Skip to content
Back to jobs

Posted 3 weeks, 4 days ago

Obsidian Security

Staff Software Engineer

Roles

Compensation

USD 176000 - 196000

$176k-$196k + equity + 401k

yearly
base pay will vary based on factors such as work location
Equity
  • Equity
  • 401k

Tech stack

TypeScriptPythonRustKafkaPostgreSQLElasticsearchCORSDOM
prompt injectionexfiltrationSIEMsecurity toolingdetection engineering

Location

Philadelphia, Palo Alto

Work setup

full-time
Senior
US Remote
onsite
Will you now or in the future require visa sponsorship to work in the country where this role is based?* Select...

Role details

  • Work on browser extension code (content/background scripts, manifest v3, message passing)
  • Build backend services processing millions of events
  • Build data pipelines feeding a detection engine
  • Debug browser extension behavior such as capturing form submissions on SPAs
  • Fix and optimize backend components such as Kafka consumers
  • Optimize telemetry collection hot paths using Rust
  • Build systems to detect shadow AI when employees paste sensitive data into LLMs such as ChatGPT or Claude
  • ~8+ years experience
  • Real browser knowledge (DOM, event loop, SPA routing, CORS)
  • Prior browser extension work
  • Strong TypeScript
  • Comfortable in Python
  • Willing to write Rust
  • Data-at-scale chops (event streaming, PostgreSQL, Elasticsearch, Kafka)

Application

Apply via the provided Greenhouse link, or see all open roles at the careers page.

not required
not required
unclear
ats

Company context

We secure the SaaS apps companies actually run on, including M365, Salesforce, and more.

Threat detection and security for SaaS apps
Security
unclear

Description

We secure SaaS apps companies actually run on, including M365 and Salesforce. You’d be on the Threat product team working full-stack, including browser extension code (content/background scripts, manifest v3, message passing), backend services processing millions of events, and data pipelines feeding a detection engine. You will work on detecting shadow AI, i.e., catching when employees paste sensitive data into ChatGPT, Claude, or other LLMs. You will build systems that detect this behavior. Looking for ~8+ years experience with real browser knowledge (DOM, event loop, SPA routing, CORS) and prior browser extension work. Strong TypeScript, comfortable in Python, willing to write Rust, and data-at-scale experience (event streaming, PostgreSQL, Elasticsearch, Kafka). Bonus areas include AI security (prompt injection, exfiltration), detection engineering/SIEM, or security tooling. Apply via the link above, or see all open roles at the provided careers page.

Similar jobs

  • Loading similar jobs...