Clera - Your AI talent agent
LoginStart
Start
Harness logo
Harness

Staff Software Engineer (AppSec)

full-time•Mountain View•$181k - $226k

Summary

Location

Mountain View

Salary

$181k - $226k

Type

full-time

Experience

5-10 years

Company links

WebsiteLinkedInLinkedIn

About this role

<div class="content-intro"><p data-start="105" data-end="985">Harness is led by technologist and entrepreneur Jyoti Bansal, founder of AppDynamics (acquired by Cisco for $3.7B). The company has raised ~$240M in Series E venture funding, is valued at $5.5B, and backed by top investors including Goldman Sachs, Menlo Ventures, IVP, Google Ventures, J.P. Morgan, Capital One Ventures, Citi Ventures, ServiceNow, Splunk Ventures and more. Harness is building the industry’s leading AI-powered software delivery platform, enabling teams worldwide to build, test, and deliver software faster, safer, and more reliably. Writing code is only 30–40% of the engineering lifecycle — the rest involves testing, deployments, security, compliance, and optimization. Harness brings AI and automation to this outer loop, turning complex, time-consuming workflows into streamlined processes at massive global scale.</p> <p data-start="987" data-end="1674">The platform includes industry leading products in&nbsp;CI/CD, Feature Flags, Cloud Cost Management, Service Reliability, Chaos Engineering, Software Engineering Insights, Internal Developer Experience, and API discovery, observability, governance, and runtime protection. Over the past year, Harness powered 128M deployments, 81M builds, 1.2T API calls protected, and $1.9B in cloud spend optimized, helping customers like United Airlines and Choice Hotels accelerate releases by up to 75% and achieve 10x DevOps efficiency. With employees in over 25 countries, Harness is shaping the future of AI-driven software delivery — and we’re looking for exceptional talent to help us move even faster.</p></div><p><strong>Position Summary</strong></p> <p>This role comes under the AppSec Foundations charter, focused on designing and developing core authentication, authorization, and common services infrastructure that powers Harness's security ecosystem. The team is responsible for building foundational RBAC systems, service-to-service authentication, audit logging, and common security services that enable secure access control across all Harness modules including AppSec Platform, CI/CD, and other product offerings.</p> <p>The Foundations team serves as the security backbone for Harness's multi-product platform, providing essential authentication and authorization services that ensure secure, scalable access management across the entire software delivery lifecycle.</p> <h3><strong>About the Role</strong></h3> <ul> <li>You will design and implement scalable authentication and authorization systems using modern RBAC patterns and industry best practices</li> <li>You will build high-performance, low-latency microservices for identity management, token validation, and access control that serve millions of API calls</li> <li>You will develop audit logging and compliance systems that meet enterprise security requirements and regulatory standards</li> <li>You will collaborate closely with AppSec Platform, CI/CD, and other product teams to integrate security services seamlessly</li> <li>You will solve complex distributed systems challenges around service-to-service authentication, token management, and secrets rotation</li> <li>You will work with SRE teams to ensure high availability and operational excellence of critical security infrastructure</li> <li>You will contribute to API design and GraphQL schemas that provide secure, efficient access to organizational resources</li> </ul> <h3><strong>About You</strong></h3> <ul> <li><strong>Education:</strong> Bachelor's or Master's degree in Computer Science, Software Engineering, or related technical field</li> <li><strong>Experience:</strong> 6-10 years of backend engineering experience with strong focus on security, authentication, and distributed systems</li> <li><strong>Core Technologies:</strong> Proficiency in JVM-based languages (Java, Scala, Kotlin) with expertise in building production-grade microservices</li> <li><strong>Security Expertise:</strong> Deep understanding of authentication protocols (OAuth 2.0, OIDC, JWT), RBAC systems, and modern authorization patterns</li> <li><strong>API Development:</strong> Experience with RESTful APIs, GraphQL, and designing secure API architectures with proper access controls</li> <li><strong>Distributed Systems:</strong> Strong knowledge of distributed system patterns, service mesh architectures, and microservices design principles</li> <li><strong>Database Technologies:</strong> Experience with both SQL and NoSQL databases, with understanding of data security and encryption at rest</li> <li><strong>Cloud Platforms:</strong> Hands-on experience with cloud platforms (AWS, GCP, Azure) and container orchestration (Kubernetes)</li> </ul> <h3><strong>Preferred Qualifications</strong></h3> <ul> <li>Experience with secrets management systems (HashiCorp Vault, AWS Secrets Manager, etc.)</li> <li>Knowledge of compliance frameworks (SOC 2, FedRAMP, GDPR) and enterprise security requirements</li> <li>Understanding of CI/CD security patterns and DevSecOps practices</li> <li>Experience with audit logging systems and SIEM integration</li> <li>Familiarity with infrastructure as code and GitOps methodologies</li> <li>Previous experience in security-focused engineering roles or enterprise authentication systems</li> </ul> <h3><strong>Technical Focus Areas</strong></h3> <ul> <li>Authentication and Authorization Infrastructure</li> <li>RBAC and Access Control Systems</li> <li>Service-to-Service Authentication</li> <li>Audit Logging and Compliance</li> <li>API Security and Token Management</li> <li>Secrets Management and Rotation</li> <li>Common Security Services</li> </ul><div class="content-pay-transparency"><div class="pay-input"><div class="title">Pay transparency</div><div class="pay-range"><span>$181,000</span><span class="divider">&mdash;</span><span>$226,000 USD</span></div></div></div><div class="content-conclusion"><h3>Harness in the news:</h3> <ul> <li data-stringify-indent="0" data-stringify-border="0"><a href="https://www.harness.io/blog/240m-financing-to-bring-ai-to-everything-after-code">Accelerating Our Mission to Bring AI to Everything After Code</a></li> <li data-stringify-indent="0" data-stringify-border="0"><a href="https://www.cnbc.com/2025/12/11/harness-is-worth-5point5-billion-in-round-led-by-goldman-sachs.html">Goldman Sachs leads investment in software delivery startup Harness at $5.5 billion valuation</a></li> <li data-stringify-indent="0" data-stringify-border="0"><a href="https://www.youtube.com/watch?v=LvOYXKAyAqs">How Harness runs 16 “startups within a startup” at scale | Jyoti Bansal</a></li> <li data-stringify-indent="0" data-stringify-border="0"><a href="https://www.digit.fyi/ai-visibility-crisis-fuelling-security-nightmare/">Harness Research Shows AI Visibility Crisis Fueling Security Nightmare</a></li> <li data-stringify-indent="0" data-stringify-border="0"><a href="https://www.harness.io/blog/we-made-inc-s-2025-power-partners-list-again---heres-why-it-matters">Harness has been named to the Inc. Power Partner list for software delivery success</a></li> </ul> <p>All qualified applicants will receive consideration for employment without regard to race, color, religion, sex or national origin.<br><br></p> <p><strong>Note on Fraudulent Recruiting/Offers</strong></p> <p>We have become aware that there may be fraudulent recruiting attempts being made by people posing as representatives of Harness. These scams may involve fake job postings, unsolicited emails, or messages claiming to be from our recruiters or hiring managers.&nbsp;</p> <p>Please note, we do not ask for sensitive or financial information via chat, text, or social media, and any email communications will come from the domain @harness.io. Additionally, Harness will never ask for any payment, fee to be paid, or purchases to be made by a job applicant. All applicants are encouraged to apply directly to our open jobs via our website. Interviews are generally conducted via Zoom video conference unless the candidate requests other accommodations.</p> <p>If you believe that you have been the target of an interview/offer scam by someone posing as a representative of Harness, please do not provide any personal or financial information and contact us immediately at&nbsp;<a href="mailto:[email protected]">[email protected]</a>. You can also find additional information about this type of scam and report any fraudulent employment offers via the Federal Trade Commission’s website (<a href="https://consumer.ftc.gov/articles/job-scams)">https://consumer.ftc.gov/articles/job-scams)</a>, or you can contact your local law enforcement agency.</p> <div id="te-floating-button-container"></div></div>

