GrepJob
Asana

Application Security Engineer

Asana
Apply
1 day ago
Warsaw, PolandSenior
H1B Sponsor

Responsibilities

  • Conduct security architecture reviews and threat modeling for new features and services.
  • Perform vulnerability assessments of software and systems to identify security weaknesses.
  • Triage and investigate vulnerabilities from the bug bounty program and automated security tools.
  • Influence engineering initiatives by communicating security constraints and assisting teams.
  • Investigate product security incidents and assess scope, impact, and root cause.
  • Develop and deliver training on secure coding best practices and emerging threats.
  • Collaborate with stakeholders to develop strategies for risk management and security maturity.

Requirements

  • 5+ years of experience in application security, product security, or software engineering with a security focus.
  • Strong software engineering background with experience in Python, JavaScript/TypeScript, or Scala.
  • Deep knowledge of the OWASP Top 10 and common web application vulnerabilities.
  • Experience with security tools for static/dynamic analysis and vulnerability management.
  • Proven experience in security design reviews and threat modeling for complex applications.
  • Excellent communication skills for collaborating with technical and non-technical partners.
  • A pragmatic and collaborative mindset with a passion for secure software development.

Benefits

  • Generous and transparent compensation system including base salary and RSUs.
  • Health insurance with dental and travel coverage.
  • Breakfast and lunch catering on in-office workdays.
  • Career growth budget and home office setup budget.
  • Gym/Fitness card and mental health support.
  • Group life insurance and fertility healthcare support.

Categories