Greenhouse ·
contractStaff Detection Engineer
Asana · Warsaw
Our Security team keeps Asana's employees, users, and customers safe by proactively addressing threats and fostering a culture of security across our product and operations. We're looking for a Staff Detection Engineer to join our Threat Response team in our Warsaw innovation hub. You'll own how we find threats: the detection logic, the telemetry it runs on, and the pipeline that ships it. Detection here is software. Rules are written as code, tested against real and synthetic attacker behavior, reviewed in pull requests, and deployed through CI/CD. You'll partner with our incident responders, infrastructure, and product teams to make sure that when something bad happens, we see it fast and with high signal. We offer a Contract of Employment (UoP) for our employees in Poland. What you'll achieve Design, build, and maintain high-fidelity detections across cloud infrastructure (AWS/GCP), identity providers (e.g., Okta), SaaS environments, endpoints, and the software supply chain. Own our detection-as-code pipeline in Panther: rule structure, unit and integration tests, review standards, and CI/CD deployment, so detection logic is treated as production code. Map and close coverage gaps against MITRE ATT&CK and the threat model for our environment, prioritizing the techniques most likely to be used against a SaaS company. Onboard and normalize new telemetry sources , working with infrastructure and IT to make sure the right logs exist, are complete, and are queryable. Measure and improve alert quality , tracking precision, time-to-triage, and false-positive rates, and tuning or retiring detections that don't earn their keep. Validate detections against real attacker behavior through purple-team exercises, atomic tests, and emulation, and feed findings back into rule development. Turn incidents and threat intelligence into detections , partnering with incident responders to convert lessons learned and emerging TTPs into durable coverage. Build enrichment and automation in our SOAR platform so alerts arrive with the context responders need to act. About you 8+ years in detection engineering, security operations, or threat hunting , with a track record of building detections that responders actually trust. Strong Python skills , with hands-on experience in Git workflows, PR-based code review, automated testing, and CI/CD. Go, Bash, or JavaScript/TypeScript is a plus. Deep experience with detection-as-code , including test-driven detection logic, rule lifecycle management, and deploying rules through CI/CD pipelines. Strong experience with SIEM platforms (e.g., Panther, Splunk, Elastic Security), including query languages, log schemas, and correlation. Deep understanding of cloud and identity telemetry , such as AWS, GCP audit logs, Okta system logs, and SaaS audit APIs, and what attacker activity looks like in each. Working knowledge of EDR tools (e.g., CrowdStrike, SentinelOne) and endpoint telemetry. Fluency with attacker TTPs and MITRE ATT&CK, and experience using it to drive coverage decisions rather than as a checklist. Collaborative and pragmatic mindset , with strong communication across technical and non-technical partners, and an instinct for reducing noise rather than adding to it. Demonstrated curiosity about AI tools and emerging technologies, with willingness to learn and leverage them to enhance productivity, collaboration, or decision-making. Nice to have Experience detecting software supply chain and CI/CD threats , including anomalous behavior in build systems and developer ecosystems (e.g., npm, PyPI, GitHub Actions). Experience with adversary emulation frameworks (e.g., Atomic Red Team, Caldera) or running purple-team exercises. Experience with data engineering for security , such as log pipelines, schema design, or cost optimization for high-volume telemetry. What we offer Generous, transparent and fair compensation system (base salary and RSUs). Contract of Employment (and the option of 50% tax deductible costs for author’s rights usage in respect of applicable roles). Health insurance with dental and travel coverage (Lux Med). Breakfast and lunch catering on the days that you work from the office. Vacation allowance. Career growth budget. Home office setup budget. Gym/Fitness card. Fertility healthcare and family-forming support with Carrot. Mental Health Support in Modern Health. Group life insurance. MacBooks with all necessary accessories For this role, the estimated base salary range is between 40 000 - 45 000 PLN gross per month (subject to all taxes and necessary deductions). The actual base salary will vary based on various factors, including market and individual qualifications objectively assessed during the interview process. The listed range above is a guideline, and the base salary range for this role may be modified. In addition to base salary, your compensation package may include additional components such as equity and sales incentive pay (for most sales roles), and benefits.
| Role | Staff Detection Engineer |
|---|---|
| Company | Asana |
| Location | Warsaw |
| Compensation | Not disclosed |
| Posted | 2026-09-29 |
| Deadline | Rolling |
Typical process for this type of role
A general guide — the exact steps for this specific listing may vary; check the original posting for details.
- 1ApplicationSubmit your resume through the apply link.
- 2ScreeningRecruiter reviews your background against the role.
- 3AssessmentA technical test, assignment, or coding round, depending on the role.
- 4Interview(s)One or more rounds with the hiring team.
- 5OfferOffer letter with compensation and start date.
Before you apply
0/4About Asana
Asana is an operating system designed for human-agent teams to manage critical workflows. Founded in 2008, the platform utilizes the Asana Work Graph, a system that connects tasks, projects, goals, and dependencies to provide a shared context for both human users and AI agents. The software enables teams to collaborate within a shared space, utilizing shared memory to improve workflows over time while maintaining enterprise-grade governance, including audit trails and scoped permissions. Asana serves a wide range of organizations, including 85% of Fortune 100 companies, by providing tools for project management, compliance, portfolio monitoring, and cross-functional alignment. The platform is designed to help teams coordinate work, reduce time spent on status updates, and integrate AI agents directly into existing business processes.
More at Asana
Other jobs at Asana
- Head Of Research · San Francisco
- Enterprise Account Executive, Federal Civilian · US DC - Remote
- Designated Support Engineer · Dublin
- Emerging Enterprise Account Executive, Nonprofit · San Francisco
- Senior Product Manager, AI Studio · San Francisco
Explore Related Placements
// similar opportunities
You might also like
Staff Design Engineer
Mixpanel
About Mixpanel Mixpanel is the leading product intelligence and analytics platform, trusted by more than 29,000 companies to help understand how people use the ...
Staff Frontend Engineer
Gitlab
GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency,...
0-1 year experience eligible.
Senior Security Engineer, Detection & Response
Flexport
About Flexport: At Flexport, we believe global trade can move the human race forward. That’s why it’s our mission to make global commerce so easy there will be ...
Staff Data Infrastructure Engineer
Faire
About Faire Faire is a technology wholesale platform built on the belief that the future is local. Independent retailers around the globe collectively represent...
Staff Software Engineer - NLP
Gitlab
GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency,...
0-1 year experience eligible.
Senior Software Engineer, Data Foundation
Mixpanel
About Mixpanel Mixpanel is the leading product intelligence and analytics platform, trusted by more than 29,000 companies to help understand how people use the ...