Senior Security Engineer, Threat Response
Asana INC · 🇨🇦 Vancouver, BC
Sponsorship verdict
No sponsorship evidence yet
No government record and no wording either way. Not a refusal — ask the recruiter.
- No government sponsor record hereNo government sponsor record covers this employer in this country.
- The posting doesn’t mention sponsorshipSilence isn’t a refusal — ask the recruiter before investing much time.
- No salary bar for this routeCanada has no single salary bar: the employer usually needs a positive LMIA. Pay at or above the provincial median wage + 20% (e.g. C$36.92/h in Ontario) puts it in the high-wage stream. Source: https://www.canada.ca/en/employment-social-development/services/foreign-workers/median-wage.html, rules effective 2026-07-17.
- Confirmed live todayWhen a source last listed this job as open.
Canada: Express Entry no longer awards ranking points for job offers (since 25 Mar 2025); a job offer still counts toward Federal Skilled Worker eligibility.
A verdict summarises public evidence; it is not legal advice and never a guarantee — the employer and the immigration authority decide. Sign in to factor in where you can already work.
Or apply yourself on the official page →
Why not apply?
No register record and no sponsorship wording in the posting. Worth asking the employer before investing significant time.
SponsorApply flags time-wasters so your applications go where they can land. These come from the posting's own wording — read the original listing to confirm. See better-fit alternatives →
Sponsor Radar — Asana INC
No government sponsor record covers this employer in this country.
Past sponsorship or register membership never guarantees sponsorship for this vacancy or for you. Full Sponsor Radar for Asana INC →
About the role
Our Security team keeps Asana's employees, users, and customers safe, by proactively addressing threats and fostering a culture of security throughout our product and operations. We are looking for a savvy Security Engineer to join our Blue Team. You will be a foundational member of the security presence in our Warsaw innovation hub, partnering directly with IT, infrastructure, and product teams to ensure we have robust detection and response capabilities. Detection and response here leans on engineering practice. We are investing in automation and detection-as-code to cut down on manual triage, and we are looking for someone comfortable writing and reviewing code as part of that work. This role is based in our Vancouver office with an office-centric hybrid schedule. The standard in-office days are Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. Working from home on Fridays depends on the type of work you do and the teams with which you partner. If you're interviewing for this role, your recruiter will share more about the in-office requirements. What you'll achieve: • Lead detection, analysis, and response across our cloud and SaaS environments, identity providers, endpoints, and the software supply chain , ensuring timely and effective remediation of security incidents. • Investigate and remediate security incidents across cloud infrastructure (AWS/GCP/Azure), identity providers (e.g., Okta), and SaaS environments. • Investigate and contain software supply chain and CI/CD incidents , from unauthorized changes in build environments to suspect third-party dependencies (e.g., npm, PyPI). • Help build and maintain our detection-as-code infrastructure (e.g., Panther), SOAR automation, and response playbooks, treating detection logic as tested, version-controlled production code. • Utilize and optimize security tools such as Panther for SIEM, CrowdStrike for endpoint detection and response, and other security platforms. • Conduct proactive threat hunting and operationalize threat intelligence across cloud, endpoint, and identity telemetry to catch threats beyond standard SIEM alerting. • Conduct forensic analysis during security incidents to understand the scope and impact of incidents. • Collaborate with engineering teams to integrate security best practices into development processes and provide guidance on secure configurations. • Develop and deliver training to educate engineers on security operations and incident response best practices. About you: • 7+ years of experience in threat detection, security operations, or incident response , including investigating incidents across cloud platforms, identity providers, and SaaS applications, with practical knowledge of audit logging and IAM. • Proficient in Python ( Bash, Go, or JavaScript/TypeScript is a plus ) for security scripting and automation , with hands-on experience across REST APIs, Git workflows, and PR-based code reviews . • Hands-on experience investigating software supply chain threats , with fluency in auditing modern developer ecosystems (e.g., npm, PyPI), build logs, and CI/CD pipelines. • Familiarity with "Detection as Code" methodologies , including test-driven detection logic and rule management through CI/CD pipelines. • Strong experience with SIEM platforms (e.g., Panther, Splunk, Elastic Security) for log analysis, alert correlation, and dashboard creation. • Deep working knowledge of endpoint detection and response (EDR) tools (e.g., CrowdStrike, SentinelOne) with specialized expertise in macOS endpoint security, telemetry, and threat detection capabilities . • Experience performing digital forensics and root-cause analysis to determine incident scope and impact. • Familiarity with common attack t