Obsidian Security logo

Principal Product Security Engineer

Obsidian SecurityPalo Alto, CA

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.1

Reclaim your time by letting our AI handle the grunt work of job searching.

We continuously scan millions of openings to find your top matches.

pay-wall

Overview

Schedule
Full-time
Career level
Senior-level
Remote
On-site
Benefits
Health Insurance
Health & Wellness Programs

Job Description

Principal Product Security Engineer

Position Overview

We're looking for a Principal Product Security Engineer to lead and scale Obsidian's product security program across our SaaS product, cloud infrastructure, CI/CD pipelines, and related services. This is a senior, highly technical role for someone who can combine deep security engineering expertise with strong ownership, judgment, and cross-functional leadership.

You'll partner closely with Engineering, Product, GRC, IT, DevOps, SRE, and Platform teams to embed security throughout the SDLC, strengthen cloud and infrastructure security, mature threat modeling and secure design practices, and drive automation across detection, response, vulnerability management, and security testing.

This role reports to the Head of Security and is ideal for a seasoned product security leader who thrives in a fast-moving, high-growth cybersecurity startup and wants to make a meaningful impact on the security of our product, customers, and organization.

Key Responsibilities

  • Lead and evolve Obsidian's product security program, including standards, runbooks, technical documentation, and operational practices.
  • Provide technical leadership, mentorship, and secure design guidance to security and engineering teams.
  • Drive security architecture reviews, threat modeling, secure coding practices, and scalable security design reviews.
  • Integrate security deeply into the SDLC through code review, SAST/DAST, fuzzing, SBOMs, dependency scanning, and CI/CD security controls.
  • Partner with infrastructure teams to harden AWS, GCP, Kubernetes, GitLab, Terraform, data pipelines, secrets management, and service-to-service access controls.
  • Improve security automation, monitoring, metrics, dashboards, and reporting.
  • Lead technical response for product security incidents, vulnerability remediation, penetration testing, and red team findings.
  • Support customer and prospect security reviews as a senior technical security expert.

What We're Looking For

  • 10+ years of product security and/or engineering experience in cloud-native environments, ideally in cybersecurity, financial services, or another high-security industry.
  • Strong software engineering skills, especially in Python.
  • Hands-on expertise with Terraform, Kubernetes, AWS, GCP, GitLab, security automation, and security metrics.
  • Deep knowledge across application security, cloud security, detection and response, vulnerability management, and secure SDLC practices.
  • Experience partnering with engineering, product, IT, GRC, and external stakeholders during security reviews and incidents.
  • Strong communication skills with the ability to influence, educate, and raise security maturity across the company.
  • A mission-driven, ownership-oriented mindset and the ability to thrive in a dynamic startup environment.

What We Offer

  • A team-first, low-ego, mission-focused culture.
  • High-impact work shaping the security of Obsidian's product and platform.
  • Professional development opportunities and annual conference budget.
  • Competitive salary, equity, and health benefits.
  • Opportunities to publish research, share non-proprietary code, and present at conferences.
  • The chance to join a fast-growing company backed by Greylock Partners, Google Ventures, Menlo Ventures, WingVC, and Norwest Venture Partners.

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.

pay-wall

FAQs About Principal Product Security Engineer Jobs at Obsidian Security

What is the work location for this position at Obsidian Security?
This job at Obsidian Security is located in Palo Alto, CA, according to the details provided by the employer. Some roles may also include multiple work locations depending on the requirement.
What pay range can candidates expect for this role at Obsidian Security?
Employer has not shared pay details for this role.
What employment applies to this position at Obsidian Security?
Obsidian Security lists this role as a Full-time position.
What experience level is required for this role at Obsidian Security?
Obsidian Security is looking for a candidate with "Senior-level" experience level.
What benefits are offered by Obsidian Security for this role?
Obsidian Security offers following benefits: Health Insurance and Health & Wellness Programs for this position. Actual benefits may vary depending on the employer's policies and employment terms.
What is the process to apply for this position at Obsidian Security?
You can apply for this role at Obsidian Security either through Sonara's automated application system, which helps you submit applications 10X faster with minimal effort, or by applying manually using the direct link on the job page.