Cyber Forensics Engineer

United States - Remote

Applications have closed
Guidewire Software logo
Guidewire Software

Posted 1 month ago

Guidewire Software is looking for a Digital Forensics and Incident Response (DFIR) specialist. The right candidate will have specific experience with live forensics in, and analysis of, enterprise post-compromise artifacts. You would also be responsible not just to oversee forensic investigations, malware analysis but also act as an escalation point for any incident response related investigation.


  • Acquire/collect computer artifacts (e.g., malware, user activity, link files, etc.) from systems!
  • Be the escalation point (level 2/level 3) for any incidents and events escalated by the Level 1 Security Operations Center (SOC)
  • Act as the SME for the overall tactical and strategic operations Forensic analysis, malware analysis and/or reverse malware engineering
  • Discover and analyze malicious activity via live system analysis
  • Effective interpersonal skills, out-of-the-box thinking and ability to work with all levels of staff!
  • Collect and analyze intrusion artifacts (e.g., source code, malware, and system configuration), and use discovered data to enable mitigation of potential cyber defense incidents within the enterprise
  • Qualifications:
  • Previous experience being an SME for Computer forensics, network and host engineering
  • Previous experience developing content or detection mechanisms in line with the MITRE ATT&CK or the Cyber Kill Chain framework
  • Excellent communications and collaboration skills
  • Previous experience and the ability to handle and manage change well within and outside the team
  • SME in at least two of the following: Incident Response, Threat and Vulnerability Management, Forensics, Threat Hunting and Red/Purple Teaming
  • Fundamental knowledge of core security concepts, including cloud skills (preferred: AWS), networking and architecture
About GuidewireGuidewire is the platform P&C insurers trust to engage, innovate, and grow efficiently.
Guidewire combines core, data, digital, analytics, and AI to deliver our platform as a cloud service. More than 400 insurers, including the largest and most complex in the world, run on Guidewire.
As a partner to our customers, we continually evolve to enable their success. We are proud of our unparalleled implementation track record with 1000+ successful projects, supported by the largest R&D team and partner ecosystem in the industry. Our Marketplace provides hundreds of add-ons that accelerate integration, localization, and innovation.
Guidewire Software, Inc. is proud to be an equal opportunity and affirmative action employer. We are committed to an inclusive workplace, and believe that a diversity of perspectives, abilities, and cultures is a key to our success. Qualified applicants will receive consideration without regard to race, color, ancestry, religion, sex, national origin, citizenship, marital status, age, sexual orientation, gender identity, gender expression, veteran status, or disability. All offers are contingent upon passing a criminal history and other background checks where it's applicable to the position.
Disability Accommodations and Guidewire’s Appeals Process. Guidewire provides accommodations to the hiring process to create a fair opportunity for candidates with disabilities to contend for open positions. Accommodation requests should be directed to (650) 356-4940 or If things do not go as hoped, we invite you to use our appeals process. Guidewire promises to independently review any denied accommodation and any decision not to offer you the position. The appeals process is the same in either case. Within five business days of receiving a notice of denial of an accommodation, or receiving a notice of your non-selection for a vacancy, call (650) 356-4940 or e-mail to make an appeal. Guidewire will assign a new decision-maker to review the request and/or hiring decision, who will then notify you in writing of a decision within 10 business days.
Job tags: AI Analytics Architecture AWS C Cyber defense Forensics Go Incident response Malware Vulnerability management
Job region(s): North America Remote/Anywhere
Job stats:  42  4  1