Asana

Director of Security Engineering

Asana$306K — $360K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years in security and software engineering, with 3+ years in management.
  • Strong software engineering background for in-depth design reviews and architecture guidance.
  • Expertise in application security, cloud-native architecture, and identity frameworks (OWASP, OAuth, OIDC, SAML).
  • Hands-on experience with AWS or similar cloud environments on a large scale.
  • Ability to navigate the balance between security needs and business goals, communicating effectively with stakeholders.
  • Track record of implementing automation to enhance security processes and tools.
  • Fluency in AI tools and understanding their security implications.

Responsibilities

  • Build security into Asana's products and infrastructure from the ground up.
  • Accelerate the development life cycle by creating frameworks and tools for improved security.
  • Act as the customer advocate for security features that set Asana apart in the market.
  • Lead a diverse engineering team, fostering excellence and accountability.
  • Manage the security engineering roadmap to ensure effective risk management and project delivery.
  • Drive recruiting to attract top talent and outline clear career paths for team members.
  • Collaborate with product and engineering teams to integrate security within development workflows.

Benefits

  • Mental health, wellness & fitness benefits
  • Career coaching & support
  • Inclusive family building benefits
  • Long-term savings or retirement plans
  • In-office culinary options to cater to dietary preferences
Full Job Description
We are seeking a Director of Security Engineering to lead and grow our Security Engineering organization as Asana continues to grow globally. This role is pivotal in translating high-level security strategy into technical reality, ensuring our infrastructure is resilient by design and our internal security tooling is world-class.

This is a leadership role with accountability for people management, technical mentorship, and the delivery of high-impact security initiatives across a complex, high-growth SaaS environment.

This role is based in our San Francisco office with an office-centric hybrid schedule. The standard in-office days are Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. Working from home on Fridays depends on the type of work you do and the teams with which you partner. If you're interviewing for this role, your recruiter will share more about the in-office requirements.
What you'll achieve
  • Build security by construction, design and default throughout all of Asana's products and infrastructure.
  • Accelerate the development lifecycle by building and owning frameworks, interfaces, services and libraries that solves security problems and frees other Asanas to focus.
  • Be the voice of the customer in driving security features in our products and making those product features a differentiator for Asana.
  • Lead and mentor a multi-disciplinary engineering team, fostering a culture of technical excellence, psychological safety, and high accountability.
  • Own the security engineering roadmap, ensuring high-quality and high-velocity delivery and measurable risk reduction through effective prioritization and data-driven operations.
  • Drive recruiting efforts to attract top-tier talent and establish clear, ambitious career paths for your team.
  • Collaborate with Product and Engineering teams to embed security requirements directly into system designs and development workflows.
  • Oversee complex design reviews, providing pragmatic guidance to ensure Asana's infrastructure and features are inherently secure.
About you
  • 10+ years of experience in a combination of security and software engineering, including 3+ years of experience directly managing high-performing engineering teams.
  • A strong background in software engineering with the ability to participate in deep-dive design reviews and provide technical direction on architecture and code.
  • Deep understanding of modern security domains, including application security (OWASP), cloud-native architecture, and identity frameworks (OAuth, OIDC, SAML).
  • Hands-on experience with security controls and architecture within AWS or similar cloud environments at scale.
  • You excel at balancing security requirements with business needs, making risk-informed decisions, and communicating the "why" behind security mandates to diverse stakeholders.
  • You value automation over manual intervention and have a proven track record of shipping internal tools or services that improve security posture.
  • You use AI tools fluently, champion their adoption across your team, and understand the security risks they introduce in a product environment.

At Asana, we're committed to building teams that include a variety of backgrounds, perspectives, and skills, as this is critical to helping us achieve our mission. If you're interested in this role and don't meet every listed requirement, we still encourage you to apply.

What we'll offer

Our comprehensive compensation package plays a big part in how we recognize you for the impact you have on our path to achieving our mission. We believe that compensation should be reflective of the value you create relative to the market value of your role. To ensure pay is fair and not impacted by biases, we're committed to looking at market value which is why we check ourselves and conduct a yearly pay equity audit.

For this role, the estimated base salary range is between $306,000 - $360,000. The actual base salary will vary based on various factors, including market and individual qualifications objectively assessed during the interview process. The listed range above is a guideline, and the base salary range for this role may be modified.

In addition to base salary, your compensation package may include additional components such as equity, sales incentive pay (for most sales roles), and benefits. If you're interviewing for this role, speak with your Talent Acquisition Partner to learn more about the total compensation and benefits for this role.

We strive to provide equitable and competitive benefits packages that support our employees worldwide and include:
  • Mental health, wellness & fitness benefits
  • Career coaching & support
  • Inclusive family building benefits
  • Long-term savings or retirement plans
  • In-office culinary options to cater to your dietary preferences

These are just some of the benefits we offer, and benefits may vary based on role, country, and local regulations. If you're interviewing for this role, speak with your Talent Acquisition Partner to learn more about the total compensation and benefits for this role.

#LI-Hybrid

About Asana

Asana is a web and mobile work management platform designed to help teams organize, track, and manage their work. It is produced by the San Francisco based company of the same name. The company was founded in 2008 by Dustin Moskovitz and Justin Rosenstein. The product launched commercially in April 2012. In September 2020, the company was valued at $5.5 billion following its direct listing.
Learn more about Asana
Size
1,200 employees
Market Cap
$2.6 billion
Industry
Net Income
-$211.7 million
Founded
2008
Revenue
$227 million
NASDAQ

Similar Jobs

More Jobs at Asana

More Information Technology Jobs

Find similar Director of Security Engineering jobs: