AI Security Engineer at Obsidian Security
Palo Alto, CA
—
Jul 2, 2026
Palo Alto, CA
Jul 21, 2026
What this job asks for AI summary
A security engineering role focused on AI and agentic platforms, sitting within a SaaS security product team. The work centers on building threat models, detections, and posture checks for AI tools like enterprise copilots and agentic frameworks, with hands-on data pipeline and feature development against SaaS and AI telemetry. Suited to engineers with a background in security who are comfortable owning shipped work across identity, access control, and modern data stacks.
Mid level · 3+ years · National · Full-time
“or” means any one of them counts — you don't need all of them.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Rare in this occupation — lead with these, and say what you built with them.
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $132,021 (middle half $99,961–$167,095). This posting is about at that midpoint.
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (8)
The base salary is quoted in GBP (£155,000–£180,000), strongly indicating this is a UK-based role despite the company being US-headquartered and the benefits section referencing US employees. The US-based flag has been set to false accordingly.
The role blends security research/threat modeling (15-1212) with hands-on data pipeline and warehouse work (15-1243); 15-1212 was chosen as primary because threat modeling, detections, and posture checks are the core deliverables, with the data stack being the means to that end.
The title carries no seniority level word; the title states no level. The 3+ years requirement and scope (owning threat models, shipping product features end-to-end) support a Mid-level classification.
dbt and a columnar warehouse (ClickHouse, Snowflake, BigQuery, or Databricks) are listed together as a single required 'modern data stack' requirement; dbt is emitted as the primary required skill with the warehouse options as alternatives on the columnar warehouse skill.
SaaS platform knowledge (Google Workspace, Microsoft 365, Salesforce, Okta), OAuth, LLMs/AI security (OWASP LLM Top 10, MITRE ATLAS, prompt injection), and agent/tool-use risks all appear exclusively under the 'Nice to Have' section.
MITRE ATLAS is a framework specific to AI/ML threats; it is captured under the broader 'MITRE ATT&CK' skill name as the closest canonical equivalent, noted here for transparency.
Ignored 1 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): security engineering.
This role's work location reads as outside the US — the candidate pool, comp, and contention benchmarks here are US-only (BLS employment, Adzuna/USAJOBS demand, and certified H-1B wages), so treat them as a rough US reference, not a local market.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.