Obsidian Security

AI Security Engineer

Obsidian Security
Apply
2 months ago
Palo Alto, CA, USAMid Level
H1B Sponsor

Responsibilities

  • Develop expertise in authentication, requested scopes, and risk concentration across ChatGPT Enterprise, Copilot, Gemini, Claude, Glean, and agentic frameworks
  • Research emerging AI attack techniques such as prompt injection, tool and agent misuse, RAG poisoning, and over-permissioned integrations
  • Build threat models covering identity, data access, non-human identities, and integration risk
  • Translate security research into detections and posture checks
  • Prototype and ship end-to-end product features using AI and SaaS telemetry
  • Build and improve efficient, cost-effective data pipelines

Requirements

  • At least 3 years of security engineering experience as a builder with clear ownership of shipped work
  • Strong understanding of identity and access control concepts
  • Hands-on experience with dbt and a columnar warehouse or query engine such as ClickHouse, Snowflake, BigQuery, or Databricks
  • Ability to communicate clearly across engineers, product managers, and customer security teams
  • Preferred: knowledge of SaaS platform APIs, event schemas, permissions, and authentication flows across Google Workspace, Microsoft 365, Salesforce, and Okta
  • Preferred: knowledge of AI and SaaS security, including OWASP LLM Top 10, MITRE ATLAS, prompt injection, agent and tool-use risks, OAuth abuse, and identity models

Benefits

  • Competitive compensation with equity and 401k
  • Comprehensive healthcare with dental and vision coverage
  • Flexible paid time off and paid holiday time off
  • 12 weeks of new parent or family leave
  • Personal and professional development resources

Tech Stack

ClickHouseDatabricksdbtGoogle BigQueryGoogle CloudSnowflake

Categories

Obsidian Security

About Obsidian Security

51-200 employees

Every enterprise runs on software it doesn't own: third-party apps, AI copilots, and agents logging in with OAuth tokens nobody's reviewing. Obsidian Security secures all of it, discovering every third-party app and AI feature connected to your business, governing risky permissions, and detecting threats in real time. Trusted by the world's most regulated, highest-scale enterprises. If you're adopting AI, you're adopting third-party software faster than ever we make sure that doesn't mean adopting its risk. SPECIALTIES AI Security Posture Management, AI Security, SaaS Security Posture Management, Identity Threat Detection & Response, AI & Agentic Security, Continuous Governance, OAuth & API Risk, Supply Chain Integration Risk, App-to-App Security Subscribe to our newsletter: https://www.linkedin.com/newsletters/true-positives-7435782529825038336/ Get a demo: https://www.obsidiansecurity.com/get-a-demo Sign up for a trial: https://www.obsidiansecurity.com/trial