Chief Information Security Officer (CISO)
Obsidian Security
Tailor my CV for this job, freeView job and applyYour CV rewritten for this role, from your real experience. Sign in with Google, nothing to install.
Got this interview? Our apps help you get the job.
Skills named in this job
Read from the description itself, not inferred.
This role on the market
222 open information roles across 105 companies are on ApplySarthi right now, most of them in Hyderabad (15), Bengaluru (14), Pune (7).
- Quantum Information Software Intern 2027IBM
- Italian Medical Information Customer Experience Specialist (Temporary 6M)Pfizer
- Sr. Program Manager, Information SecurityIntuitive
- Head of Information SecurityFiserv
- National Workforce Information RepresentativeJobgether
What information roles keep asking for: SaaS (18%), GCP (12%), Python (12%) — counted across their open postings here.
CI/CD jobs · Databricks jobs · GCP jobs · LLMs jobs
Obsidian Security has 18 open roles listed here.
- Senior Product Security Engineer – Taiwan
- Principal Solutions Engineer - APAC
- AI Security Engineer - Taiwan
- Senior Threat Research Engineer – Taiwan
- Senior Customer Marketing Manager
Counted across 14 company job boards, updated as roles open and close.
Preparing for this interview
Interviews for information roles keep coming back to SaaS, GCP, Python. Practise those questions before you sit with Obsidian Security.
Questions you are likely to be asked
- Why do you want to join Obsidian Security?
- What is your experience with SaaS? Tell me one thing you learned the hard way.
- Tell me about an outage you handled. What did you learn from it?
- How do you decide what to monitor, and what should wake someone up at night?
- How would you cut the cloud bill of a system without hurting it?
Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.
Practise the Chief Information Security Officer (CISO) at Obsidian Security interview free →Obsidian Security is a global leader in cyber security protecting the SaaS and non-human identity layer modern enterprises run on — from Salesforce and Snowflake to the AI agents now deployed inside them. The Obsidian Security platform gives unified visibility into every human and machine identity, app, and integration across their SaaS estate, detects identity-based and supply chain attacks in real time, and enforces least-privilege access before it's exploited. Trusted by major Fortune 500 companies T-Mobile, Workday, Snowflake, and S&P Global, Obsidian ranked No. 95 on the 2025 Deloitte Technology Fast 500™, growing nearly 1000% from 2021–2024 — helping CISOs turn an unmonitored attack surface into one they can govern with confidence. Obsidian has also been recognized by Forbes as America's Best Startup Employers in 2026.
In August 2026, Obsidian raised $85 million in Series D financing led by Crescent Cove Advisors, with participation from existing investors including Greylock Partners, Menlo Ventures, Norwest Venture Partners, IVP, Wing Ventures, and GV — pushing Obsidian's valuation to $1.1 billion, crossing into unicorn status. Obsidian is using the funding to deepen its R&D in agentic AI security and extend its platform as the standard for governing what AI agents can access and do inside third-party applications.
With global momentum, a growing partner ecosystem including SentinelOne, Databricks, and Google Cloud, and fresh capital from its Series D behind it, Obsidian is scaling rapidly toward long-term growth and IPO readiness.
The Role
The CISO will own Obsidian's internal security program end-to-end while serving as a visible security leader to our customers, partners, and the broader market. This role reports to the Chief Legal and Trust Officer.
Responsibilities
- Security Strategy & Executive Communication: Design and execute a global security strategy aligned with business growth objectives. Advise the board and executive leadership on critical cyber risk domains with clear, actionable mitigation plans.
- Cyber Risk Management: Own the cyber risk management program, including security risk assessments, third-party vendor reviews, and executive-backed mitigation initiatives targeting measurable risk reduction.
- Security Architecture, Engineering & Operations: Build and lead teams spanning product/application security, infrastructure protection, and security engineering. Oversee threat detection, vulnerability management (with SLA-based performance tracking), and incident response. Establish a guardrail-based controls model for cloud and container workloads.
- Product Security: Embed secure-by-design principles across engineering workflows, integrating security early and consistently throughout the SDLC, including secure coding standards, penetration testing, bug bounty programs, and security requirements for AI/ML components (model integrity, training data protection, prompt injection prevention, output validation).
- AI Security & Governance: Establish enterprise AI governance (acceptable use, data loss prevention for AI inputs, vendor risk assessments for third-party AI services). Build detection and response capabilities for AI-powered attack vectors. Drive adoption of AI and automation across the security function, including AI-assisted threat detection, automated incident response, and intelligent vulnerability prioritization.
- Cross-Functional Partnerships: Partner with Engineering and Product to embed security throughout the development lifecycle, AI/ML feature delivery, and infrastructure architecture decisions. Support Sales and TAM teams by participating in customer security reviews, responding to questionnaires, and enabling the team to speak confidently about Obsidian’s security posture. Collaborate with Marketing to develop security-focused content, support thought leadership positioning and inform messaging around trust and security.
