technologies: Experience with both SQL and NoSQL databases, with understanding of data security and encryption at restCloud Platforms: Hands-on experience with cloud platforms (AWS, GCP, Azure) and container orchestration (Kubernetes)Preferred QualificationsExperience with secrets management systems (HashiCorp Vault, AWS Secrets Manager, etc.)Knowledge of compliance frameworks (SOC 2, FedRAMP, GDPR) and enterprise security requirementsUnderstanding of CI/CD security patterns and DevSecOps practicesExperience with audit logging systems and SIEM integrationFamiliarity with infrastructure as code and GitOps methodologiesPrevious experience in security-focused engineering roles or enterprise authentication systemsTechnical Focus AreasAuthentication and Authorization InfrastructureRBAC and Access Control SystemsService-to-Service AuthenticationAudit Logging and ComplianceAPI Security and Token ManagementSecrets Management and RotationCommon Security ServicesPay transparency$181,000—$226,000 USDHarness In The NewsAccelerating Our Mission to Bring AI to Everything After CodeGoldman Sachs leads investment in software delivery startup Harness at $5.5 billion valuationHow Harness runs 16 “startups within a startup” at scale | Jyoti BansalHarness Research Shows AI Visibility Crisis Fueling Security NightmareHarness has been named to the Inc. Power Partner list for software delivery successAll qualified applicants will receive consideration for employment without regard to race, color, religion, sex or national origin.Note on Fraudulent Recruiting/OffersWe have become aware that there may be fraudulent recruiting attempts being made by people posing as representatives of Harness. These scams may involve fake job postings, unsolicited emails, or messages claiming to be from our recruiters or hiring managers.Please note, we do not ask for sensitive or financial information via chat, text, or social media, and any email communications will come from the domain @harness.io. Additionally, Harness will never ask for any payment, fee to be paid, or purchases to be made by a job applicant. All applicants are encouraged to apply directly to our open jobs via our website. Interviews are generally conducted via Zoom video conference unless the candidate requests other accommodations.If you believe that you have been the target of an interview/offer scam by someone posing as a representative of Harness, please do not provide any personal or financial information and contact us immediately at security@harness.io. You can also find additional information about this type of scam and report any fraudulent employment offers via the Federal Trade Commission’s website (https://consumer.ftc.gov/articles/job-scams), or you can contact your local law enforcement agency.","company":"Harness","rawCompany":"harness","city":"Mountain View","state":"HI","isRemote":false,"isActive":false,"createdAt":"2026-04-12T17:43:34.325Z","occupations":[{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"}],"industries":[{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Staff Software Engineer (AppSec)","description":"Harness is the AI Software Delivery Platform company, led by technologist and entrepreneur Jyoti Bansal (founder of AppDynamics, acquired by Cisco for $3.7B). Harness has raised approximately $570M in funding and is valued at $5.5B, backed by leading investors including Goldman Sachs, Menlo Ventures, IVP, Unusual Ventures, Citi Ventures, and more. As AI accelerates code creation, the real bottleneck has shifted to everything after the code – testing, deployments, application security, reliability, compliance, and cost optimization. Harness brings AI and automation to this “outer loop,” helping teams ship software faster while maintaining security and governance throughout the entire software delivery lifecycle.Powered by Harness AI and the Software Delivery Knowledge Graph, the Harness Platform applies deep context and intelligent automation across the software delivery lifecycle with governance and policy-driven controls embedded throughout the platform.Over the past year, Harness powered over 185M deployments, 82M builds, 18T flag evaluations, 8M security scans, 9.1B optimized tests, 3T protected API calls, and helped manage $2.8B in cloud spend — enabling customers like United Airlines, Morningstar, and Choice Hotels to accelerate releases by up to 75%, reduce cloud costs by up to 60%, and achieve 10x DevOps efficiency.With a global team across 26 offices and 25 countries, Harness is shaping the future of AI software delivery — and we’re looking for exceptional talent to help us move even faster.Position SummaryThis role comes under the AppSec Foundations charter, focused on designing and developing core authentication, authorization, and common services infrastructure that powers Harness's security ecosystem. The team is responsible for building foundational RBAC systems, service-to-service authentication, audit logging, and common security services that enable secure access control across all Harness modules including AppSec Platform, CI/CD, and other