The Security team ensures that our users, employees, and platform are protected from malicious activity and accidental data exposure. We build secure-by-default systems, frameworks, and tooling that enable engineering teams to ship fast without compromising trust. Our focus includes least-privilege access, scalable detection and alerting, automation to eliminate entire classes of risk, and security that grows with the business
We are seeking a Principal Security Engineer to provide technical leadership and execution across a complex, global, high-growth SaaS environment. This is a senior individual contributor role reporting to the Head of Security, with accountability for defining security architecture, setting technical direction, and driving cross-company alignment between Security, Engineering, Product, and Executive leadership
You are both a strategist and a builder: setting long-term vision while remaining deeply hands-on with system design, security architecture, and critical incidents
This role is based in our San Francisco office with an office-centric hybrid schedule. The standard in-office days are Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. Working from home on Fridays depends on the type of work you do and the teams with which you partner. If you're interviewing for this role, your recruiter will share more about the in-office requirements
What you’ll achieve: Define and deliver the Security Engineering technical strategy and multi-year roadmap aligned with Asana’s product, platform, and business priorities
Raise the technical bar across security engineering through design and risk reviews, hands-on mentorship, and clear standards
Partner with senior leaders across Engineering, Product, and Infrastructure to improve Asana’s overall security posture
Develop security policies, processes, and procedures that scale with a