Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Engineer, Threat Response

$202k - $230k

Asana

Security Engineer, Threat Response

At Asana, security is foundational to our mission of helping humanity thrive by enabling the world's teams to work together effortlessly. Our security team protects Asana's employees, users, and customers by proactively addressing threats and fostering a culture of security throughout our product and operations.

We are looking for a Security Engineer, Threat Response to join our Security blue team in New York City. You'll be a foundational member of the security presence in a key hub, partnering directly with IT, infrastructure, and product teams to ensure we have robust detection, response, and vulnerability management capabilities. You will be instrumental in scaling our security practices by building effective monitoring, automating repetitive security operations tasks, and championing a security-first mindset.

This role sits within the Security Threat Operations and Response Management (STORM) group, responsible for the security of Asana the company and the security of the product — ensuring we maintain customer trust and are able to grow sustainably. You will collaborate with teams across the company including Infrastructure, Customer Success, Legal, IT, and other key stakeholders to drive better incident response outcomes.

This role is based in our New York City or San Francisco office with an office-centric hybrid schedule. The standard in-office days are Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. Working from home on Fridays depends on the type of work you do and the teams with which you partner. If you're interviewing for this role, your recruiter will share more about the in-office requirements.

What you'll achieve

  • Lead security incident detection, analysis, and response efforts, ensuring timely and effective remediation of security incidents.
  • Actively participate in and lead the on-call rotation, setting the standard for security incident management across the team.
  • Manage and mature our vulnerability management program, including scanning, assessment, prioritization, and tracking remediation efforts.
  • Utilize and optimize security tools such as Panther for SIEM, CrowdStrike for endpoint detection and response, and other security platforms.
  • Develop, implement, and maintain security playbooks and automation scripts to streamline security operations and reduce manual toil.
  • Monitor security alerts and threat intelligence feeds, proactively identifying and addressing emerging threats.
  • Conduct forensic analysis during security incidents to understand the scope and impact of incidents.
  • Lead retrospectives to help raise engineering excellence and embed a continuous improvement culture across the team.
  • Drive incident management and incident response best practices across the company, mentoring fellow engineers through pairing, process definition, and training exercises.
  • Participate in and help lead tabletop exercises to ensure different stakeholders are thinking about and preparing for incidents across the company.
  • Collaborate with engineering teams to integrate security best practices into development processes and provide guidance on secure configurations.
  • Stay informed of industry trends, emerging threats, and best practices in security operations, detection, and response to ensure Asana's security posture remains robust.
  • Collaborate with teammates and stakeholders to develop both short-term and long-term strategies for risk management.

About you

  • 5+ years of experience in security operations, incident response, threat detection, or vulnerability management.
  • Strong experience with SIEM platforms (e.g., Panther, Splunk, Elastic Security) for log analysis, alert correlation, and dashboard creation.
  • Deep working knowledge of endpoint detection and response (EDR) tools (e.g., CrowdStrike, SentinelOne) and their capabilities.
  • Proven experience in developing and implementing security automation using scripting languages (e.g., Python, PowerShell) or orchestration tools.
  • Experience performing security incident investigations and forensic analysis.
  • Familiarity with common attack techniques, tactics, and procedures (TTPs) and frameworks like MITRE ATT&CK.
  • Hands-on technical expertise in at least two of the following areas: Cloud Security, Detection & Response, Digital Forensics, Network Security, Abuse, or Fraud.
  • Experience working in environments composed primarily of SaaS and cloud resources.
  • Track record of successfully leading incident response projects and mentoring engineers on security operations.
  • Experience making technical trade-offs and articulating them clearly to stakeholders at different levels, both internal and external.

Communication & Mindset

  • Excellent communication skills, able to explain complex technical concepts clearly to both technical and non-technical partners.
  • Customer-obsessed mindset with a drive to deliver the best possible experience and outcomes for Asana's customers and users.
  • A pragmatic and collaborative mindset, with a passion for building robust defenses and enabling other engineers to do their best, most secure work.
  • Demonstrates curiosity about AI tools and emerging technologies, with a willingness to learn and leverage them to enhance productivity, collaboration, or decision-making.

