Guidewire is seeking a hands-on Security Operations Engineer to join our
Qualified Services AI Engineering team in Bangalore. You will be the single
owner of security implementation across our internal AI Engineering platform and
the AI productization projects it supports.
This is an execution-focused security role with real input into security
strategy. You partner with Product to shape security guidance and own its
correct implementation across our infrastructure, applications, and developer
workflows — knowing when a decision belongs at the policy level and escalating
it accordingly. You will pair closely with the Platform Architect and Strike
Team developers to bake security into every layer of the system.
Job Description
KEY RESPONSIBILITIES
• Authentication: Stand up and operate authentication flows across all Strike
Team projects — JWT, AWS Cognito, SSO integrations, and machine-to-machine auth
patterns.
• Authorization & Access Controls: Implement role-based and attribute-based
access control patterns. Maintain a reusable authorization library that Strike
Teams consume rather than rebuild.
• Compliance Implementation: Translate compliance requirements (SOC 2, regional
data privacy, customer-driven controls) into concrete technical controls —
encryption, key management, audit logging, data residency.
• IP & Network Controls: Implement IP restrictions, VPC-level network
segmentation, and traffic policies that protect customer data without blocking
legitimate Strike Team workflows.
• Security Patterns Library: Build and maintain a library of vetted security
components (auth middleware, secret management helpers, audit log clients) that
every Strike Team uses by default.
• Security Reviews & Audit Support: Review Strike Team designs for security
gaps, support customer audits, and partner with the QA Architect on
security-focused testing standards.
KPIS & SUCCESS METRICS
• Security controls implemented across all Strike Team projects (auth,