Group Tech Lead, Security Operations

Asana

Warszawa

On-site

PLN 390,600 - 580,320

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health insurance
Breakfast and lunch at office
Vacation allowance
Career growth budget
MacBooks with accessories
Gym/Fitness card
Home office setup budget

Job summary

Asana is seeking a(Group Tech Lead) to drive the security purple team, uniting offensive and defensive strategies in Warsaw. You will shape the threat ops program, leveraging threat intelligence to enhance detection, response, and automation across our cloud-native environment.

The role requires 8+ years in security with 3+ years of senior leadership, strong SIEM/EDR expertise, and proficiency in Python/PowerShell.

Qualifications

  • 8+ years in security operations, threat detection and response, with 3+ years in senior technical leadership.
  • Deep expertise across red and blue team disciplines and proven experience leading purple team/ threat ops at scale.
  • Strong knowledge of MITRE ATT&CK, SIEM/EDR tech, and security automation.

Responsibilities

  • Define and own the technical strategy for a fully integrated purple team function bridging offensive and defensive arms into a cohesive program.
  • Design and implement adversary emulation programs based on threat intel, improving blue team playbooks and incident response.
  • Lead security maturity initiatives aligned to NIST CSF, ISO 27001, SOC 2 and MITRE ATT&CK maturity levels.
  • Own end-to-end incident response lifecycle, runbooks, and post-incident reviews.
  • Design comprehensive vulnerability management and automation to reduce toil and improve coverage.

Skills

Security operations
Threat detection & response
Offensive security
Purple team leadership
SIEM tools
EDR tools
MITRE ATT&CK
Scripting (Python/PowerShell)
SOAR platforms
NIST CSF / ISO 27001 familiarity

Tools

Panther SIEM
Splunk
Elastic Security
CrowdStrike
SentinelOne

Job description

At Asana, security is foundational to our mission of helping humanity thrive by enabling the world's teams to work together effortlessly. Our security team protects Asana's employees, users, and customers by proactively addressing threats and fostering a culture of security throughout our product and operations. We are looking for a collaborative, innovative Group Tech Lead to join our security organization in Warsaw. This is a senior technical leadership role that sits at the intersection of offensive and defensive security — a true purple team visionary who will design and drive Asana's threat operations strategy from the ground up. You will set the long‑term technical direction for how we detect, emulate, respond to, and continuously improve our defences against real‑world adversaries.

This role is based in our Warsaw office with an office‑centric hybrid schedule. The standard in‑office days are Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. Working from home on Fridays depends on the type of work you do, and your recruiter can share more about the in‑office
requirements. We offer a Contract of Employment (UoP) for our employees in Poland.

What you’ll achieve
  • Purple Team Strategy & Technical Leadership: Define and own the technical strategy for a fully integrated purple team function, bridging offensive (red team) and defensive (blue team) capabilities into a cohesive, intelligence‑driven program.
  • Adversary Emulation: Design and implement a structured adversary emulation programme based on real threat intelligence, ensuring red team exercises directly improve blue team detection and response playbooks while establishing continuous feedback loops.
  • Security Maturity & Industry Standards: Lead Asana's security maturity journey, defining a roadmap that progressively advances capabilities toward frameworks and standards such as NIST CSF, ISO 27001, SOC 2, and MITRE ATT&CK maturity levels.
  • Lifecycle Management: Develop, own, and continuously improve the end‑to‑end incident response lifecycle, including policies, playbooks, runbooks, and post‑incident review processes.
  • Vulnerability Operations: Design and implement a comprehensive vulnerability management program covering discovery, risk‑based prioritization, SLA tracking, and remediation validation.
  • Process Design & Operational Excellence: Architect scalable security operations processes that reduce manual toil through automation and orchestration, enabling the team to operate at high velocity without sacrificing quality.
  • Detection Engineering: Build and standardize detection engineering workflows, ensuring threat detections are systematically developed, tested, tuned, and retired in alignment with the current threat landscape.
  • AI‑Driven Innovation: Identify, evaluate, and implement AI and machine learning capabilities to enhance the speed, accuracy, and coverage of threat detection, automated alert triage, root cause analysis, and incident summarization.
  • Organizational Leadership & Enablement: Provide technical mentorship to security engineers across red and blue team disciplines, integrate security best practices into cross‑functional development pipelines, and deliver advanced training program.
About you
  • 8+ years of progressive experience in security operations, threat detection and response, or offensive security, with at least 3 years in a senior technical leadership or principal engineering role.
  • Deep technical expertise across both red and blue team disciplines, with a proven track record of designing and leading a purple team or integrated threat operations programme at scale.
  • Strong command of SIEM platforms (e.g., Panther, Splunk, Elastic Security) for detection engineering, advanced log correlation, and extensive knowledge of EDR platforms (e.g., CrowdStrike, SentinelOne) for proactive threat hunting.
  • Expert‑level familiarity with operationalizing adversary emulation frameworks (such as MITRE ATT&CK) and handling forensic analysis during complex incident investigations in large cloud‑native environments.
  • Strong engineering and automation background utilizing scripting languages (e.g., Python, PowerShell) paired with exposure to SOAR platforms.
  • Strategic capability to translate business risk into a technical roadmap aligned to NIST CSF, ISO 27001, or SOC2 standards, combined with strong technical process design skills.
  • Excellent communication and collaborative skills, with a track record of building cross‑functional trust and explaining complex threat concepts clearly to engineering, product, legal, and executive teams alike.
  • Demonstrates curiosity about AI tools and emerging technologies, with a willingness to learn and leverage them to enhance productivity, collaboration, or decision‑making.