Additional Experience We Value

  • Hands-on experience with logging and monitoring tools such as Datadog, Splunk, and Panther.
  • Hands-on experience with AWS, Google Workspace, and common SaaS applications.
  • Experience with macOS endpoint security, including investigation workflows and EDR capabilities on Apple platforms.
  • Experience with bug bounty programs.
  • Experience with red team/blue team or purple team exercises.

Nice to have: Familiarity with FedRAMP requirements, particularly around incident reporting obligations, continuous monitoring, and evidence collection standards for FedRAMP-authorized environments.

What we'll offer

Our comprehensive compensation package plays a big part in how we recognize you for the impact you have on our path to achieving our mission. We believe that compensation should be reflective of the value you create relative to the market value of your role. To ensure pay is fair and not impacted by biases, we're committed to looking at market value, which is why we check ourselves and conduct a yearly pay equity audit.

For this role, the estimated base salary range is between $202,000 – $230,000. The actual base salary will vary based on various factors, including market and individual qualifications objectively assessed during the interview process. The listed range above is a guideline, and the base salary range for this role may be modified.

In addition to base salary, your compensation package may include additional components such as equity, and benefits. If you're interviewing for this role, speak with your Talent Acquisition Partner to learn more about the total compensation and benefits for this role.

We strive to provide equitable and competitive benefits packages that support our employees worldwide and include:

  • Mental health, wellness & fitness benefits
  • Career coaching & support
  • Inclusive family building benefits
  • Long-term savings or retirement plans
  • In-office culinary options to cater to your dietary preferences

These are just some of the benefits we offer, and benefits may vary based on role, country, and local regulations. If you're interviewing for this role, speak with your Talent Acquisition Partner to learn more about the total compensation and benefits for this role.

About us

Asana is a leading platform for human + AI collaboration. Millions of teams around the world rely on Asana to achieve their most important goals, faster. Asana has been named to Fortune's Best Workplaces for 7+ years and recognized by Fast Company, Forbes, and Gartner for excellence in workplace culture and innovation. We offer an exceptional office-centric culture while adopting the best elements of hybrid models to ensure that every one of our global team members can work together effortlessly. With 13+ offices all over the world, we are always looking for individuals who care about building technology that drives positive change in the world and a culture where everyone feels that they belong.

Vacancy posted 9 hours ago
Similar jobs that could be interesting for youBased on the Security Engineer, Threat Response in San Francisco, CA vacancy
  • $230k - $385k

     ...About the Team Security is at the foundation of OpenAI's mission...  ...About the Role As a Security Engineer you will join our OpenAI...  ...on all aspects of Detection & Response but with a strong emphasis on detecting insider threats and influencing controls to safeguard... 
    Suggested

    OpenAI

    San Francisco, CA
    4 days ago
  • Airwallex is seeking a Staff Corporate Security Engineer to defend enterprise systems against threats like malware and phishing. You will work on digital forensics, incident response, and security tool development to enhance corporate IT protection. The ideal candidate... 
    Suggested

    Airwallex-

    San Francisco, CA
    13 hours ago
  • A leading biotech AI platform in San Francisco is seeking a Security Response Engineer. In this role, you will investigate security events, create threat detections, and enhance incident response processes using your experience in digital forensics and incident response... 
    Suggested
    3 days per week

    Benchling

    San Francisco, CA
    1 day ago
  • $168k - $240k

     ...wide range of simple, reliable, and secure crypto products and services to individuals...  ...reach, and impact. The Department: Threat Detection & Response In the emerging industry of digital...  .... From security architecture and engineering to maintenance of cold storage systems... 
    Suggested
    Work at office
    Remote work
    Flexible hours

    Skydrop

    San Francisco, CA
    4 days ago
  • $234.4k - $385k

     ...About the Team Security is at the foundation of OpenAI's mission to ensure...  ...About the Role As a Security Engineer on Detection & Response, you'll help protect OpenAI's most sensitive...  ...ship with the right telemetry, threat models, and response playbooks from... 
    Suggested

    OpenAI

    San Francisco, CA
    13 hours ago
  •  ...work with AI. About the role Join WRITER's security team as a staff detection and response engineer and help protect the AI infrastructure that's transforming...  ...with strategic thinking to stay ahead of novel threats that don't exist in textbooks yet. You'll be the... 
    Full time
    Work at office
    Local area
    Flexible hours

    Writer Corporation

    San Francisco, CA
    2 days ago
  • $141.6k - $212.4k

     ...own destiny. Klaviyo is looking for a Senior Security Engineer to add to our growing Detection and Response (D&R) Team. This is a hands-on technical role that...  ...and response lifecycle and support with threat response operations. As a Senior Security Engineer... 

