PUBlished on
December 11, 2023
updated on
November 5, 2025

Obsidian Security Recognized as Strong Performer by Independent Research Firm

GLENN CHISHOLM

Today, our team at Obsidian Security has been recognized as a Strong Performer by The Forrester Wave™: SaaS Security Posture Management, Q4 2023. We believe such acknowledgment is reflective of the work that has been done to build a team and a product that indeed provides true value to our customers, and we are thrilled to have received it.

When we began this journey, it was clear that SaaS security had been neglected by the vendor community, and we had failed to provide our customers with the tools they needed to succeed. As a community, we had not considered the risks posed by SaaS, how those risks should be managed in an enterprise environment, and, most importantly, what part the security team plays in that journey. The revolution of SaaS in enterprise environments has changed how businesses purchase, consume and leverage software, bringing agility and innovation in ways previously not considered. Such a series of changes should have shown us as a community that we needed to innovate how we think about securing this new segment.

Over the last five years, we have helped lead the discussion from its inception, innovating, where many asked, “Do we need SaaS Security?” to an acknowledgment that SaaS brings with it new and exciting challenges for the security team, some of those technical, but many of those organizational.

The next five years will be even more exciting as we refine, adapt and innovate to secure the SaaS ecosystem. Our vision requires us at Obsidian Security to enable our customers to truly protect their SaaS estate.

Attackers are increasingly leveraging identity-centric attacks to compromise organizations; we should only expect this to increase as generative AI allows attackers to mimic employees’ voices and LLMs allow social engineering to scale in ways not previously possible. Obsidian has been a true innovator in detecting and preventing attacks where the attacker may never even touch the enterprise devices or network, especially in places such as token theft and replay. As we evolve, we will be the glue that connects the SSO, the IDP and the applications, how they are being used, by whom and ensuring that attackers do not exploit this vulnerability.

SaaS provides value by allowing us to manage and use the electronic gold that is data in new and exciting ways. Data moves between our data center to our SaaS applications to third and fourth parties at speeds that can be frightening. Obsidian delivers a world-class experience in understanding and managing that connectivity, identifying, understanding and mitigating the risk as we move forward; we will provide control and protection for your most sensitive data, how it is transferred, to whom and when.

Empowering the security team to assist the diverse application owners in their enterprise to be more secure is a fundamental part of SaaS Ecosystem Security; it is, after all, the origin of the SSPM name. As we dive deeper into managing the posture of your applications, driving business value with secure usage and deployment. Key to this are two core concepts:

Obsidian has only just begun to innovate and build, I am excited at what the next five years brings in our journey to secure SaaS.

Frequently Asked Questions (FAQs)

What does it mean that Obsidian Security was recognized as a "Strong Performer" by The Forrester Wave™ for SaaS Security Posture Management?

Being recognized as a "Strong Performer" by The Forrester Wave™: SaaS Security Posture Management, Q4 2023, indicates that Obsidian Security is considered among the leading vendors in the market segment for securing SaaS environments. This distinction is based on an independent evaluation of product capabilities, strategy, and customer impact.

Why is SaaS security posture management important for enterprises?

SaaS security posture management (SSPM) is crucial because it addresses the unique risks of SaaS applications, including identity-centric threats and data exposure. As enterprises increasingly rely on SaaS for critical operations, SSPM helps organizations gain visibility, manage configurations, and enforce security across a rapidly growing application landscape.

How does Obsidian Security help protect against modern SaaS threats?

Obsidian Security leverages innovative detection techniques to identify and prevent advanced attacks such as token theft, replay attacks, and identity-based intrusions. The platform acts as a bridge between SSO, identity providers, and applications, ensuring secure usage and mitigating risks even when attackers bypass traditional network defenses.

What role does Obsidian Security play in enabling secure collaboration across teams?

Obsidian empowers security teams to assist application owners throughout the enterprise, driving a culture of secure SaaS deployment and usage. By providing actionable insights and streamlined controls, the platform helps ensure that both technical and organizational risks are efficiently managed.

You May Also Like

Get Started

Start in minutes and secure your critical SaaS applications with continuous monitoring and data-driven insights.

get a demo