Search suggestions:

praca zdalna
praca
praca od zaraz
zdalna
operator wózka widłowego
księgowa
praca biurowa
język niemieckim
hr
kierowca kat b
urząd pracy
dam pracę
kasjer sprzedawca
powiat lubelski
województwo śląskie
województwo dolnośląskie
Warsaw
Wrocław
województwo mazowieckie
Olsztyn
Gliwice
powiat pruszkowski
województwo lubuskie
powiat zgierski
Gdańsk

Security Engineer, Application Security

Asana
Warsaw, województwo mazowieckie
1 dzień temu

At Asana, security is foundational to our mission of helping humanity thrive by enabling the world's teams to work together effortlessly. Our security team protects Asana's employees, users, and customers by proactively addressing threats and fostering a culture of security throughout our product and operations.

We're looking for an Application Security Engineer to join our Security red team in Warsaw. You'll be a foundational member of the security presence in a key engineering hub, partnering directly with IT, infrastructure, and product teams to ensure we design and ship secure software. You will be instrumental in scaling our security practices by performing security reviews and penetration testing assessments of our products and internal applications, eliminating entire classes of vulnerabilities, and championing a security-first mindset.

This role is based in our Warsaw office with an office-centric hybrid schedule. The standard in-office days are Monday, Tuesday, and Thursday.

We offer a Contract of Employment (UoP) for our employees in Poland

What you'll achieve:

  • Conduct security architecture reviews, threat modeling, and penetration testing for new features and services across our product and internal applications.
  • Test software for application security vulnerabilities through various assessment methodologies, including penetration testing.
  • Triage, investigate, and drive remediation of vulnerabilities from our bug bounty program, internal penetration tests, and automated security tooling.
  • Influence engineering initiatives by conducting design and roadmap reviews, effectively communicating security constraints, and assisting teams in making informed trade-offs.
  • Investigate product security incidents as an incident subject matter expert, using logs and monitoring tools.
  • Develop and deliver training to educate engineers on secure coding best practices and emerging threats.
  • Stay informed of industry trends, emerging threats, and best practices to ensure that Asana's security posture remains robust.
  • Collaborate with teammates and stakeholders to develop both short-term and long-term strategies for risk management.
  • Join a collaborative Security team composed of specialists in product, application, software engineering, infrastructure and detection and response, all working together to help engineering teams design and ship secure software.

About you:

  • 5+ years of experience in application security, product security, or software engineering with a security focus, with significant experience in security reviews and penetration testing.
  • Strong software engineering background with experience in languages like Python, Javascript/Typescript or Scala
  • Deep working knowledge of the OWASP Top 10 and common web application vulnerabilities such as XSS, CSRF, SSRF, and SQL injection
  • Experience with security tools for static/dynamic analysis (SAST/DAST), software composition analysis (SCA), and vulnerability management.
  • Proven experience performing security design reviews and threat modeling for complex applications, as well as conducting comprehensive penetration tests.
  • Excelling communication skills for collaborating effectively with both technical and non-technical partners.
  • A pragmatic and collaborative mindset, with a passion for building defenses against real-world attacks and enabling other engineers to do their best, most secure work.
  • Demonstrates curiosity about AI tools and emerging technologies, with a willingness to learn and leverage them to enhance productivity, collaboration, or decision-making.

What we offer:

  • Generous, transparent and fair compensation system (base salary and generous Restricted Stock Unit for Asana Inc.)
  • Contract of Employment (with 50% tax deductible costs for author's rights usage for Engineers)
  • Health insurance with dental and travel coverage (Lux Med)
  • Lunch catering on the days that you work from the office
  • Career growth budget
  • Home office setup budget
  • Gym/Fitness reimbursement
  • Fertility healthcare and family-forming support with Carrot
  • Mental health support in Modern Health
  • Group life insurance
  • MacBooks with all necessary accessories

For this role, the estimated base salary range is between 25,604 - 35,854 PLN gross monthly on the contract of employment (UoP). The actual base salary will vary based on various factors and individual qualifications objectively assessed during the interview process. The listed range above is a guideline, and the base compensation range for this role may be modified.

Our total compensation consists of base salary and equity (RSUs).

About us

Asana helps teams orchestrate their work, from small projects to strategic initiatives. Millions of teams around the world rely on Asana to achieve their most important goals faster. Asana has been named a Top 10 Best Workplace for 5 years in a row, is Fortune's #1 Best Workplace in the Bay Area, and one of Glassdoor's and Inc.'s Best Places to Work. After spending more than a year physically distanced, Team Asana is safely and mindfully returning to in-person collaboration, incorporating flexibility that adds hybrid elements to our office-centric culture. With 11+ offices all over the world, we are always looking for individuals who care about building technology that drives positive change in the world.

We believe in supporting people to do their best work and thrive. Our goal is to ensure that Asana upholds an environment where all people feel that they are respected and valued, whether they are applying for an open position or working at the company. We provide equal employment opportunities to all applicants without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by law. We also comply with the San Francisco Fair Chance Ordinance and similar laws in other locations.

#appsec #securityengineer #LI-Hybrid

Apply
Save
Report job
Other Job Recommendations:

Security Engineer

SoftSwiss
Warsaw, województwo mazowieckie
  • Support and develop the current IAM solution (Keycloak) as...
  • Support and develop the PAM solution (Teleport) as the main...
3 tygodnie temu

Senior DevOps / Cloud Security Engineer

Visa
Warszawa, województwo mazowieckie
  • Support the development and implementation of cloud security...
  • Design and build automation scripts and tools to enhance...
4 dni temu

Cloud Security Engineer

Visa
Warszawa, województwo mazowieckie
  • Support the development and implementation of cloud security...
  • Design and build automation scripts and tools to enhance...
4 dni temu

DevOps Engineer - Cloud Security

Dabster Pvt Ltd
Warsaw, województwo mazowieckie
17 000 zł - 18 000 zł
DevOps Engineer - Cloud Security Responsibilities: - Deploy, manage and improve internal container registry - Build automations...
4 tygodnie temu

Junior Security Analyst in ING Hubs Spain

ING
Katowice, województwo śląskie
  • Have analytical thinking skills,
  • Are interested in the personal development within the IT...
1 dzień temu

Senior Security Engineer (Security Architect)

Moderna
Warsaw, województwo mazowieckie
  • Lead risk assessments across on-premise and cloud...
  • Enhance Moderna’s network security posture, procedures, and...
1 tydzień temu

Senior Software Engineer, ChromeOS, Security

Google
Krakow, województwo małopolskie
Google's software engineers develop the next-generation technologies that change how billions of users connect, explore, and...
3 tygodnie temu

Security & QA Technology Specialist

HEINEKEN
Krakow, województwo małopolskie
  • supporting Supply Chain Connected Brewery Product Teams,...
  • supporting Global Functions with the selection, design and...
2 tygodnie temu

Technical Security Manager

DP World
województwo łódzkie
  • Provide Technical Security expertise and support in region...
  • Manage all aspects of project management for the assigned...
3 tygodnie temu

Chief Information Security Officer

Volue
Gdańsk, województwo pomorskie
  • Foster a culture of information security awareness across...
  • Collaborate with the CTO to ensure secure software...
2 tygodnie temu