product offerings.The Foundations team serves as the security backbone for Harness's multi-product platform, providing essential authentication and authorization services that ensure secure, scalable access management across the entire software delivery lifecycle.About The RoleYou will design and implement scalable authentication and authorization systems using modern RBAC patterns and industry best practicesYou will build high-performance, low-latency microservices for identity management, token validation, and access control that serve millions of API callsYou will develop audit logging and compliance systems that meet enterprise security requirements and regulatory standardsYou will collaborate closely with AppSec Platform, CI/CD, and other product teams to integrate security services seamlesslyYou will solve complex distributed systems challenges around service-to-service authentication, token management, and secrets rotationYou will work with SRE teams to ensure high availability and operational excellence of critical security infrastructureYou will contribute to API design and GraphQL schemas that provide secure, efficient access to organizational resourcesAbout YouEducation: Bachelor's or Master's degree in Computer Science, Software Engineering, or related technical fieldExperience: 6-10 years of backend engineering experience with strong focus on security, authentication, and distributed systemsCore Technologies: Proficiency in JVM-based languages (Java, Scala, Kotlin) with expertise in building production-grade microservicesSecurity Expertise: Deep understanding of authentication protocols (OAuth 2.0, OIDC, JWT), RBAC systems, and modern authorization patternsAPI Development: Experience with RESTful APIs, GraphQL, and designing secure API architectures with proper access controlsDistributed Systems: Strong knowledge of distributed system patterns, service mesh architectures, and microservices design principlesDatabase Technologies: Experience with both SQL and NoSQL databases, with understanding of data security and encryption at restCloud Platforms: Hands-on experience with cloud platforms (AWS, GCP, Azure) and container orchestration (Kubernetes)Preferred QualificationsExperience with secrets management systems (HashiCorp Vault, AWS Secrets Manager, etc.)Knowledge of compliance frameworks (SOC 2, FedRAMP, GDPR) and enterprise security requirementsUnderstanding of CI/CD security patterns and DevSecOps practicesExperience with audit logging systems and SIEM integrationFamiliarity with infrastructure as code and GitOps methodologiesPrevious experience in security-focused engineering roles or enterprise authentication systemsTechnical Focus AreasAuthentication and Authorization InfrastructureRBAC and Access Control SystemsService-to-Service AuthenticationAudit Logging and ComplianceAPI Security and Token ManagementSecrets Management and RotationCommon Security ServicesPay transparency$181,000—$226,000 USDHarness In The NewsAccelerating Our Mission to Bring AI to Everything After CodeGoldman Sachs leads investment in software delivery startup Harness at $5.5 billion valuationHow Harness runs 16 “startups within a startup” at scale | Jyoti BansalHarness Research Shows AI Visibility Crisis Fueling Security NightmareHarness has been named to the Inc. Power Partner list for software delivery successAll qualified applicants will receive consideration for employment without regard to race, color, religion, sex or national origin.Note on Fraudulent Recruiting/OffersWe have become aware that there may be fraudulent recruiting attempts being made by people posing as representatives of Harness. These scams may involve fake job postings, unsolicited emails, or messages claiming to be from our recruiters or hiring managers.Please note, we do not ask for sensitive or financial information via chat, text, or social media, and any email communications will come from the domain @harness.io. Additionally, Harness will never ask for any payment, fee to be paid, or purchases to be made by a job applicant. All applicants are encouraged to apply directly to our open jobs via our website. Interviews are generally conducted via Zoom video conference unless the candidate requests other accommodations.If you believe that you have been the target of an interview/offer scam by someone posing as a representative of Harness, please do not provide any personal or financial information and contact us immediately at security@harness.io. You can also find additional information about this type of scam and report any fraudulent employment offers via the Federal Trade Commission’s website (https://consumer.ftc.gov/articles/job-scams), or you can contact your local law enforcement agency.","datePosted":"2026-04-12T17:43:34.325Z","dateModified":"2026-04-12T17:43:34.325Z","hiringOrganization":{"@type":"Organization","name":"Harness","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Mountain View","addressRegion":"HI","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"e5d6eaee231fd603798ea6a1"},"url":"https://jobsearcher.com/jobs/e5d6eaee231fd603798ea6a1"}}