Senior Security Engineer Threat Response
About you:
- 7+ years of experience in threat detection, security operations, or incident response, including investigating incidents across cloud platforms, identity providers, and SaaS applications, with practical knowledge of audit logging and IAM.
- Proficient in Python (Bash, Go, or JavaScript/TypeScript is a plus) for security scripting and automation, with hands-on experience across REST APIs, Git workflows, and PR-based code reviews.
- Hands-on experience investigating software supply chain threats, with fluency in auditing modern developer ecosystems (e.g., npm, PyPI), build logs, and CI/CD pipelines.
- Familiarity with "Detection as Code" methodologies, including test-driven detection logic and rule management through CI/CD pipelines.
- Strong experience with SIEM platforms (e.g., Panther, Splunk, Elastic Security) for log analysis, alert correlation, and dashboard creation.
- Deep working knowledge of endpoint detection and response (EDR) tools (e.g., CrowdStrike, SentinelOne) with specialized expertise in macOS endpoint security, telemetry, and threat detection capabilities.
- Experience performing digital forensics and root-cause analysis to determine incident scope and impact.
- Familiarity with common attack techniques, tactics, and procedures (TTPs) and frameworks like MITRE ATT&CK.
- Collaborative and pragmatic, with strong communication skills across technical and non-technical partners, committed to building robust defenses and helping engineers do their best, most secure work.
- Demonstrated curiosity about AI tools and emerging technologies, with a willingness to learn and leverage them to enhance productivity, collaboration, or decision-making.
Our Security team keeps Asana's employees, users, and customers safe, by proactively addressing threats and fostering a culture of security throughout our product and operations.
We are looking for a savvy Security Engineer to join our Blue Team in Warsaw. You will be a foundational member of the security presence in our Warsaw innovation hub, partnering directly with IT, infrastructure, and product teams to ensure we have robust detection and response capabilities. Detection and response here leans on engineering practice. We are investing in automation and detection-as-code to cut down on manual triage, and we are looking for someone comfortable writing and reviewing code as part of that work.
This role is based in our Warsaw office with an office-centric hybrid schedule. The standard in-office days are Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. Working from home on Fridays depends on the type of work you do, and your recruiter can share more about the in-office requirements.
We offer a Contract of Employment (UoP) for our employees in Poland.
What we offer:
- Generous, transparent and fair compensation system (base salary and RSUs).
- Contract of Employment (and the option of 50% tax deductible costs for author’s rights usage in respect of applicable roles).
- Health insurance with dental and travel coverage (Lux Med).
- Breakfast and lunch catering on the days that you work from the office.
- Vacation allowance.
- Career growth budget.
- Home office setup budget.
- Gym/Fitness card.
- Fertility healthcare and family-forming support with Carrot.
- Mental Health Support in Modern Health.
- Group life insurance.
- MacBooks with all necessary accessories
For this role, the estimated base salary range is between 31,900 - 36,250 PLN gross per month (subject to all taxes and necessary deductions). The actual base salary will vary based on various factors, including market and individual qualifications objectively assessed during the interview process. The listed range above is a guideline, and the base salary range for this role may be modified. In addition to base salary, your compensation package may include additional components such as equity and sales incentive pay (for most sales roles), and benefits. If you're interviewing for this role, speak with your recruiter to learn more about the total compensation and benefits
for this role.