Security Operations Engineer

Guidewire Software

Bengaluru

On-site

INR 2,800,000 - 4,200,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Guidewire Software in Bengaluru seeks a hands-on Security Operations Engineer to own security implementation across our AI Engineering platform and its productization projects. You will work across infrastructure, applications, and developer workflows, collaborating with Product and Platform Architects to bake security into every layer of the system.

This execution-focused role requires strong hands-on security engineering, proficiency with authentication/authorization patterns, cloud security,

Qualifications

  • Bachelor’s or Master’s degree in CS, Cybersecurity, or a related field.
  • 8+ years of software security implementation experience.
  • Hands-on experience with authentication/authorization patterns and cloud security.
  • Familiarity with SOC 2, ISO 27001, GDPR and secure CI/CD practices.

Responsibilities

  • Stand up and operate authentication flows across projects (JWT, Cognito, SSO).
  • Implement RBAC/ABAC and maintain an authorization library.
  • Translate compliance requirements into concrete technical controls.
  • Define IP/network controls and secure data residency.
  • Build a security components library used by Strike Teams.
  • Review designs and support security-focused testing and audits.

Skills

Security engineering
Authentication & authorization
Backend development
CI/CD security
Threat modeling

Education

Bachelor's or Master’s degree in CS/Cybersecurity

Tools

AWS Cognito
IAM
KMS
Secrets Manager
SBOM
Dependency scanning
Python
Java
TypeScript

Job description

Summary

Guidewire is seeking a hands‑on Security Operations Engineer to join our Professional Services AI Engineering team in Bangalore. You will be the single owner of security implementation across our internal AI Engineering platform and the AI productization projects it supports. This is an execution-focused security role with real input into security strategy. You partner with Product to shape security guidance and own its correct implementation across our infrastructure, applications, and developer workflows — knowing when a decision belongs at the policy level and escalating it accordingly. You will pair closely with the Platform Architect and Strike Team developers to bake security into every layer of the system.

Key Responsibilities
  • Authentication: Stand up and operate authentication flows across all Strike Team projects — JWT, AWS Cognito, SSO integrations, and machine‑to‑machine auth patterns.
  • Authorization & Access Controls: Implement role‑based and attribute‑based access control patterns. Maintain a reusable authorization library that Strike Teams consume rather than rebuild.
  • Compliance Implementation: Translate compliance requirements (SOC 2, regional data privacy, customer‑driven controls) into concrete technical controls — encryption, key management, audit logging, data residency.
  • IP & Network Controls: Implement IP restrictions, VPC‑level network segmentation, and traffic policies that protect customer data without blocking legitimate Strike Team workflows.
  • Security Patterns Library: Build and maintain a library of vetted security components (auth middleware, secret management helpers, audit log clients) that every Strike Team uses by default.
  • Security Reviews & Audit Support: Review Strike Team designs for security gaps, support customer audits, and partner with the QA Architect on security‑focused testing standards.
KPIs & Success Metrics
  • Security controls implemented across all Strike Team projects (auth, authz, encryption, audit logging) with no critical gaps.
  • Reusable security library adoption — share of teams consuming vetted components rather than rebuilding.
  • Compliance readiness: SOC 2 and data‑privacy controls in place; successful customer audit support.
  • Time‑to‑remediate security findings within SLA.
  • Zero preventable authentication or access‑control incidents.
Key Skills & Experience
  • Education: Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or a related technical field.
  • Experience: 8+ years of software engineering experience with a strong focus on security implementation — auth systems, compliance controls, or platform security.
  • Technical Proficiency:
    • Expert‑level knowledge of authentication and authorization patterns (OAuth 2.0, OIDC, JWT, SAML).
    • Hands‑on experience with AWS Cognito, IAM, KMS, and Secrets Manager.
    • Strong backend development skills (Python, Java, or TypeScript) — this is a hands‑on engineering role, not a pure advisory one.
    • Working knowledge of common compliance frameworks (SOC 2, ISO 27001, GDPR) and how to translate them into engineering controls.
    • Familiarity with secure CI/CD patterns and supply‑chain security (SBOM, dependency scanning).
  • Engineering Excellence: Track record of shipping production‑grade security components. Comfortable being a coding security engineer, not just a reviewer.
  • Domain Context: (Preferred) Experience in regulated industries (insurance, finance, healthcare) or multi‑tenant SaaS.
Preferred Skills & Experience
  • AI Security: Experience securing LLM‑based applications — prompt injection defenses, output filtering, model access controls.
  • Cloud Security: AWS Security Specialty certification or equivalent.
  • Guidewire Knowledge: Familiarity with Guidewire Cloud security model.
  • Threat Modeling: Hands‑on experience running threat modeling sessions for production systems.
Equal Employment Opportunity

Guidewire Software, Inc. is proud to be an equal opportunity and affirmative action employer. We are committed to an inclusive workplace, and believe that a diversity of perspectives, abilities, and cultures is a key to our success. Qualified applicants will receive consideration without regard to race, color, ancestry, religion, sex, national origin, citizenship, marital status, age, sexual orientation, gender identity, gender expression, veteran status, or disability. All offers are contingent upon passing a criminal history and other background checks where it's applicable to the position.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Manager- AI Engineering
Senior Manager- AI Engineering

Guidewire Software • Bengaluru

On-site
INR 4,000,000 - 9,000,000
Senior Manager - AI Engineering
Senior Manager - AI Engineering

Guidewire Software Solutions India Private Limited • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Staff Software Engineer - Platform Engineering
Staff Software Engineer - Platform Engineering

Guidewire Software • Bengaluru

On-site
INR 3,000,000 - 6,000,000
Software Engineer II - Apps Platform
Software Engineer II - Apps Platform

Guidewire Software • Bengaluru

On-site
INR 900,000 - 1,400,000
Staff Security Engineer (Vulnerability Management)
Staff Security Engineer (Vulnerability Management)

Guidewire Software • Bengaluru

On-site
INR 3,500,000 - 5,200,000
Certifications a plus (SANS/ISc2/AWS)
Senior Staff Software Engineer - Cloud Platform Engineering
Senior Staff Software Engineer - Cloud Platform Engineering

Guidewire Software Solutions India Private Limited • Bengaluru

On-site
INR 3,500,000 - 5,500,000
Senior Software Engineer - Full Stack Application Development
Senior Software Engineer - Full Stack Application Development

Guidewire Software • Bengaluru

On-site
INR 3,600,000 - 6,000,000
Software Engineer II - Cloud Platform
Software Engineer II - Cloud Platform

Guidewire Software • Bengaluru

On-site
INR 1,200,000 - 2,000,000
Software Engineer - Cloud Platform
Software Engineer - Cloud Platform

Guidewire Software Solutions India Private Limited • Bengaluru

On-site
INR 1,200,000 - 2,200,000
Platform Engineer III (EKS and Python/Go)
Platform Engineer III (EKS and Python/Go)

Guidewire Software • Bengaluru

On-site
INR 2,400,000 - 4,200,000