379,145open jobs
9,924companies
49,793added this week
Browse all
Location
In office (Taipei)
Seniority
Senior
Overview
Company
Impact
Profile match
Obsidian Security is a SaaS security company headquartered in Newport Beach, California, and founded in 2017. The company monitors software as a service applications such as Microsoft 365, Salesforce, Workday, and Okta for account takeover, risky integrations, excessive privilege, and configuration drift. It sells to enterprise security teams that have moved core business systems into SaaS and lack visibility into activity inside those applications.

Obsidian Security is the leading SaaS security platform, trusted by global enterprises like Snowflake, T-Mobile, and Algolia. We protect 200+ organizations across North America, Europe, the Middle East, Southeast Asia, Australia, and New Zealand, including many of the world’s largest Fortune 1000 and Global 2000 companies.

Founded in 2017 and backed by top investors like Greylock, Obsidian was built to close a critical gap: securing SaaS apps where business happens-Microsoft 365, Salesforce, and hundreds more. The company does this by offering a complete SaaS security platform to reduce risk, detect and respond to threats, and prevent breaches at the source. Obsidian was built by leaders who redefined endpoint and identity security at CrowdStrike, Okta, Cylance, and Carbon Black. Now, they’re transforming how SaaS is secured.

With AI driving rapid SaaS growth and complexity, agentic AI tools gain privileged access to sensitive data through integrations, creating new risks most security tools miss. Obsidian uniquely detects anomalous OAuth token activity and manages integration risks. Major announcements are on the horizon. Recognizing that SaaS security needs to evolve, Obsidian enables growing organizations to start with a lightweight, prevention-focused browser extension and expand coverage over time.

With global momentum, a growing partner ecosystem including SentinelOne, Databricks, and Google Cloud, and a major fundraise ahead, Obsidian is scaling rapidly toward long-term growth and IPO readiness.

Senior Threat Research Engineer - Taiwan

About the Role

Obsidian Security is looking for a Senior Threat Research Engineer to establish detection engineering capabilities within our growing Taiwan organization.

You will lead the development of security detections that identify identity threats, malicious activity, risky behavior, and emerging attack patterns across cloud and SaaS environments. The role combines threat research, detection modeling, data analysis, rule authoring, and production engineering.

You will work closely with Security Research, Product Management, platform engineering, data engineering, and Customer Success to translate real-world threats into accurate, explainable, and operationally effective detections.

You will work on directly contributing to threat models, detection logic, investigations, and validation. 

What You’ll Do

  • Work within detection engineering function in Taiwan, including its technical direction, operating model, quality standards, and hiring plan.

  • Research cloud, identity, and SaaS threats and translate attacker behaviors into actionable detection opportunities.

  • Develop threat models covering attack paths, adversary techniques, identity misuse, suspicious activity, and control failures.

  • Design, author, test, and maintain detection rules and behavioral detection models.

  • Define the telemetry, enrichment, correlation, and historical context required to support effective detections.

  • Partner with platform and data engineering teams to build scalable detection capabilities and production processing pipelines.

  • Develop frameworks for detection testing, simulation, coverage measurement, versioning, release management, and ongoing tuning.

  • Measure and improve detection precision, recall, explainability, performance, and customer value.

  • Investigate false positives and false negatives, identify their root causes, and improve detection logic and underlying data quality.

  • Map detection coverage to relevant threat frameworks, attack techniques, product use cases, and customer risks.

  • Monitor the evolving threat landscape and rapidly develop coverage for new techniques and vulnerabilities.

  • Partner with Product Management and Customer Success to understand customer environments, workflows, and detection requirements.

  • Create clear documentation explaining detection intent, supporting evidence, expected behavior, limitations, and recommended response actions.

  • Collaborate with teams across Taiwan, the US, the UK, and Australia to build a unified global detection program.

What We’re Looking For

  • Significant experience in detection engineering, threat research, security analytics, incident response, threat hunting, or a closely related security discipline.

  • Experience leading security research or detection initiatives and mentoring other practitioners.

  • Strong knowledge of attacker behavior, identity threats, cloud security, and modern enterprise SaaS environments.

  • Demonstrated experience developing production detections using rules, queries, correlations, statistical methods, or behavioral models.

  • Experience working with large security datasets, including audit events, authentication activity, identity data, application logs, or cloud telemetry.

  • Ability to distinguish malicious behavior from legitimate activity and translate that reasoning into precise, maintainable detection logic.

  • Strong data analysis skills and proficiency with relevant query, scripting, or programming languages.

  • Understanding of detection lifecycle management, including research, development, validation, deployment, monitoring, tuning, and retirement.

  • Experience measuring detection quality and using production feedback to improve security outcomes.

  • Ability to communicate technical security concepts clearly to engineering, product, customer-facing, and executive audiences.

  • Strong written and verbal communication skills in English.

  • Ability to collaborate effectively across regions, time zones, functions, and cultures.

Nice to Have

  • Experience with identity security, SaaS security, cloud detection and response, SIEM, UEBA, EDR, or XDR products.

  • Deep familiarity with identity-based attacks, including account takeover, session abuse, privilege escalation, persistence, and lateral movement.

