Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Engineer, Threat Response

$202k - $230k

Asana

At Asana, security is foundational to our mission of helping humanity thrive by enabling the world's teams to work together effortlessly. Our security team protects Asana's employees, users, and customers by proactively addressing threats and fostering a culture of security throughout our product and operations.

We are looking for a Security Engineer, Threat Response to join our Security blue team in New York City. You'll be a foundational member of the security presence in a key hub, partnering directly with IT, infrastructure, and product teams to ensure we have robust detection, response, and vulnerability management capabilities. You will be instrumental in scaling our security practices by building effective monitoring, automating repetitive security operations tasks, and championing a security-first mindset.

This role sits within the Security Threat Operations and Response Management (STORM) group, responsible for the security of Asana the company and the security of the product - ensuring we maintain customer trust and are able to grow sustainably. You will collaborate with teams across the company including Infrastructure, Customer Success, Legal, IT, and other key stakeholders to drive better incident response outcomes.

This role is based in our New York City or San Francisco office with an office-centric hybrid schedule. The standard in-office days are Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. Working from home on Fridays depends on the type of work you do and the teams with which you partner. If you're interviewing for this role, your recruiter will share more about the in-office requirements.

What you'll achieve
  • Lead security incident detection, analysis, and response efforts, ensuring timely and effective remediation of security incidents.
  • Actively participate in and lead the on-call rotation, setting the standard for security incident management across the team.
  • Manage and mature our vulnerability management program, including scanning, assessment, prioritization, and tracking remediation efforts.
  • Utilize and optimize security tools such as Panther for SIEM, CrowdStrike for endpoint detection and response, and other security platforms.
  • Develop, implement, and maintain security playbooks and automation scripts to streamline security operations and reduce manual toil.
  • Monitor security alerts and threat intelligence feeds, proactively identifying and addressing emerging threats.
  • Conduct forensic analysis during security incidents to understand the scope and impact of incidents.
  • Lead retrospectives to help raise engineering excellence and embed a continuous improvement culture across the team.
  • Drive incident management and incident response best practices across the company, mentoring fellow engineers through pairing, process definition, and training exercises.
  • Participate in and help lead tabletop exercises to ensure different stakeholders are thinking about and preparing for incidents across the company.
  • Collaborate with engineering teams to integrate security best practices into development processes and provide guidance on secure configurations.
  • Stay informed of industry trends, emerging threats, and best practices in security operations, detection, and response to ensure Asana's security posture remains robust.
  • Collaborate with teammates and stakeholders to develop both short-term and long-term strategies for risk management.
About you
  • 5+ years of experience in security operations, incident response, threat detection, or vulnerability management.
  • Strong experience with SIEM platforms (e.g., Panther, Splunk, Elastic Security) for log analysis, alert correlation, and dashboard creation.
  • Deep working knowledge of endpoint detection and response (EDR) tools (e.g., CrowdStrike, SentinelOne) and their capabilities.
  • Proven experience in developing and implementing security automation using scripting languages (e.g., Python, PowerShell) or orchestration tools.
  • Experience performing security incident investigations and forensic analysis.
  • Familiarity with common attack techniques, tactics, and procedures (TTPs) and frameworks like MITRE ATT&CK.
  • Hands-on technical expertise in at least two of the following areas: Cloud Security, Detection & Response, Digital Forensics, Network Security, Abuse, or Fraud.
  • Experience working in environments composed primarily of SaaS and cloud resources.
  • Track record of successfully leading incident response projects and mentoring engineers on security operations.
  • Experience making technical trade-offs and articulating them clearly to stakeholders at different levels, both internal and external.
Communication & Mindset
  • Excellent communication skills, able to explain complex technical concepts clearly to both technical and non-technical partners.
  • Customer-obsessed mindset with a drive to deliver the best possible experience and outcomes for Asana's customers and users.
  • A pragmatic and collaborative mindset, with a passion for building robust defences and enabling other engineers to do their best, most secure work.
  • Demonstrates curiosity about AI tools and emerging technologies, with a willingness to learn and leverage them to enhance productivity, collaboration, or decision-making.
Additional Experience We Value
  • Hands-on experience with logging and monitoring tools such as Datadog, Splunk, and Panther.
  • Hands-on experience with AWS, Google Workspace, and common SaaS applications.
  • Experience with macOS endpoint security, including investigation workflows and EDR capabilities on Apple platforms.
  • Experience with bug bounty programs.
  • Experience with red team/blue team or purple team exercises.
Nice to have: Familiarity with FedRAMP requirements, particularly around incident reporting obligations, continuous monitoring, and evidence collection standards for FedRAMP-authorised environments.

