Group Tech Lead, Security Operations
Tech Stack / Keywords
Firma i stanowisko
Asana is hiring a Group Tech Lead for their security organization in Warsaw, focused on building and leading a purple team that integrates offensive and defensive security operations. The role involves setting the long-term strategy for threat detection, adversary emulation, incident response, vulnerability management, and security automation aligned with standards such as NIST CSF, ISO 27001, and SOC 2.
Wymagania
- 8+ years of progressive experience in security operations, threat detection/response or offensive security; at least 3 years in senior technical leadership or principal engineering roles.
- Deep expertise across red and blue team disciplines; proven track record in leading purple teams or integrated threat operations.
- Strong command of SIEM platforms such as Panther, Splunk, Elastic Security.
- Extensive knowledge of EDR platforms like CrowdStrike and SentinelOne for proactive threat hunting.
- Expert in operationalizing adversary emulation frameworks including MITRE ATT&CK.
- Skilled in forensic analysis for complex incident investigations in large cloud-native environments.
- Engineering and automation background using scripting languages including Python, PowerShell.
- Exposure to SOAR platforms.
- Ability to translate business risk into technical roadmaps aligned with NIST CSF, ISO 27001, SOC 2.
- Excellent communication and collaboration skills across cross-functional teams.
- Interest in AI tools and emerging technologies to enhance productivity and decision-making.
Obowiązki
Purple Team Strategy:
- Define and own the technical strategy for an integrated purple team function.
- Design and implement adversary emulation programs based on real threat intelligence.
Security Maturity & Standards:
- Lead security maturity journey aligned with NIST CSF, ISO 27001, SOC 2, and MITRE ATT&CK.
Incident Response & Vulnerability Management:
- Develop and improve incident response lifecycle including policies and playbooks.
- Design and manage comprehensive vulnerability management programs.
Security Operations & Automation:
- Architect scalable security operations processes with automation and orchestration.
- Standardize detection engineering workflows aligned with current threat landscape.
AI Integration:
- Identify and implement AI/ML capabilities to enhance threat detection and incident handling.
Mentorship & Training:
- Provide technical mentorship to security engineers across red and blue team disciplines.
- Integrate security best practices into development pipelines and deliver advanced training.
Benefity
- Generous, transparent compensation including base salary and RSUs.
- Contract of Employment (UoP) with option of 50% tax deductible authorship costs.
- Health insurance including dental and travel coverage (Lux Med).
- Breakfast and lunch catered on office days.
- Vacation allowance.
- Career growth budget.
- Home office setup budget.
- Gym/Fitness card.
- Fertility healthcare and family formation support with Carrot.
- Mental health support through Modern Health.
- Group life insurance.
- Provided MacBooks with accessories.
- Private healthcare.
- Mental health care.
- Sport subscription.
- Training budget including in-house trainings.
- Coaching.
- Long-term savings or retirement plans.
- Free coffee, beverages, snacks, breakfast, and lunch.
- Canteen and in-office culinary options.
- Modern office with shower and bike parking.
- No dress code.
- Startup atmosphere.
- In-house hack days.
Inne informacje
This role is based in Warsaw office with an office-centric hybrid schedule requiring presence on Monday, Tuesday, and Thursday; optional work from home on Wednesdays; work from home on Fridays depends on work type. Employment offered via Contract of Employment (UoP).
Asana
56 aktywnych ofert