Group Tech Lead, Security Operations
Asana- Base salary
- $35k–$52k Published base salary range
- Location
- Hybrid - Warsaw, Poland (Mon, Tue, Thu in office) Remote eligibility
- Employment
- Full-time Lead / Manager
Role skills
Apply on asana.com
About the job
About the role
Asana is seeking a Group Tech Lead, Security Operations to join our security organization in Warsaw. This senior technical leadership role sits at the intersection of offensive and defensive security, designing and driving Asana's threat operations strategy. You will set the long-term technical direction for detection, emulation, response, and continuous improvement against real-world adversaries.
Responsibilities
- Define and own the technical strategy for a fully integrated purple team function, bridging red and blue team capabilities.
- Design and implement a structured adversary emulation programme based on threat intelligence.
- Lead security maturity journey toward frameworks like NIST CSF, ISO 27001, SOC 2, and MITRE ATT&CK.
- Develop and improve the end-to-end incident response lifecycle.
- Design and implement a comprehensive vulnerability management program.
- Architect scalable security operations processes with automation and orchestration.
- Build and standardize detection engineering workflows.
- Identify and implement AI and machine learning capabilities for threat detection and incident summarization.
- Provide technical mentorship to security engineers and integrate best practices into development pipelines.
Qualifications
- 8+ years of progressive experience in security operations, threat detection and response, or offensive security, with at least 3 years in a senior technical leadership or principal engineering role.
- Deep expertise across red and blue team disciplines, with a track record of leading a purple team or integrated threat operations programme at scale.
- Strong command of SIEM platforms (e.g., Panther, Splunk, Elastic Security) and EDR platforms (e.g., CrowdStrike, SentinelOne).
- Expert-level familiarity with adversary emulation frameworks (e.g., MITRE ATT&CK) and forensic analysis in cloud-native environments.
- Strong engineering and automation background with scripting languages (e.g., Python, PowerShell) and SOAR platforms.
- Strategic capability to translate business risk into a technical roadmap aligned to NIST CSF, ISO 27001, or SOC 2.
- Excellent communication and collaboration skills.
Compensation
The estimated base salary range is 35,000 – 52,000 PLN gross per month, plus equity (RSUs) and benefits.
Benefits
- Health insurance with dental and travel coverage (Lux Med)
- Breakfast and lunch catering on office days
- Vacation allowance
- Career growth budget
- Home office setup budget
- Gym/Fitness card
- Fertility healthcare and family-forming support (Carrot)
- Mental Health Support (Modern Health)
- Group life insurance
- MacBooks and accessories
Skills & tags
What you can verify before applying
Compare the essentials before you leave: pay, remote scope, employment type, source, and the employer apply destination.