    Klaviyo

    San Francisco, CA
    3 days ago
  • $182k - $202k

     ...global leader in Continuous Threat Exposure Management (CTEM). The...  ...world's largest community of security researchers to continuously...  ...accountability. Senior Security Engineer, Detection and ResponseRemote...  ...rebuilding our Detection & Response function with an AI-first... 
    Apprenticeship
    Local area
    Remote work
    Flexible hours
    Shift work

    HackerOne

    San Francisco, CA
    3 days ago
  •  ...Security Engineer - Threat Intel New York City, NY; Remote-Friendly (Travel-Required) | San Francisco, CA | Washington, DC About Anthropic...  .... The Threat Intelligence function within our Detection & Response team exists to make sure we see them coming. As a Threat... 
    Work at office
    Remote work
    Visa sponsorship
    Flexible hours

    Anthropic

    San Francisco, CA
    13 hours ago
  • $139k - $204k

     ...Senior Security Engineer I, Advanced Response CoreWeave is The Essential Cloud for AI™. Built for pioneers by pioneers, CoreWeave delivers a platform...  ...the world's most demanding AI infrastructure — and threat actors know it. The Advanced Response Team exists to fight... 
    Temporary work
    Casual work
    Work at office
    Remote work
    Flexible hours

    CoreWeave

    San Francisco, CA
    2 days ago
  • $229k - $314.8k

     ...Databricks is seeking an exceptional and strategic Sr. Staff Security Engineer, Incident Response to join our Incident Response team. This pivotal role...  ..., efficiently, and standardly respond to security threats, incidents, and investigations to protect our customers,... 
    For contractors
    Remote work
    Worldwide

    Databricks

    San Francisco, CA
    1 day ago
  •  ...leading data and AI company is looking for a Sr. Staff Security Engineer, Incident Response to join its team. This critical role requires extensive...  ...The individual will lead investigations and establish a threat detection program while mentoring team members. The ideal... 
    Remote work

    Databricks

    San Francisco, CA
    1 day ago
  • $141.6k - $212.4k

    A dynamic tech company is seeking a Senior Security Engineer to join their Detection and Response Team. This hands-on role involves building secure detection systems, responding to security threats, and optimizing security logging data. The ideal candidate should have... 

    Klaviyo Inc.

    San Francisco, CA
    2 days ago
  • $139k - $204k

     ...powers the world's most demanding AI infrastructure — and threat actors know it. The Advanced Response Team exists to fight back. You'll lead our most...  ...the capabilities to stay left of boom Work alongside security partners who hold a high bar and expect you to raise it... 
    Permanent employment
    Temporary work
    Casual work
    Work at office
    Remote work
    Flexible hours

    CoreWeave

    San Francisco, CA
    18 days ago
  • A leading technology company is searching for a Staff Security Engineer to join the Detection and Response team in San Francisco. This role focuses on threat hunting and building AI-driven security solutions. Candidates should have extensive experience in security engineering... 

    Rippling

    San Francisco, CA
    13 hours ago
  • $189k - $330.75k

     ...be sent from Rippling.com addresses. About the role We are seeking a Staff Security Engineer to join our Detection and Response team (DART). This role is for a security engineer with deep threat hunting instincts and the engineering skills to build AI-driven solutions that... 
    Work at office
    3 days per week

    Rippling

    San Francisco, CA
    13 hours ago
  • Airwallex is hiring a Senior Security Engineer in San Francisco. This pivotal role involves collaborating with various teams on security measures...  ...security infrastructure, and responding to cybersecurity threats. Candidates should possess over 5 years of relevant... 
    Worldwide

    Airwallex

    San Francisco, CA
    4 days ago
  • $234.4k - $385k

     ...About the Team Security is at the foundation of OpenAI's mission to ensure...  ...the Role As a Security Engineer, Application Security you will be responsible for identifying and mitigating security...  ...applications against security threats. Collaborate with... 
    Work at office
    Remote work
    Relocation package

    OpenAI

    San Francisco, CA
    13 hours ago
  • $183k - $247.6k

     ...we now create comprehensive and secure solutions that serve both wireless...  ...the connected home. Key job responsibilities We are seeking a Senior Security Engineer to be embedded within the eero...  ...any combination of the following: threat modeling experience, secure... 
    Local area
    Worldwide
    Flexible hours

    Amazon

    San Francisco, CA
    1 day ago
  •  ...Cyber Threat Intelligence Analyst The Cyber Threat Intelligence Analyst will play a critical role...  ...detection and defense of cyber threats. Responsibilities include: Investigate, triage, and respond to security alerts and incidents in real time. Perform... 