What we'll offer

Our comprehensive compensation package plays a big part in how we recognize you for the impact you have on our path to achieving our mission. We believe that compensation should be reflective of the value you create relative to the market value of your role. To ensure pay is fair and not impacted by biases, we're committed to looking at market value, which is why we check ourselves and conduct a yearly pay equity audit.

For this role, the estimated base salary range is between $202,000 - $230,000. The actual base salary will vary based on various factors, including market and individual qualifications objectively assessed during the interview process. The listed range above is a guideline, and the base salary range for this role may be modified.

In addition to base salary, your compensation package may include additional components such as equity, and benefits. If you're interviewing for this role, speak with your Talent Acquisition Partner to learn more about the total compensation and benefits for this role.

We strive to provide equitable and competitive benefits packages that support our employees worldwide and include:
  • Mental health, wellness & fitness benefits
  • Career coaching & support
  • Inclusive family building benefits
  • Long-term savings or retirement plans
  • In-office culinary options to cater to your dietary preferences

These are just some of the benefits we offer, and benefits may vary based on role, country, and local regulations. If you're interviewing for this role, speak with your Talent Acquisition Partner to learn more about the total compensation and benefits for this role.

About us

Asana is a leading platform for human + AI collaboration. Millions of teams around the world rely on Asana to achieve their most important goals, faster. Asana has been named to Fortune's Best Workplaces for 7+ years and recognized by Fast Company, Forbes, and Gartner for excellence in workplace culture and innovation. We offer an exceptional office-centric culture while adopting the best elements of hybrid models to ensure that every one of our global team members can work together effortlessly. With 13+ offices all over the world, we are always looking for individuals who care about building technology that drives positive change in the world and a culture where everyone feels that they belong.

Join Asana's Talent Network to stay up to date on job opportunities and life at Asana.
Vacancy posted 7 days ago
Similar jobs that could be interesting for youBased on the Security Engineer, Threat Response in New York, NY vacancy
  • Asana is seeking a Security Engineer, Threat Response in New York City to ensure the security of employees and customers. You will lead incident response and vulnerability management strategies, collaborate with multiple teams, and drive security practices throughout the... 
    Suggested

    Asana

    New York, NY
    2 days ago
  • $230k - $385k

     ...About the Team Security is at the foundation of OpenAI's mission...  ...About the Role As a Security Engineer you will join our OpenAI...  ...on all aspects of Detection & Response but with a strong emphasis on detecting insider threats and influencing controls to safeguard... 
    Suggested

    OpenAI

    New York, NY
    6 days ago
  • $100k - $120k

     ...is a leading platform-enabled unified security operations company providing a comprehensive...  ..., and resilience from today’s dynamic threat landscape, UltraViolet Cyber provides...  ...is seeking a Cyber Threat Detection & Response Engineer to join the Threat Intelligence & Detection... 
    Suggested
    Temporary work

    UltraViolet Cyber

    New York, NY
    2 days ago
  • $180k

     ...Security Engineer - Detection & Response New York, NY; Palo Alto, CA About XAI XAI's mission is to create AI systems that can accurately understand...  ...will be responsible for leading day-to-day security threat management. You will help identify and manage potential... 
    Suggested
    Permanent employment
    Temporary work

    Xai

    New York, NY
    6 days ago
  • $293k - $385k

     ...About the Team Security is at the foundation of OpenAI's mission to ensure...  ...About the Role As a Security Engineer on Detection & Response, you'll help protect OpenAI's most sensitive...  ...ship with the right telemetry, threat models, and response playbooks from... 
    Suggested

