onsite
Application Security Engineer - Versana
Security Engineer
Lead the design, implementation, and testing of secure software across the fintech platform, ensuring compliance with OWASP standards and protecting sensitive loan data through rigorous threat modeling and penetration testing.
About the role
Key Responsibilities
- Conduct threat modeling and risk assessments for new and existing features.
- Perform static and dynamic code reviews, identifying and remediating security vulnerabilities.
- Design and implement secure coding practices, guidelines, and automated security testing pipelines.
- Collaborate with product, engineering, and DevOps teams to embed security into the CI/CD workflow.
- Lead penetration testing engagements and coordinate remediation efforts.
Requirements
- 3+ years of experience in application security within a fintech or SaaS environment.
- Deep knowledge of OWASP Top 10, secure coding standards, and common web vulnerabilities.
- Hands‑on experience with static analysis tools (e.g., SonarQube, Checkmarx) and dynamic testing tools (e.g., Burp Suite, OWASP ZAP).
- Proficiency in at least one programming language (Java, Python, or JavaScript) and familiarity with container security.
- Strong communication skills and ability to translate technical findings into actionable business recommendations.
Skills
owasppenetration testing