
AI Security Engineer
Obsidian SecurityResponsibilities
- Develop expertise in authentication, requested scopes, and risk concentration across ChatGPT Enterprise, Copilot, Gemini, Claude, Glean, and agentic frameworks
- Research emerging AI attack techniques such as prompt injection, tool and agent misuse, RAG poisoning, and over-permissioned integrations
- Build threat models covering identity, data access, non-human identities, and integration risk
- Translate security research into detections and posture checks
- Prototype and ship end-to-end product features using AI and SaaS telemetry
- Build and improve efficient, cost-effective data pipelines
Requirements
- At least 3 years of security engineering experience as a builder with clear ownership of shipped work
- Strong understanding of identity and access control concepts
- Hands-on experience with dbt and a columnar warehouse or query engine such as ClickHouse, Snowflake, BigQuery, or Databricks
- Ability to communicate clearly across engineers, product managers, and customer security teams
- Preferred: knowledge of SaaS platform APIs, event schemas, permissions, and authentication flows across Google Workspace, Microsoft 365, Salesforce, and Okta
- Preferred: knowledge of AI and SaaS security, including OWASP LLM Top 10, MITRE ATLAS, prompt injection, agent and tool-use risks, OAuth abuse, and identity models
Benefits
- Competitive compensation with equity and 401k
- Comprehensive healthcare with dental and vision coverage
- Flexible paid time off and paid holiday time off
- 12 weeks of new parent or family leave
- Personal and professional development resources
Tech Stack
Categories
About Obsidian Security
Every enterprise runs on software it doesn't own: third-party apps, AI copilots, and agents logging in with OAuth tokens nobody's reviewing. Obsidian Security secures all of it, discovering every third-party app and AI feature connected to your business, governing risky permissions, and detecting threats in real time. Trusted by the world's most regulated, highest-scale enterprises. If you're adopting AI, you're adopting third-party software faster than ever we make sure that doesn't mean adopting its risk. SPECIALTIES AI Security Posture Management, AI Security, SaaS Security Posture Management, Identity Threat Detection & Response, AI & Agentic Security, Continuous Governance, OAuth & API Risk, Supply Chain Integration Risk, App-to-App Security Subscribe to our newsletter: https://www.linkedin.com/newsletters/true-positives-7435782529825038336/ Get a demo: https://www.obsidiansecurity.com/get-a-demo Sign up for a trial: https://www.obsidiansecurity.com/trial