What you'll do

  • You will design and implement scalable authentication and authorization systems, and build high-performance microservices for identity management and access control. Additionally, you will collaborate with various product teams to integrate security services seamlessly.

About Harness

Harness is a rapidly growing startup that is disrupting the software delivery market. The Harness Software Delivery Platform includes product modules for every aspect of software delivery, including: Continuous Integration, Continuous Delivery, Feature Flags, Cloud Cost Management, Service Reliability Management, Security Testing Orchestration, Chaos Engineering, Software Engineering Insights, Continuous Error Tracking, Code Repository, Internal Developer Portal, Software Supply Chain Assurance, Infrastructure as Code Management and AI/ML infused throughout with AI Development Assistant (AIDA). The platform is designed to help companies accelerate their cloud initiatives as well as their adoption of containers and orchestration tools like Kubernetes and Amazon ECS and make software delivery easier, giving devs their nights and weekends back.

Ready to join Harness?

Take the next step in your career journey

Frequently Asked Questions

What does Harness pay for a Staff Software Engineer (AppSec)?

Toggle
Harness offers a competitive compensation package for the Staff Software Engineer (AppSec) role. The salary range is USD 181k - 226k per year. Apply through Clera to learn more about the full compensation details.

What does a Staff Software Engineer (AppSec) do at Harness?

Toggle
As a Staff Software Engineer (AppSec) at Harness, you will: you will design and implement scalable authentication and authorization systems, and build high-performance microservices for identity management and access control. Additionally, you will collaborate with various product teams to integrate security services seamlessly..

Is the Staff Software Engineer (AppSec) position at Harness remote?

Toggle
The Staff Software Engineer (AppSec) position at Harness is based in Mountain View, California, United States. Contact the company through Clera for specific work arrangement details.

How do I apply for the Staff Software Engineer (AppSec) position at Harness?

Toggle
You can apply for the Staff Software Engineer (AppSec) position at Harnessdirectly through Clera. Click the "Apply Now" button above to start your application. Clera's AI-powered platform will help match your profile with this opportunity and guide you through the application process.
Clera - Your AI talent agent
© 2026 Clera Labs, Inc.TermsPrivacyHelp

Join Clera's Talent Pool

Get matched with similar opportunities at top startups

This role is hosted on Harness's careers site.
Join our talent pool first to get notified about similar roles that match your profile.