    Control Risks

    San Francisco, CA
    3 days ago
  • $108k - $135k

     ...Cyber Security Threat Intelligence Analyst II At Early Warning, we've powered and protected...  ...is part of a high-performance team, responsible for monitoring and analyzing internal...  ...or 2 year degree in Computer Science, Engineering, Math or Physical Science. Minimum... 
    Hourly pay
    Work experience placement
    Work at office
    Immediate start
    Visa sponsorship
    Work visa
    Flexible hours

    Early Warning Services

    San Francisco, CA
    3 days ago
  •  ...Security Engineer Thunes Financial Services is hiring a Security Engineer to be the architect...  ...As a Security Engineer, you will be responsible for security across the full lifecycle...  ...to investigate and mitigate potential threats. Collaborate with: ~ Product... 

    Thunes

    San Francisco, CA
    3 days ago
  •  ...resource management-and change lives along the way. The Role As a Security Engineer at Air Apps, you will be responsible for safeguarding our applications, infrastructure, and data from threats and vulnerabilities. You will work closely with development, DevOps,... 
    Temporary work
    Worldwide

    Air Apps

    San Francisco, CA
    13 hours ago
  •  ...Security Engineer We are seeking a skilled and detail-oriented Security Engineer to join our...  ...team. The ideal candidate will be responsible for designing, implementing, monitoring...  ...networks, applications, and data from cyber threats and vulnerabilities. The candidate... 
    Immediate start

    InterScripts, Inc.

    Daly City, CA
    1 day ago
  •  ...monitoring platform for AI agents. Engineering teams at some of the fastest...  ...) and more. Your Focus Secure the platform end-to-end from application...  ...of requests per day Conduct threat modeling, security audits, and incident response Communicate directly with our... 

    Raindrop

    San Francisco, CA
    3 days ago
  •  ...California. Summary The IT Security Engineer performs core security functions for...  ...5, Sentinel) Essential Duties and Responsibilities Participate in the planning...  ...the development of new attacks and threat vectors. Recommend additional security... 
    Work experience placement
    Work at office
    Local area
    Remote work
    Work from home
    Home office
    Work visa
    Relocation package

    Workers' Compensation Insurance Rating Bureau of California

    San Francisco, CA
    3 days ago
  •  ...About the Role Your job will be to secure the infrastructure where billions of AI...  ...execute untrusted code daily. You'll be responsible for protecting companies' most sensitive...  ...infrastructure, implementing real-time threat detection across tens of thousands of concurrent... 
    Work from home

    E2B

    San Francisco, CA
    1 day ago
  •  ...Security Engineer, Bridge Bridge is Stripe's fintech innovation hub focused on building a modern...  ...solutions where it doesn't. Lead threat modeling and hardening efforts for Bridge...  ..., secrets management, incident response, access controls, CI/CD hardening, etc)... 
    Full time
    Work at office
    Remote work

    Stripe

    San Francisco, CA
    1 day ago
  • $153k - $376k

     ...and collaboration, join us! As a Security Engineer you will identify and drive impactful...  ...participate in operational security responsibilities like security reviews, consulting, vulnerability...  ...and corporate security threats. Product Security Perform technical... 
    Full time
    Remote work
    Work from home

    Figma

    San Francisco, CA
    3 days ago
  • $260k - $300k

     ...Devin, the first AI software engineer, and Windsurf, an AI-native IDE...  ...others. Role Mission Security Engineers at Cognition own...  ...infrastructure security: Lead threat modeling, secure design...  ...team ships. Lead incident response and detection: Build the detection... 

    Cognition Corp

    San Francisco, CA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Engineer, Threat Response. Be the first to apply!