Obsidian Security
Agent Security Research Engineer – Taiwan
Taipei, Taiwan
Get past the screening software and onto a recruiter's desk
hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.
- Keywords matched to this posting
- Fit score before you apply
- Cover letter included
Matched against 2.7M live jobs from 200,000+ employers in 200+ countries.
Tailor my resume for this job →Apply from your AI assistant
Connect hirly to Claude and ask it to apply to this job. hirly tailors your resume, fills the employer’s form and asks before sending. ChatGPT: manual setup today.
Some employer sites stop an application at a CAPTCHA or sign-in and hand it back with a link. Applying needs a paid plan. Works with any assistant that supports MCP.
hirly's read of this role
- Role family
- Supply chain
- Seniority
- Mid level
- Country
- TW
- Work mode
- On-site / unstated
- First seen by hirly
- 6 Oct 2026
Derived automatically from the posting. Upload your resume above to see how the role scores against it.
the posting
Obsidian Security is a global leader in cyber security protecting the SaaS and non-human identity layer modern enterprises run on — from Salesforce and Snowflake to the AI agents now deployed inside them. The Obsidian Security platform gives unified visibility into every human and machine identity, app, and integration across their SaaS estate, detects identity-based and supply chain attacks in real time, and enforces least-privilege access before it's exploited. Trusted by major Fortune 500 companies T-Mobile, Workday, Snowflake, and S&P Global, Obsidian ranked No. 95 on the 2025 Deloitte Technology Fast 500™, growing nearly 1000% from 2021–2024 — helping CISOs turn an unmonitored attack surface into one they can govern with confidence. Obsidian has also been recognized by Forbes as America's Best Startup Employers in 2026.
In August 2026, Obsidian raised $85 million in Series D financing led by Crescent Cove Advisors, with participation from existing investors including Greylock Partners, Menlo Ventures, Norwest Venture Partners, IVP, Wing Ventures, and GV — pushing Obsidian's valuation to $1.1 billion, crossing into unicorn status. Obsidian is using the funding to deepen its R&D in agentic AI security and extend its platform as the standard for governing what AI agents can access and do inside third-party applications.
With global momentum, a growing partner ecosystem including SentinelOne, Databricks, and Google Cloud, and fresh capital from its Series D behind it, Obsidian is scaling rapidly toward long-term growth and IPO readiness.
Agent Security Research Engineer – Taiwan
About the role: You'll own agent security content from idea to production. You'll research how AI agents (coding assistants, desktop agents, workflow automation tools, and MCP-connected tools) can misbehave or be compromised. Then you'll design the detection or policy, build it in our engines and pipelines, test it, ship it, document it, help customers adopt it, and tune it based on real-world results. You're accountable for each piece of content delivering security value in customers' environments.
Required Skills:
Hands-on knowledge of how agentic tools work: tool calling, hooks and lifecycle events, MCP servers and transports, skills and plugins, permission modes
Solid grasp of agent-specific attack classes: direct and indirect prompt injection, tool and description poisoning, confused-deputy and excessive-agency issues, secret leakage into context, and malicious or over-permissioned MCP servers and extensions.
Able to tell real risk from theoretical risk and explain the difference to a customer.
Strong SQL, ideally on analytical stores like ClickHouse, Databricks, or Snowflake.
Disciplined about testing: builds reproducible test cases (positive and negative) before shipping content.
Proficient scripting in Python or Go, enough to build test harnesses, parse event logs, and perform detections.
Working knowledge of SaaS and cloud identity (OAuth, PATs, API tokens, scopes) and of developer tooling (Git, GitHub/GitLab, CI/CD).
Able to explain an agent attack chain to engineers, product and customer-facing teams.
Nice to Have:
Published research, CVEs, talks, or blog posts on LLM or agent security.
Familiarity with threat detection.
Hands-on experience with endpoint security on macOS, Linux, or Windows
Experience with dbt, Dagster, or other data-pipeline tooling.
Background in a SaaS security, CASB/SSPM, or insider-threat product.
Has used Claude Code, Copilot, Cursor, or similar heavily in daily work and has opinions about their security models.
Employee Benefits:
Our competitive benefits packages are designed to support our employees' well-being, both at work and at home. Our US based employees enjoy:
Competitive compensation with equity and 401k
Comprehensive healthcare with dental and vision coverage
Flexible paid time off and paid holiday time off
12 weeks of new parent or family leave
Personal and professional development resources
For more details on our US benefits, or for information on our international benefits, please see here .
Listed on hirly, a job board. hirly is not the employer: Obsidian Security is hiring for this role.
Similar jobs
- ASIC Engineer - Advanced Packaging & Supplier Quality (Cisco Silicon One)Cisco · Taipei, TaiwanFirst seen today
- Contractor, Procurement Operations, GPS, T&ODbs · TaipeiFirst seen 3d ago
- TTS Research EngineerCerence · 2 LocationsFirst seen 15d ago
- Senior Threat Research Engineer – TaiwanObsidiansecurity · Taipei, TaiwanFirst seen 31d ago
- CS - Global Operations Centre Operational Planner - Linkou/TaichungAsml · Linkou, TaiwanFirst seen yesterday
Browse similar roles
Want this one?
Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.
Tailor my resume for this job