Principal Security Engineer
Asana
The Security team ensures that our users, employees, and platform are protected from malicious activity and accidental data exposure. We build secure-by-default systems, frameworks, and tooling that enable engineering teams to ship fast without compromising trust. Our focus includes least-privilege access, scalable detection and alerting, automation to eliminate entire classes of risk, and security that grows with the business.
We are seeking a Principal Security Engineer to provide technical leadership and execution across a complex, global, high-growth SaaS environment. This is a senior individual contributor role reporting to the Head of Security, with accountability for defining security architecture, setting technical direction, and driving cross-company alignment between Security, Engineering, Product, and Executive leadership.
You are both a strategist and a builder: setting long-term vision while remaining deeply hands-on with system design, security architecture, and critical incidents.
This role is based in our San Francisco office with an office-centric hybrid schedule. The standard in-office days are Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. Working from home on Fridays depends on the type of work you do and the teams with which you partner. If you're interviewing for this role, your recruiter will share more about the in-office requirements.
What you’ll achieve:
- Define and deliver the Security Engineering technical strategy and multi-year roadmap aligned with Asana’s product, platform, and business priorities.
- Raise the technical bar across security engineering through design and risk reviews, hands-on mentorship, and clear standards.
- Partner with senior leaders across Engineering, Product, and Infrastructure to improve Asana’s overall security posture.
- Develop security policies, processes, and procedures that scale with a growing, global engineering organization.
- Help grow the security engineering team through recruiting and interviewing.
- Stay ahead of the threat landscape and support teams building new features and technologies to ensure they are secure by design.
About you:
- 10+ years in a security-related engineering role, with 3+ years in a staff or principal-level role.
- Experience as a technical lead across multiple teams, influencing direction beyond direct ownership.
- Strong software engineering background, with the ability to engage deeply in system design, security architecture, and complex technical trade-offs.
- Deep understanding of application and platform risks (e.g., OWASP Top 10), identity and access controls (OAuth, OIDC, SAML), and modern attack patterns.
- Significant, hands-on experience securing cloud environments at scale, especially AWS.
- You excel at evaluating security trade-offs, making pragmatic, risk-informed decisions, and communicating those decisions clearly to technical and non-technical stakeholders.
- Demonstrated curiosity about AI tools and emerging technologies, with a willingness to learn and leverage them to enhance productivity, collaboration, or decision-making
At Asana, we're committed to building teams that include a variety of backgrounds, perspectives, and skills, as this is critical to helping us achieve our mission. If you're interested in this role and don't meet every listed requirement, we still encourage you to apply.
What we’ll offer
Our comprehensive compensation package plays a big part in how we recognize you for the impact you have on our path to achieving our mission. We believe that compensation should be reflective of the value you create relative to the market value of your role. To ensure pay is fair and not impacted by biases, we're committed to looking at market value which is why we check ourselves and conduct a yearly pay equity audit.
For this role, the estimated base salary range is between $336,000 - $395,000. The actual base salary will vary based on various factors, including market and individual qualifications objectively assessed during the interview process. The listed range above is a guideline, and the base salary range for this role may be modified.
In addition to base salary, your compensation package may include additional components such as equity, sales incentive pay (for most sales roles), and benefits. If you're interviewing for this role, speak with your Talent Acquisition Partner to learn more about the total compensation and benefits for this role.
We strive to provide equitable and competitive benefits packages that support our employees worldwide and include:
- Mental health, wellness & fitness benefits
- Career coaching & support
- Inclusive family building benefits
- Long-term savings or retirement plans
- In-office culinary options to cater to your dietary preferences
These are just some of the benefits we offer, and benefits may vary based on role, country, and local regulations. If you're interviewing for this role, speak with your Talent Acquisition Partner to learn more about the total compensation and benefits for this role.
#LI-Hybrid
About us
Asana is a leading platform for human + AI collaboration. Millions of teams around the world rely on Asana to achieve their most important goals, faster. Asana has been named to Fortune's Best Workplaces for 7+ years and recognized by Fast Company, Forbes, and Gartner for excellence in workplace culture and innovation. We offer an exceptional office-centric culture while adopting the best elements of hybrid models to ensure that every one of our global team members can work together effortlessly. With 13+ offices all over the world, we are always looking for individuals who care about building technology that drives positive change in the world and a culture where everyone feels that they belong.
Join Asana’s Talent Network to stay up to date on job opportunities and life at Asana.