Agent Security Research Engineer – Taiwan
Obsidian Security
Tailor my CV for this job, freeView job and applyYour CV rewritten for this role, from your real experience. Sign in with Google, nothing to install.
Got this interview? Our apps help you get the job.
Skills named in this job
Read from the description itself, not inferred.
This role on the market
3,274 open security roles across 428 companies are on ApplySarthi right now, most of them in Bengaluru (118), Pune (22), Hyderabad (21).
- Principal Security Engineer, Security Tribehellofresh
- Security Lead - Member of Technical StaffCallosum
- Security Project Manager UK (CCTV)Vizzia
- Senior Staff Network Security EngineerMarvell · bengaluru
- Senior Consultant - SecurityWSP · delhi ncr
What security roles keep asking for: AWS (30%), Python (28%), SIEM (14%), CI/CD (14%), Azure (14%), GCP (13%), IAM (13%) — counted across their open postings here.
CI/CD jobs · Databricks jobs · GCP jobs · Go jobs
Obsidian Security has 15 open roles listed here.
- Customer Success Operations Analyst
- Product Security Engineer (AI & Platform Security) – Taiwan
- Tech Lead, Customer Support
- Chief Information Security Officer (CISO)
- AI Security Engineer - Taiwan
Counted across 14 company job boards, updated as roles open and close.
Preparing for this interview
Interviews for security roles keep coming back to AWS, Python, SIEM, CI/CD. Practise those questions before you sit with Obsidian Security.
Questions you are likely to be asked
- Why do you want to join Obsidian Security?
- What is your experience with SaaS? Tell me one thing you learned the hard way.
- Walk me through how code gets from a commit to production where you work.
- Tell me about an outage you handled. What did you learn from it?
- How do you decide what to monitor, and what should wake someone up at night?
Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.
Practise the Agent Security Research Engineer – Taiwan at Obsidian Security interview free →Obsidian Security is a global leader in cyber security protecting the SaaS and non-human identity layer modern enterprises run on — from Salesforce and Snowflake to the AI agents now deployed inside them. The Obsidian Security platform gives unified visibility into every human and machine identity, app, and integration across their SaaS estate, detects identity-based and supply chain attacks in real time, and enforces least-privilege access before it's exploited. Trusted by major Fortune 500 companies T-Mobile, Workday, Snowflake, and S&P Global, Obsidian ranked No. 95 on the 2025 Deloitte Technology Fast 500™, growing nearly 1000% from 2021–2024 — helping CISOs turn an unmonitored attack surface into one they can govern with confidence. Obsidian has also been recognized by Forbes as America's Best Startup Employers in 2026.
In August 2026, Obsidian raised $85 million in Series D financing led by Crescent Cove Advisors, with participation from existing investors including Greylock Partners, Menlo Ventures, Norwest Venture Partners, IVP, Wing Ventures, and GV — pushing Obsidian's valuation to $1.1 billion, crossing into unicorn status. Obsidian is using the funding to deepen its R&D in agentic AI security and extend its platform as the standard for governing what AI agents can access and do inside third-party applications.
With global momentum, a growing partner ecosystem including SentinelOne, Databricks, and Google Cloud, and fresh capital from its Series D behind it, Obsidian is scaling rapidly toward long-term growth and IPO readiness.
Agent Security Research Engineer – Taiwan
About the role: You'll own agent security content from idea to production. You'll research how AI agents (coding assistants, desktop agents, workflow automation tools, and MCP-connected tools) can misbehave or be compromised. Then you'll design the detection or policy, build it in our engines and pipelines, test it, ship it, document it, help customers adopt it, and tune it based on real-world results. You're accountable for each piece of content delivering security value in customers' environments.
Required Skills:
- Hands-on knowledge of how agentic tools work: tool calling, hooks and lifecycle events, MCP servers and transports, skills and plugins, permission modes
- Solid grasp of agent-specific attack classes: direct and indirect prompt injection, tool and description poisoning, confused-deputy and excessive-agency issues, secret leakage into context, and malicious or over-permissioned MCP servers and extensions.
- Able to tell real risk from theoretical risk and explain the difference to a customer.
- Strong SQL, ideally on analytical stores like ClickHouse, Databricks, or Snowflake.
- Disciplined about testing: builds reproducible test cases (positive and negative) before shipping content.
- Proficient scripting in Python or Go, enough to build test harnesses, parse event logs, and perform detections.
- Working knowledge of SaaS and cloud identity (OAuth, PATs, API tokens, scopes) and of developer tooling (Git, GitHub/GitLab, CI/CD).
- Able to explain an agent attack chain to engineers, product and customer-facing teams.
Nice to Have:
- Published research, CVEs, talks, or blog posts on LLM or agent security.
- Familiarity with threat detection.
- Hands-on experience with endpoint security on macOS, Linux, or Windows
- Experience with dbt, Dagster, or other data-pipeline tooling.
- Background in a SaaS security, CASB/SSPM, or insider-threat product.
- Has used Claude Code, Copilot, Cursor, or similar heavily in daily work and has opinions about their security models.
Employee Benefits:
Our competitive benefits packages are designed to support our employees' well-being, both at work and at home. Our US based employees enjoy:
- Competitive compensation with equity and 401k
- Comprehensive healthcare with dental and vision coverage
- Flexible paid time off and paid holiday time off
- 12 weeks of new parent or family leave
- Personal and professional development resources
For more details on our US benefits, or for information on our international benefits, please see here.
Match this job to your CV
ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.
Check my match →Similar open roles
- Enterprise Account Executive - CentralObsidian Security
- Head of GTM EnablementObsidian Security
- Enterprise Account Executive – EMEA (UK, London preferred)Obsidian Security
- Sr Technical Marketing Manager - Alliances & Competitive StrategyObsidian Security
- AI Security Engineer - TaiwanObsidian Security
- Chief Information Security Officer (CISO)Obsidian Security
- Enterprise Account Executive – ANZObsidian Security
- Enterprise Account Executive - San Francisco Bay AreaObsidian Security
Need answers during your interview? Try Live Sarthi.
Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.
- Hidden from supported screen sharingThe overlay stays out of supported Windows screen captures.
- Answers start in about 1.5 secondsResponse time varies with your connection and model.
- From your own CVYour projects and your experience, not a generic script.
- 30 minutes freeThen ₹99 for a 2-day pass with unlimited calls — you pay for the days you are interviewing, not a subscription.
A Windows app, from the same team as ApplySarthi.
Listed on greenhouse · posted 2026-10-06. ApplySarthi collects openings and links to application pages; the role is advertised by Obsidian Security, not by us.