Demo

Application Security Engineer

Versana
York, NY Full Time
POSTED ON 1/7/2026
AVAILABLE BEFORE 2/5/2026
About Us:

Versana is an industry-backed fintech on a mission to make the syndicated loan market better. By digitally capturing agent banks’ data on a real-time basis, Versana provides unprecedented transparency into loan-level details and portfolio positions, bringing efficiency and velocity to the entire market. Through our platform, participants can rest assured they are accessing the loan market’s most credible source of deal information.

About You:

Versana is looking for a Security Engineer to join our InfoSec squad. You will play an essential role in safeguarding our organization's information systems and data from potential threats and vulnerabilities. You will work collaboratively with senior engineers and cross-functional teams to enhance our security posture using cutting-edge technologies.

Key Responsibilities:

  • Perform and validate application & API security testing (OWASP & API Top 10, business logic abuse, auth/authorization flaws, data exposure).
  • Assist with vulnerability lifecycle management by gathering and normalizing findings (scanners, manual assessments, etc.), validating impact, setting priority, and assigning remediation tickets.
  • Integrate and maintain security tooling in CI/CD (SAST, SCA, DAST, SBOM, container and secrets scanning) and collaborate with developers to tune signal vs noise.
  • Assist with configuration and lifecycle management of AppSec tooling (e.g., CNAPP, WAF, secret management)
  • Contribute to threat modeling & secure design reviews (data flows, trust boundaries, abuse cases, cloud IAM, entitlement surfaces)
  • Partner with engineering, DevOps, product, and QA to embed secure patterns early (“shift left”) and provide code-level remediation guidance.
  • Automate repetitive security tasks and reporting where possible (scripts, pipeline jobs, policy-as-code)
  • Participate in incident response activities, including containment, eradication, and recovery efforts.
  • Support the implementation of security policies, procedures, and standards.
  • Stay up-to-date with the latest security trends, threats, and technology advancements.

Must Haves:

  • 3 years combined experience in software development and/or application security engineering.
  • Ability to read and develop secure code in at least one of: Python, Java, JavaScript/TypeScript, Go, or C#.
  • Understanding of Application Security principles and web application vulnerabilities such as OWASP Top 10, their risk and remediations
  • Basic understanding of cloud computing principles and services (e.g., AWS, Azure, Google Cloud).
  • Exposure to security tools such as vulnerability scanners.
  • Strong communication and teamwork skills.
  • Detail-oriented with a proactive approach to identifying and mitigating security risks.

Nice to Haves:

  • Pentest experience
  • CompTIA Security , CEH, GWAPT, OSCP or similar certifications.
  • Infrastructure-as-Code knowledge such as Terraform.
  • Experience in the financial sector

$110,000 - $140,000 a year

Equal Opportunity Employer

We are committed to providing equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Salary : $110,000 - $140,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Application Security Engineer?

Sign up to receive alerts about other jobs on the Application Security Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$88,984 - $115,784
Income Estimation: 
$111,369 - $141,168
Income Estimation: 
$117,871 - $153,580
Income Estimation: 
$109,939 - $144,341
Income Estimation: 
$114,500 - $144,633
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Not the job you're looking for? Here are some other Application Security Engineer jobs in the York, NY area that may be a better fit.

  • Open Systems Technologies York, NY
  • A financial firm is looking for an Application Security Engineer to join their team in Iselin, NJ or NYC. Compensation: $200K Responsibilities: Perform App... more
  • 13 Days Ago

  • Medidata Solutions and Careers York, NY
  • Location: Hybrid or Remote Medidata follows a hybrid office policy in which employees who are hired for an in-person position are expected to work on site ... more
  • 15 Days Ago

AI Assistant is available now!

Feel free to start your new journey!