Guidewire Security Basics
Overview
OAuth2 with short-lived JWTs, API roles in GCC (assign per-endpoint permissions), Gosu security: use gw.api.system.server.ServerUtil for auth, never hardcode credentials in Gosu, encrypt PII in custom entities. SAML SSO for Jutro frontends.
For detailed implementation, see: implementation guide