- Customer Trust & External Presence: Serve as the executive-level security contact for prospects and customers during sales cycles, audits, and security reviews. Represent Obsidian in industry forums and public engagements to build market credibility.
- Team Leadership & Budget: Recruit, mentor, and retain a high-performing security organization. Own the security budget with precise, on-target forecasts.
- M&A Due Diligence: Assess the security posture, risk exposure, and integration readiness of prospective acquisition targets.
Qualifications
- 15+ years in information security, with 5+ years in a senior leadership role (CISO, VP/Deputy CISO, Sr. Director of Security, or equivalent).
- Deep experience building and scaling security teams across product security, security architecture, infrastructure protection, and enterprise risk management.
- Strong track record securing cloud-native SaaS environments, including container-based workloads and next-generation security tooling (endpoint protection, CI/CD-integrated code scanning, identity-as-a-service, automated monitoring/remediation).
- Experience developing AI governance frameworks and familiarity with AI/ML attack surfaces (model poisoning, prompt injection, training data extraction, adversarial inputs, ML supply chain risks).
- Experience operating as a customer-facing security executive, including direct participation in sales cycles, regulated entity security reviews, and audits.
- Demonstrated success improving security program maturity using NIST CSF, ISO 27001, or similar frameworks, with measurable results.
- Proven ability to present to boards, advise executive leadership, and communicate security posture to customers in support of revenue goals.
- Effective cross-functional partner with legal, compliance, and IT leadership in a matrixed environment.
- Experience managing siginificant security budgets.
- Master's degree in Information Security, Computer Science, or a related field preferred. Executive leadership education is a plus.
Preferred
- Experience at a cybersecurity vendor, where the CISO role carries both internal and external credibility demands.
- Background in critical infrastructure security (energy, utilities, telecommunications) in addition to SaaS/technology.
- Hands-on experience deploying AI/ML within security operations (SOAR, AI-assisted threat hunting, automated triage) and familiarity with AI security frameworks (OWASP Top 10 for LLMs, NIST AI RMF, MITRE ATLAS).
- Experience securing AI features within a commercial SaaS product, including red-teaming or adversarial testing of AI/ML systems.
- Track record conducting security due diligence for M&A transactions.
- Experience engaging government stakeholders or congressional committees on security matters.
Employee Benefits
Our competitive benefits packages are designed to support our employees' well-being, both at work and at home. Our US based employees enjoy:
- Competitive compensation with equity and 401k
- Comprehensive healthcare with dental and vision coverage
- Flexible paid time off and paid holiday time off
- 12 weeks of new parent or family leave
- Personal and professional development resources
For more details on our US benefits, or for information on our international benefits, please see here.
Pay Transparancy
Please note that the base pay range is a guideline and for candidates who receive an offer, the base pay will vary based on factors such as work location, as well as the knowledge, skills and experience of the candidate. In addition to a competitive base salary, this position is eligible for equity awards and may be eligible for sales commission or incentive compensation based on the role or function within the company.
At Obsidian, we are proud to be an equal-opportunity employer. We value diversity and hire for talent, passion, and compassion. In compliance with federal law, all persons hired will be required to submit satisfactory proof of identity and legal authorization. If you have a need that requires accommodation, please contact accommodations@obsidiansecurity.com
Information collected and processed as part of any job applications you choose to submit is subject to Obsidian’s Applicant Privacy Policy.
Employee Benefits:
Our competitive benefits packages are designed to support our employees' well-being, both at work and at home. Our US based employees enjoy:
- Competitive compensation with equity and 401k
- Comprehensive healthcare with dental and vision coverage
- Flexible paid time off and paid holiday time off
- 12 weeks of new parent or family leave
- Personal and professional development resources
For more details on our US benefits, or for information on our international benefits, please see here.
Match this job to your CV
ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.
Check my match →Similar open roles
- Enterprise Account Executive - CentralObsidian Security
- Enterprise Account Executive - Southeast (Atlanta)Obsidian Security
- Head of Customer SupportObsidian Security
- Head of GTM EnablementObsidian Security
- Senior Customer Marketing ManagerObsidian Security
- Enterprise Account Executive, EMEA Obsidian Security
- Sr Technical Marketing Manager - Alliances & Competitive StrategyObsidian Security
- Principal Solutions Engineer - APACObsidian Security
Need answers during your interview? Try Live Sarthi.
Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.
- Hidden from supported screen sharingThe overlay stays out of supported Windows screen captures.
- Answers start in about 1.5 secondsResponse time varies with your connection and model.
- From your own CVYour projects and your experience, not a generic script.
- 30 minutes freeThen ₹99 for a 2-day pass with unlimited calls — you pay for the days you are interviewing, not a subscription.
A Windows app, from the same team as ApplySarthi.
Listed on greenhouse · posted 2026-09-04. ApplySarthi collects openings and links to application pages; the role is advertised by Obsidian Security, not by us.