    OpenAI

    New York, NY
    7 days ago
  • $140k - $195k

    As a Security Engineer 2 on the Cyber Threat Intelligence team, you will help Datadog stay ahead of evolving threats by identifying, analyzing, and operationalizing...  ...role provides opportunities to influence detection, response, and security strategy through technical analysis,... 
    Work at office

    Datadog

    New York, NY
    3 days ago
  • $139k - $204k

     ...powers the world's most demanding AI infrastructure — and threat actors know it. The Advanced Response Team exists to fight back. You'll lead our most...  ...the capabilities to stay left of boom Work alongside security partners who hold a high bar and expect you to raise it... 
    Permanent employment
    Temporary work
    Casual work
    Work at office
    Flexible hours

    CoreWeave

    New York, NY
    11 days ago
  • $320k - $405k

     ...Security Engineer - Threat Intel New York City, NY; Remote-Friendly (Travel-Required) | San Francisco, CA | Washington, DC About Anthropic...  .... The Threat Intelligence function within our Detection & Response team exists to make sure we see them coming. As a Threat... 
    Work at office
    Remote work
    Visa sponsorship
    Flexible hours

    Anthropic

    New York, NY
    7 days ago
  • $167.5k - $235k

     ...Senior Security Engineer (Detection & Response) New York, New York Apply Who We Are At Justworks, you’ll enjoy a welcoming and casual environment...  ...logic that powers our platform, conduct proactive threat hunting, and drive continuous improvements across our... 
    Casual work
    Local area

    Justworks

    New York, NY
    17 hours ago
  • $204k - $240k

    Etsy, Inc. is seeking a Staff Security Engineer to join our Security Operations team in New York. This critical role involves...  ...protecting our data and infrastructure by enhancing threat detection and incident response processes. Ideal candidates will have extensive experience... 

    Etsy, Inc.

    New York, NY
    3 days ago
  •  ...cross-chain payments protocol company in New York is seeking a Security Engineer to own the security posture of its infrastructure. You will lead threat modeling, vulnerability management, and incident response processes, along with driving compliance readiness. The ideal... 
    Remote job

    Relay

    New York, NY
    1 day ago
  • $70k - $99.2k

    Hyundai Autoever America is looking for a Security Engineer II to enhance its security posture by implementing and managing enterprise security technologies. Ideal candidates will have a solid understanding of security frameworks and experience in Security Engineering,... 

    Hyundai Autoever America

    New York, NY
    1 day ago
  • The Role We are seeking a seasoned Security Engineer with a specialization in detection and response to join our team. As a strategic partner, you will be responsible...  .... Stay informed about the latest security threats, vulnerabilities, and compliance mandates affecting... 

    Cape

    New York, NY
    1 day ago
  • Neevsys LLC is seeking a Cybersecurity Analyst responsible for ensuring the confidentiality, integrity, and availability of IT systems. You will monitor security events, conduct vulnerability assessments, and ensure compliance with federal security requirements. The ideal... 

    Neevsys LLC

    New York, NY
    3 days ago
  • 600 Mobility Tech Solutions LLC is seeking a Cyber Security Engineer to join its Information Security & Cyber Security team....  ...ideal candidate will have strong experience in incident response, digital forensics, and threat detection, ensuring robust security measures across... 

    600 Mobility Tech Solutions LLC

    New York, NY
    4 days ago
  •  ...leader in global immigration services, is hiring a Cyber Security Engineer to join their Information Security & Cyber Security team. This role focuses on incident response, digital forensics, and improving threat detection capabilities across the organization. The ideal... 

    Fragomen

    New York, NY
    4 days ago
  • $125k - $143k

    Overview Sr. Security Engineer: Azure security with threat hunting, MXDR, SIEM, DLP req; CEH a + This role can be done remotely, but you would be required...  ...$143,000.00/yr Purpose of Position This position is responsible for maintaining and improving the security of the... 
    Full time
    Work at office
    Immediate start
    Remote work

    KORE1

    New York, NY
    1 day ago
  •  ...Threat Detection & Response Engineer Location: New York City, (Hybrid) Compensation: Top-tier compensation We're representing a global...  ...lab than a traditional bank. They are looking for a Security Engineer who thinks like a Software Engineer. If you... 