At Asana, we're committed to building teams that include a variety of backgrounds, perspectives, and skills, as this is critical to helping us achieve our mission. If you're interested in this role and don't meet every listed requirement, we still encourage you to apply.

What we’ll offer
  • Generous, transparent and fair compensation system (base salary and RSUs).
  • Contract of Employment (and the option of 50% tax deductible costs for author’s rights usage in respect of applicable roles).
  • Health insurance with dental and travel coverage (Lux Med).
  • Breakfast and lunch catering on the days that you work from the office.
  • Vacation allowance.
  • Career growth budget.
  • Home office setup budget.
  • Gym/Fitness card.
  • Fertility healthcare and family‑forming support with Carrot.
  • Mental Health Support in Modern Health.
  • Group life insurance.
  • MacBooks with all necessary accessories.

For this role, the estimated base salary range is between 35,000 – 52,000 PLN gross per month (subject to all taxes and necessary deductions). The actual base salary will vary based on various factors, including market and individual qualifications objectively assessed during the interview process. The listed range above is a guideline, and the base salary range for this role may be modified. In addition to base salary, your compensation package may include additional components such as equity and sales incentive pay (for most sales roles), and benefits. If you're interviewing for this role, speak with your recruiter to learn more about the total compensation and benefits for this role.

About us

Asana is a leading platform for human & AI collaboration. Millions of teams around the world rely on Asana to achieve their most important goals, faster. Asana has been named to Fortune's Best Workplaces for 7+ years and recognized by Fast Company, Forbes, and Gartner for excellence in workplace culture and innovation. We offer an exceptional office‑centric culture while adopting the best elements of hybrid models to ensure that every one of our global team members can work together effortlessly. With 13+ offices all over the world, we are always looking for individuals who care about building technology that drives positive change in the world and a culture where everyone feels that they belong.

Join Asana’s Talent Network

to stay up to date on job opportunities and life at Asana.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Group Tech Lead, Security Threat Operations & Response Management Warsaw
Group Tech Lead, Security Threat Operations & Response Management Warsaw

Asana • Warszawa

Hybrid
Health insurance
Breakfast and lunch catering
Career growth budget
+2
Group Tech Lead, Security Operations
Group Tech Lead, Security Operations

Asana • Warszawa

Hybrid
Health insurance
Breakfast and lunch catering
Vacation allowance
+4
Security Engineer, Threat Response
Security Engineer, Threat Response

Decisive Point • Warszawa

Hybrid
Health insurance
Breakfast and lunch catering
Career growth budget
+2
Manager, Offensive Security
Manager, Offensive Security

Decisive Point • Warszawa

Hybrid
PLN 485,000 - 552,000
Generous compensation package
Office-centric hybrid schedule
Health insurance
+3
Security Engineer, Threat Response Warsaw
Security Engineer, Threat Response Warsaw

Asana • Warszawa

Hybrid
Health insurance
Breakfast and lunch catering
Vacation allowance
+6
Manager, Offensive Security Warsaw
Manager, Offensive Security Warsaw

Asana • Warszawa

Hybrid
Health insurance
Career growth budget
MacBooks with accessories
Security Engineer, Threat Response
Security Engineer, Threat Response

Asana • Warszawa

Hybrid
Health insurance
Breakfast and lunch catering
Career growth budget
+3
Application Security Engineer
Application Security Engineer

Asana • Warszawa

Hybrid
Health insurance
Meal allowances
Office-centric hybrid schedule
+1
Application Security Engineer
Application Security Engineer

Decisive Point • Warszawa

On-site
PLN 356,000 - 405,000
Health insurance
Breakfast and lunch catering
Career growth budget
+5
Security Risk and Compliance Lead Warsaw
Security Risk and Compliance Lead Warsaw

Asana • Warszawa

Hybrid
PLN 254,000 - 304,000
Health insurance (Lux Med)
Meals reimbursement on office days
Career growth budget
+3