Staff Security Engineer- Insider Threat

7 days ago


Canada Guidewire Software Full time

We seek a seasoned and highly motivated Staff Security Engineer to be part of the Insider Threat Program and enhance broader threat detection and response capabilities. The role involves developing robust detection pipelines, efficiently managing security alerts, contributing to incident investigation workflows and playbooks, and collaborating closely with relevant stakeholders, detection engineering, threat intel and incident response teams. Job Description Core Responsibilities: Establish, implement, and oversee the Insider Threat Program, ensuring compliance with organizational goals, industry best practices, and legal requirements. Collaborate with multidisciplinary teams, including Physical Security, Legal, Human Resources, Engineering, and the broader Security team, to formulate and enforce policies, procedures, and controls to mitigate insider threats. Develop and utilize advanced tools and methodologies to monitor activities, identify anomalies, and investigate potential insider risks. Partner with the Detection Engineering and Threat Intelligence team on detection efforts, prioritizing alert reviews, correlation, analysis, playbook development, and recommendations for further investigation and mitigation. Provide support for critical security investigations, in conjunction with the Incident Response team and relevant departments, including Legal and HR, to ensure timely and effective resolution. Conduct regular tabletop exercises, security awareness training, and simulations to validate the efficacy of insider threat detection and educate employees on insider risks. Produce comprehensive investigative reports and executive summaries to present findings. Required Qualifications Eight to Twelve-plus years of experience spanning Insider Threat management, Detection Engineering, or Incident Response. Experience with Insider Threat technologies, such as Security Information and Event Management (SIEM), User Behavioral Analytics (UBA), Data Loss Prevention (DLP), and endpoint detection, coupled with a solid understanding of investigations and the intelligence cycle. Proficiency in scripting and automation (Python, PowerShell, or Bash) for detection and triage workflows. Experience with SIEM platforms, managing detection as code via CI/CD pipelines and detection frameworks (e.g., MITRE ATT&CK). Demonstrated ability to work cross-functionally and effectively communicate findings to both technical and non-technical stakeholders. Experience with cloud environments (AWS, GCP, etc.) and detection infrastructure. Staying abreast of the evolving insider threat landscape and understanding the legal, regulatory, and ethical considerations while handling sensitive information and situations. About Guidewire Guidewire is the platform P&C insurers trust to engage, innovate, and grow efficiently. We combine digital, core, analytics, and AI to deliver our platform as a cloud service. More than 540+ insurers in 40 countries, from new ventures to the largest and most complex in the world, run on Guidewire. Guidewire Software, Inc. is proud to be an equal opportunity and affirmative action employer. We are committed to an inclusive workplace, and believe that a diversity of perspectives, abilities, and cultures is a key to our success. Qualified applicants will receive consideration without regard to race, color, ancestry, religion, sex, national origin, citizenship, marital status, age, sexual orientation, gender identity, gender expression, veteran status, or disability. All offers are contingent upon passing a criminal history and other background checks where it's applicable to the position. #J-18808-Ljbffr



  • , , Canada Paxos Full time

    Join to apply for the Staff Security Engineer role at Paxos. About Paxos Today’s financial infrastructure is archaic, expensive, inefficient and risky—supporting a system that leaves out more people than it lets in. So we’re rebuilding it. We’re on a mission to open the world’s financial system to everyone by enabling the instant movement of any...


  • (United States | Canada) 1Password Full time

    1Password is growing faster than ever. We've surpassed $400M in ARR and we're continuing to accelerate, earning a spot on the Forbes Cloud 100 for four years in a row and teaming up with iconic partners like Oracle Red Bull Racing and the Utah Mammoth. About 1password At 1Password, we're building the foundation for a safe, productive digital future. Our...


  • , , Canada Super.com Full time

    Overview Staff Software Engineer, Security at Super.com. This range is provided by Super.com. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more. Base pay range CA$170,000.00/yr - CA$250,000.00/yr About Super.com We started Super.com to help maximize lives – both the lives of our customers and the lives...


  • Remote (United States | Canada) 1Password Full time

    1Password is growing faster than ever. We've surpassed $400M in ARR and we're continuing to accelerate, earning a spot on the Forbes Cloud 100 for four years in a row and teaming up with iconic partners like Oracle Red Bull Racing and the Utah Mammoth. About 1Password At 1Password, we're building the foundation for a safe, productive digital future. Our...


  • , , Canada LiveKit Full time

    Base Pay Range $150,000 - $250,000 per year. About LiveKit LiveKit is revolutionizing the AI landscape by providing essential network infrastructure that powers multimodal AI interfaces, enabling seamless audio and visual interactions. Founded in 2021, LiveKit supports over 3 billion calls annually, 100,000+ developers worldwide, and industry giants such...


  • Remote - United States, Remote - Canada Paxos Full time

    About Paxos Today's financial infrastructure is archaic, expensive, inefficient and risky — supporting a system that leaves out more people than it lets in. So we're rebuilding it. We're on a mission to open the world's financial system to everyone by enabling the instant movement of any asset, any time, in a trustworthy way. For over a decade, we've...


  • , , Canada Shakepay Full time

    A leading cryptocurrency firm in Canada is seeking a Staff Security Engineer to enhance security across infrastructure and products. The role involves designing security solutions, conducting threat modeling, and mentoring engineering teams. Applicants should have over 7 years of experience in secure application development, including 3 years in a Security...


  • , , Canada Monograph Full time

    A leading tech security firm is seeking a security expert to lead threat modeling and work with engineering teams to design secure solutions. The ideal candidate has over 8 years of experience in security, particularly in cloud environments, and must think like an attacker to reduce risks effectively. The role allows for either office or remote work from...


  • , , Canada Monograph Full time

    Who we are About Stripe Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world’s largest enterprises to the most ambitious startups—use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the internet, and we have a staggering amount...


  • , , Canada Shakepay Full time

    Staff Security Engineer at Shakepay At Shakepay, we’re on a mission to usher in the Bitcoin golden age. We’re reimagining financial services to give every Canadian their fair shake. Our culture is built around doing work that matters, winning as a team, and celebrating success. If you're the kind of person who values growth, shipping fast, and sharing...