    Elliot Partnership

    New York, NY
    4 days ago
  • $160k - $200k

    Ripple is looking for a Senior Security Engineer specializing in anti-abuse and threat intelligence to develop systems that detect and prevent threats to its organization. This role includes operationalizing threat intelligence and automating intelligence sharing across... 

    Ripple

    New York, NY
    1 day ago
  • $80k - $95k

     ...our business. We take that responsibility seriously. With a 200-year legacy...  ...physical and logical security risks; to safeguard stakeholder...  ...playbooks, metrics etc.) Social engineering Simulations: Support social...  ...latest cybersecurity threats and trends Strong writing... 
    Local area

    Brown Brothers Harriman

    Jersey City, NJ
    3 days ago
  • $108k - $135k

     ...Cyber Security Incident Response Analyst II At Early Warning, we've powered and protected the U.S...  ...and responding to critical or urgent threat situations. Essential Functions...  ...or 2 year degree in Computer Science, Engineering, Math or Physical Science. Minimum... 
    Hourly pay
    Work experience placement
    Work at office
    Immediate start
    Visa sponsorship
    Work visa
    Flexible hours

    Early Warning Services

    New York, NY
    9 days ago
  • $100k - $120k

    UltraViolet Cyber in McLean, Virginia is seeking a Cyber Threat Detection & Response Engineer to join the TIDE team. This role involves performing threat hunts and creating detection strategies to defend against cyber threats, leveraging deep technical expertise and advanced... 

    UltraViolet Cyber

    New York, NY
    2 days ago
  • $235k - $255k

    WeightWatchers is looking for a Senior Security Engineer - Detection and Response to join their remote team. In this role, you will build and enhance a detection and response program, collaborate with multiple teams to secure infrastructure, and mentor others on security... 
    Remote job

    WeightWatchers

    New York, NY
    1 day ago
  • A travel and technology company seeks a Senior Security Operations Engineer to enhance security operations and incident response processes. This role requires deep expertise in AWS, GCP, and SIEM tools, along with a proactive mindset for continuous improvement. The candidate... 
    Flexible hours

    TripAdvisor

    New York, NY
    1 day ago
  •  ...Analyst to investigate network intrusions and cyber incidents. Responsibilities include developing forensic techniques, managing analysis...  ...integrity. Ideal candidates will have a minimum of 4 years in Threat Management and digital forensic investigations. Proficiency in... 

    Govserviceshub

    New York, NY
    1 day ago
  • Richemont is seeking a Senior Associate in Cyber Incident Response to protect against cyber threats and analyze security events in New York. The role involves incident management, detailed analysis of cybersecurity threats, and collaboration with IT and security teams... 

    Richemont

    New York, NY
    17 hours ago
  • $165k - $185k

     ...the Role Betterment is hiring a Sr. Security Engineer, Corporate Information Security to be...  ...of the Workforce Security team. We're responsible for managing identity and logical access...  ...investigations for spam, phishing and other threats. Endpoint, Mobile & Browser Security... 
    Temporary work
    For contractors
    Summer holiday
    Work at office
    Local area
    Flexible hours

    Betterment

    New York, NY
    3 days ago
  • $150k - $200k

     ...Senior Security Engineer - Application Security New York, NY About the Role This is...  ...and compliant against evolving global threats. This role is crucial for...  ...rotation for critical on-call support responsibilities Bonus: Exploring, partnering... 
    Full time
    Work at office
    Local area

    K Health

    New York, NY
    2 days ago
  • $195k - $240k

     ...Datadog, we think about offensive security a little bit differently. We...  ...and we expect our offensive engineers to build the tooling that...  ...to-end, simulating real-world threat actors across cloud infrastructure...  ...Partner with the Detection & Response team on purple team exercises... 
    Work at office

    Datadog

    New York, NY
    4 days ago
  • $104k - $156k

     ...Job Overview As an Advanced Security Engineer focused on Endpoint Security, you will...  ...Description and Requirements Role Responsibilities   ~ Design, implement, and operate endpoint...  ...Familiarity with vulnerability scanning and threat protection.  ~ Relevant... 
    Remote work

    Relativity

    New York, NY
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Engineer, Threat Response. Be the first to apply!