Staff Security Engineer- Insider Threat

3 weeks ago


Canada Guidewire Software Full time

We seek a seasoned and highly motivated Staff Security Engineer to be part of the Insider Threat Program and enhance broader threat detection and response capabilities. The role involves developing robust detection pipelines, efficiently managing security alerts, contributing to incident investigation workflows and playbooks, and collaborating closely with relevant stakeholders, detection engineering, threat intel and incident response teams. Job Description Core Responsibilities: Establish, implement, and oversee the Insider Threat Program, ensuring compliance with organizational goals, industry best practices, and legal requirements. Collaborate with multidisciplinary teams, including Physical Security, Legal, Human Resources, Engineering, and the broader Security team, to formulate and enforce policies, procedures, and controls to mitigate insider threats. Develop and utilize advanced tools and methodologies to monitor activities, identify anomalies, and investigate potential insider risks. Partner with the Detection Engineering and Threat Intelligence team on detection efforts, prioritizing alert reviews, correlation, analysis, playbook development, and recommendations for further investigation and mitigation. Provide support for critical security investigations, in conjunction with the Incident Response team and relevant departments, including Legal and HR, to ensure timely and effective resolution. Conduct regular tabletop exercises, security awareness training, and simulations to validate the efficacy of insider threat detection and educate employees on insider risks. Produce comprehensive investigative reports and executive summaries to present findings. Required Qualifications Eight to Twelve-plus years of experience spanning Insider Threat management, Detection Engineering, or Incident Response. Experience with Insider Threat technologies, such as Security Information and Event Management (SIEM), User Behavioral Analytics (UBA), Data Loss Prevention (DLP), and endpoint detection, coupled with a solid understanding of investigations and the intelligence cycle. Proficiency in scripting and automation (Python, PowerShell, or Bash) for detection and triage workflows. Experience with SIEM platforms, managing detection as code via CI/CD pipelines and detection frameworks (e.g., MITRE ATT&CK). Demonstrated ability to work cross-functionally and effectively communicate findings to both technical and non-technical stakeholders. Experience with cloud environments (AWS, GCP, etc.) and detection infrastructure. Staying abreast of the evolving insider threat landscape and understanding the legal, regulatory, and ethical considerations while handling sensitive information and situations. About Guidewire Guidewire is the platform P&C insurers trust to engage, innovate, and grow efficiently. We combine digital, core, analytics, and AI to deliver our platform as a cloud service. More than 540+ insurers in 40 countries, from new ventures to the largest and most complex in the world, run on Guidewire. Guidewire Software, Inc. is proud to be an equal opportunity and affirmative action employer. We are committed to an inclusive workplace, and believe that a diversity of perspectives, abilities, and cultures is a key to our success. Qualified applicants will receive consideration without regard to race, color, ancestry, religion, sex, national origin, citizenship, marital status, age, sexual orientation, gender identity, gender expression, veteran status, or disability. All offers are contingent upon passing a criminal history and other background checks where it's applicable to the position. #J-18808-Ljbffr



  • , , Canada Paxos Full time

    Join to apply for the Staff Security Engineer role at Paxos. About Paxos Today’s financial infrastructure is archaic, expensive, inefficient and risky—supporting a system that leaves out more people than it lets in. So we’re rebuilding it. We’re on a mission to open the world’s financial system to everyone by enabling the instant movement of any...


  • , , Canada Super.com Full time

    Overview Staff Software Engineer, Security at Super.com. This range is provided by Super.com. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more. Base pay range CA$170,000.00/yr - CA$250,000.00/yr About Super.com We started Super.com to help maximize lives – both the lives of our customers and the lives...


  • , , Canada Stripe Full time

    Staff Security Engineer, Security Partnerships Join to apply for the Staff Security Engineer, Security Partnerships role at Stripe. About the Team The Stripe Security team is dedicated to improving the security of Stripe and its users. Our users trust us with some of their most sensitive information, and we make security a first‑class consideration in...


  • , , Canada Fullscript Full time

    Staff Security Engineer – Fullscript Location: Greater Montreal Metropolitan Area (Remote) About Fullscript Founded in 2011, Fullscript started by solving one problem: helping practitioners access and prescribe the products they trust to deliver integrative care. What began as a simple solution has evolved into a health intelligence platform that powers...


  • Remote - United States, Remote - Canada Paxos Full time US$175,000 - US$250,000 per year

    About Paxos Today's financial infrastructure is archaic, expensive, inefficient and risky — supporting a system that leaves out more people than it lets in. So we're rebuilding it. We're on a mission to open the world's financial system to everyone by enabling the instant movement of any asset, any time, in a trustworthy way. For over a decade, we've...


  • , , Canada Luxury Presence Full time

    Staff Security Engineer - CANADA (Remote) Luxury Presence is the leading digital platform revolutionizing the real estate industry for agents, teams, and brokerages. Our award‑winning websites, cutting‑edge marketing solutions, and AI‑powered mobile platform empower real estate professionals to grow their business, operate more efficiently, and deliver...


  • , , Canada Aha! Full time

    A high-growth product development software company is seeking a Senior Security Engineer focused on web application security. This role involves identifying security threats and improving scanning tools. With a collaborative environment and a commitment to data security, the ideal candidate will have extensive experience in application security and...


  • , , Canada Dropbox Full time

    A leading cloud storage company in Canada is seeking a Senior Machine Learning Engineer focused on security. In this role, you'll design and deploy ML models to enhance security and detect threats. Ideal candidates have extensive experience in ML and data science along with strong software engineering skills. Significant opportunities for impact await you in...


  • , , Canada Aha! Full time

    A leading software development company in Canada seeks a Sr. Security Engineer to focus on web application security. Candidates should have at least four years of experience in application security and be familiar with security tools. The role involves identifying threats, maintaining security tools, and contributing to secure patterns internally. The...


  • , , Canada Luxury Presence Full time

    Luxury Presence is the leading digital platform revolutionizing the real estate industry for agents, teams, and brokerages. Our award-winning websites, cutting‑edge marketing solutions, and AI‑powered mobile platform empower real estate professionals to grow their business, operate more efficiently, and deliver exceptional service to their clients....