Guidewire Software Logo

Guidewire Software

Staff Security Engineer- Insider Threat

Posted 6 Days Ago
Remote
2 Locations
Senior level
Remote
2 Locations
Senior level
This role involves managing the Insider Threat Program, developing detection tools, and supporting incident investigations and cross-functional collaborations.
The summary above was generated by AI

Summary

We seek a seasoned and highly motivated Staff Security Engineer to be part of the Insider Threat Program and enhance broader threat detection and response capabilities. The role involves developing robust detection pipelines, efficiently managing security alerts, contributing to incident investigation workflows and playbooks, and collaborating closely with relevant stakeholders, detection engineering, threat intel and incident response teams.

Job Description

Core Responsibilities:
  • Establish, implement, and oversee the Insider Threat Program, ensuring compliance with organizational goals, industry best practices, and legal requirements.

  • Collaborate with multidisciplinary teams, including Physical Security, Legal, Human Resources, Engineering, and the broader Security team, to formulate and enforce policies, procedures, and controls to mitigate insider threats.

  • Develop and utilize advanced tools and methodologies to monitor activities, identify anomalies, and investigate potential insider risks.

  • Partner with the Detection Engineering and Threat Intelligence team on detection efforts, prioritizing alert reviews, correlation, analysis, playbook development, and recommendations for further investigation and mitigation.

  • Provide support for critical security investigations, in conjunction with the Incident Response team and relevant departments, including Legal and HR, to ensure timely and effective resolution.

  • Conduct regular tabletop exercises, security awareness training, and simulations to validate the efficacy of insider threat detection and educate employees on insider risks.

  • Produce comprehensive investigative reports and executive summaries to present findings.

Required Qualifications:
  • Eight to Twelve-plus years of experience spanning Insider Threat management, Detection Engineering, or Incident Response.

  • Experience with Insider Threat technologies, such as Security Information and Event Management (SIEM), User Behavioral Analytics (UBA), Data Loss Prevention (DLP), and endpoint detection, coupled with a solid understanding of investigations and the intelligence cycle.

  • Proficiency in scripting and automation (Python, PowerShell, or Bash) for detection and triage workflows.

  • Experience with SIEM platforms, managing detection as code via CI/CD pipelines and detection frameworks (e.g., MITRE ATT&CK).

  • Demonstrated ability to work cross-functionally and effectively communicate findings to both technical and non-technical stakeholders.

  • Experience with cloud environments (AWS, GCP, etc.) and detection infrastructure.

  • Staying abreast of the evolving insider threat landscape and understanding the legal, regulatory, and ethical considerations while handling sensitive information and situations.

#securityengineer #insiderthreat #detection #threatintelligence

About Guidewire

Guidewire is the platform P&C insurers trust to engage, innovate, and grow efficiently. We combine digital, core, analytics, and AI to deliver our platform as a cloud service. More than 540+ insurers in 40 countries, from new ventures to the largest and most complex in the world, run on Guidewire.

As a partner to our customers, we continually evolve to enable their success. We are proud of our unparalleled implementation track record with 1600+ successful projects, supported by the largest R&D team and partner ecosystem in the industry. Our Marketplace provides hundreds of applications that accelerate integration, localization, and innovation.

For more information, please visit www.guidewire.com and follow us on Twitter: @Guidewire_PandC.

Guidewire Software, Inc. is proud to be an equal opportunity and affirmative action employer. We are committed to an inclusive workplace, and believe that a diversity of perspectives, abilities, and cultures is a key to our success. Qualified applicants will receive consideration without regard to race, color, ancestry, religion, sex, national origin, citizenship, marital status, age, sexual orientation, gender identity, gender expression, veteran status, or disability. All offers are contingent upon passing a criminal history and other background checks where it's applicable to the position.

Top Skills

AWS
Bash
Data Loss Prevention (Dlp)
GCP
Powershell
Python
Security Information And Event Management (Siem)
User Behavioral Analytics (Uba)

Similar Jobs

10 Hours Ago
Remote
Canada
134K-182K Annually
Mid level
134K-182K Annually
Mid level
Artificial Intelligence • Cloud • Consumer Web • Productivity • Software • App development • Data Privacy
The Full Stack Engineer will design and develop user-friendly software solutions, collaborate with teams, and ensure operational excellence, including on-call support.
Top Skills: AngularCSSGoHTMLJavaJavaScriptMySQLNode.jsPythonReactRust
12 Hours Ago
Easy Apply
Remote
2 Locations
Easy Apply
Senior level
Senior level
Artificial Intelligence • Cloud • eCommerce • Enterprise Web • Software • Design • Generative AI
The Director of Product, Infrastructure and Developer Productivity will define strategies for scaling infrastructure and enhancing developer productivity while managing product managers and collaborating across various departments.
Top Skills: Ci/Cd ToolsCloud PlatformsContainer OrchestrationObservability Platforms
12 Hours Ago
Remote or Hybrid
Canada
Mid level
Mid level
Digital Media • Gaming • Information Technology • Software • Sports • Esports • Big Data Analytics
As a Mobile App Release Manager, oversee the release lifecycle for iOS and Android apps, ensuring quality, compliance, and managing coordination between cross-functional teams.
Top Skills: AndroidAndroid StudioCi/CdDatadogFirebaseGitiOSLaunchdarklyXcode

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account