SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Obsidian Security, a leading SaaS security platform trusted by Fortune 1000 and Global 2000 companies, is seeking a Detection Engineering Lead to establish and lead detection engineering capabilities in their Taiwan organization.
You will lead the development of security detections that identify identity threats, malicious activity, risky behavior, and emerging attack patterns across cloud and SaaS environments. This hands-on leadership role combines threat research, detection modeling, data analysis, rule authoring, and production engineering.
Key responsibilities include:
- Establish and lead the detection engineering function in Taiwan, defining technical direction, operating model, quality standards, and hiring strategy
- Research cloud, identity, and SaaS threats and translate attacker behaviors into actionable detection opportunities
- Develop threat models covering attack paths, adversary techniques, identity misuse, and control failures
- Design, author, test, and maintain detection rules and behavioral detection models
- Define telemetry, enrichment, correlation, and historical context requirements for effective detections
- Partner with platform and data engineering teams to build scalable detection capabilities and production pipelines
- Develop frameworks for detection testing, simulation, coverage measurement, versioning, and release management
- Measure and improve detection precision, recall, explainability, performance, and customer value
- Investigate false positives and negatives, identify root causes, and improve detection logic
- Map detection coverage to threat frameworks, attack techniques, and customer risks
- Monitor the evolving threat landscape and develop coverage for new techniques and vulnerabilities
- Partner with Product Management and Customer Success to understand customer environments and detection requirements
- Create clear documentation explaining detection intent, supporting evidence, limitations, and recommended response actions
- Mentor detection engineers and security researchers while establishing a culture of scientific rigor and continuous improvement
- Collaborate with teams across Taiwan, the US, the UK, and Australia to build a unified global detection program
You will bring significant experience in detection engineering, threat research, security analytics, incident response, or threat hunting. You have demonstrated experience leading security research or detection initiatives and mentoring other practitioners. Strong knowledge of attacker behavior, identity threats, cloud security, and modern enterprise SaaS environments is essential. You have proven ability developing production detections using rules, queries, correlations, statistical methods, or behavioral models.