Manager, Offensive Security at Asana
- Company: Asana
- Location: Warsaw
- Employment type: full-time
- Posted: 2026-08-28
<p><span data-path-to-node="4,0">The Security team is responsible for protecting Asana’s employees, users, and customers<span data-path-to-node="4,2">. We are a team of security engineers and risk and compliance practitioners who build innovative safeguards to ensure that our data is protected against threats and that we comply with legal, regulatory, and customer requirements</span><span data-path-to-node="4,4">. We collaborate closely with teams across the organization to foster a culture of security throughout our product and operations</span><span data-path-to-node="4,6">. We're looking for a Manager of Offensive Security to lead our Offensive Security function in Warsaw</span><span data-path-to-node="4,8">. In this role, you will own and grow a team spanning red team operations, application security, and vulnerability management, driving both the strategic direction and the hands-on execution of our offensive security program</span><span data-path-to-node="4,10">. You will work directly with engineering leadership, legal, and senior stakeholders to ensure our security posture is contin<span class="citation-1658 citation-1659 citation-end-1659">uously tested, measured, and improved</span></span></span><span data-path-to-node="4,0"><span data-path-to-node="4,12"><span class="citation-1656 citation-1657 citation-end-1657">.</span></span></span></p> <p id="p-rc_ce5dfecf57c71813-309" data-path-to-node="5">This role is based in our Warsaw office with an office-centric hybrid schedule. The standard in-office days are&nbsp;Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. Working from home on Fridays depends on the type of work you do, and your recruiter can share more about the in-office&nbsp;requirements.&nbsp;We offer a Contract of Employment (UoP) for our employees in Poland.</p> <p id="p-rc_ce5dfecf57c71813-310" data-path-to-node="7"></p> <h3 data-path-to-node="8">What you’ll achieve</h3> <ul data-path-to-node="9"> <li> <p id="p-rc_ce5dfecf57c71813-311" data-path-to-node="9,0,0"><span data-path-to-node="9,0,0,0">Lead, grow, and mentor a team of offensive security engineers across red team, application security, and vulnerability management disciplines while staying actively engaged in day-to-day technical operations</span><span data-path-to-node="9,0,0,2">.</span></p> </li> <li> <p id="p-rc_ce5dfecf57c71813-312" data-path-to-node="9,1,0"><span data-path-to-node="9,1,0,0">Define team roadmap, OKRs, and priorities in alignment with broader security and engineering strategy</span><span data-path-to-node="9,1,0,2">.</span></p> </li> <li> <p id="p-rc_ce5dfecf57c71813-313" data-path-to-node="9,2,0"><span data-path-to-node="9,2,0,0">Foster a culture of technical excellence, continuous learning, and psychological safety within the team, partnering with recruiting to scale the team</span><span data-path-to-node="9,2,0,2">.</span></p> </li> <li> <p id="p-rc_ce5dfecf57c71813-314" data-path-to-node="9,3,0"><span data-path-to-node="9,3,0,0">Plan and execute red team operations and adversary simulation exercises across Asana's infrastructure, products, and corporate environment</span><span data-path-to-node="9,3,0,2">.</span></p> </li> <li> <p id="p-rc_ce5dfecf57c71813-315" data-path-to-node="9,4,0"><span data-path-to-node="9,4,0,0">Perform cloud security assessments evaluating misconfigurations, privilege escalation paths, and lateral movement opportunities</span><span data-path-to-node="9,4,0,2">.</span></p> </li> <li> <p id="p-rc_ce5dfecf57c71813-316" data-path-to-node="9,5,0"><span data-path-to-node="9,5,0,0">Develop and maintain red team tooling, TTPs, and playbooks aligned with current threat actor behaviors</span><span data-path-to-node="9,5,0,2">.</span></p> </li> <li> <p id="p-rc_ce5dfecf57c71813-317" data-path-to-node="9,6,0"><span data-path-to-node="9,6,0,0">Oversee security architecture reviews and threat modeling for new features and services, ensuring risks are identified early and secure design decisions are made</span><span data-path-to-node
Apply for this Manager, Offensive Security role
More jobs at Asana
- Product Marketing Director, Command by Asana — New York City
- Product Marketing Director, Command by Asana — Vancouver, BC
- Product Marketing Director, Command by Asana — San Francisco
- Strategic Enterprise Account Executive, Amazon — New York City
- Strategic Enterprise Account Executive, Amazon — US WA Seattle - Remote
- Forward Deployed Engineer, Command by Asana — New York City
- Security Risk Manager — San Francisco
- Application Security Engineer — Warsaw