  • Experience with MITRE ATT&CK or similar threat-modeling and coverage frameworks.

  • Experience building detection-as-code systems, rule languages, detection engines, or automated validation frameworks.

  • Experience applying machine learning, anomaly detection, or generative AI to security problems.

  • Experience investigating real-world intrusions or working directly with incident response teams.

  • Experience building or scaling a detection engineering team.

  • Experience working in Taiwan or with globally distributed APAC teams.

  • Mandarin proficiency.

What Success Looks Like

  • Obsidian has a disciplined and scalable detection engineering capability in Taiwan.

  • New threats are converted into production-quality detections quickly and reliably.

  • Detection coverage, quality, and customer impact can be measured and continuously improved.

  • False positives are controlled without sacrificing meaningful threat coverage.

  • Detection engineers, researchers, and platform teams work through a clear and effective development lifecycle.

  • Customers receive timely, explainable, and actionable security findings.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
379,145 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Taipei
$86k – $185k per year • In office • Full-Time • 5+ years exp • Master's Degree • Toronto
Python
SQL
Databases
Databricks
DevOps
AWS
Azure
Analytics
A/B Testing
Tableau
Apply
$66k – $142k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Denver
Databases
Databricks
AI/ML
Structured Outputs
Analytics
A/B Testing
Marketing
GA4
Apply
$80k – $170k per year (Estimated) • Remote/Hybrid • Full-Time • 4+ years exp • Bachelor's Degree • Montreal
Python
Databases
Databricks
AI/ML
LangChain
LLMOps
MLFlow
OpenAI
DevOps
Azure
CI/CD
Docker
Git
GitOps
Kubernetes
Platform Engineering
Apply
$123k – $256k per year (Estimated) • Remote • Full-Time • 8+ years exp • Bogotá
Java
SQL
Databases
DynamoDB
AI/ML
AI Agents
Claude
Claude Code
Devin
LLM Guardrails
DevOps
Amazon CloudWatch
Amazon EKS
Amazon S3
AWS
AWS Lambda
Azure
CI/CD
CloudFormation
Docker
GCP
GitHub
Kubernetes
New Relic
Terraform
Management
Jira
Apply
$139k – $282k per year (Estimated) • In office • Full-Time • 7+ years exp • PhD • Dallas • Austin
Apex
Python
SQL
AI/ML
Agentforce
AI Agents
NLP
RAG
Analytics
Tableau
Marketing
Salesforce
Apply
In office • Taipei
Go
Java
Kotlin
Python
SQL
Databases
Databricks
Snowflake
AI/ML
AI Agents
ChatGPT
Claude
Copilot
Function Calling
Gemini
LLM
RAG
Mobile
Algolia
DevOps
GCP
Vector
Cybersecurity
Carbon Black
Crowdstrike
Okta
SentinelOne
Management
Obsidian
Marketing
Salesforce
Apply
Remote/Hybrid • Sydney
Python
Databases
Databricks
Snowflake
AI/ML
AI Agents
Mobile
Algolia
DevOps
GCP
Cybersecurity
Carbon Black
Crowdstrike
Okta
SentinelOne
Marketing
Salesforce
Apply
$122k – $204k per year (Estimated) • Equity • Remote • Internship • 8+ years exp
Databases
Databricks
Snowflake
AI/ML
AI Agents
Knowledge Graph
Mobile
Algolia
DevOps
GCP
Cybersecurity
Carbon Black
Crowdstrike
Okta
SentinelOne
Marketing
Salesforce
Apply
$169k – $308k per year (Estimated) • Equity • Remote
Databases
Databricks
Snowflake
AI/ML
LLM
AI Agents
Mobile
Algolia
DevOps
GCP
Cybersecurity
Carbon Black
Crowdstrike
Okta
SentinelOne
Marketing
Salesforce
Apply
$78k – $169k per year (Estimated) • Equity • Remote/Hybrid • Internship
Python
Databases
Databricks
Snowflake
AI/ML
LLM
AI Agents
RAG
Mobile
Algolia
DevOps
GCP
Cybersecurity
Carbon Black
Crowdstrike
Okta
SentinelOne
Marketing
Salesforce
Apply
$131k – $205k per year • In office • Full-Time • 8+ years exp • Bachelor's Degree • Houston • Taipei
C++
Python
DevOps
CI/CD
Git
RTOS
Apply
In office • Full-Time • 1+ year exp • Bachelor's Degree • Taipei
Apply
Equity • In office • Full-Time • Taipei
C++
AI/ML
ChatGPT
Copilot
DevOps
CI/CD
Cortex
RTOS
Prometheus
Apply
In office • Full-Time • Taipei
C#
JavaScript
Python
Databases
MS SQL
DevOps
Git
Rest API
Analytics
ETL/ELT
Management
Confluence
Power Automate
UiPath
QA
Postman
Apply
In office • Contractor • 2+ years exp • Taipei
SQL
AI/ML
AI Agents
LLM
LLM Guardrails
DevOps
SLI/SLO/SLA
Apply
See all jobs
This is one of many
379,145 more open roles from verified company boards, updated every day.