Imprint · 5 days ago
Senior Application Security Engineer
Imprint is a FinTech company reimagining co-branded credit cards and financial products. The Senior Application Security Engineer will be responsible for ensuring products and services are built securely, implementing security best practices, conducting testing, and collaborating with engineering teams to address vulnerabilities.
FinanceFinancial ServicesFinTechLoyalty ProgramsPayments
Responsibilities
Conduct systematic threat modeling (e.g., leveraging the MITRE ATT&CK framework) to identify risks, define attack paths, and propose mitigations early in the development lifecycle
Perform in-depth security architecture reviews to ensure applications and microservices follow secure design principles
Collaborate with engineering teams to conduct code reviews, pinpoint vulnerabilities, and champion OWASP Top 10 best practices
Integrate SAST and DAST into CI/CD pipelines, ensuring continuous and automated detection of security flaws
Analyze testing reports and guide teams toward swift, effective remediation strategies
Perform or coordinate targeted penetration tests on critical applications and systems
Document findings and partner with engineers to implement sustainable fixes
Advise on symmetric and asymmetric encryption mechanisms to safeguard data at rest and in transit
Oversee secure key management, ensuring cryptographic libraries and protocols are properly utilized
Develop and deliver training on secure coding fundamentals and OWASP principles
Lead the “shift-left” security movement by embedding security considerations in early stages of development—a strong development background is required to effectively collaborate and coach
Investigate and document application-focused security incidents
Maintain and refine incident response playbooks, integrating lessons learned into ongoing improvements
Align AppSec practices with PCI DSS, SOC 2, and relevant frameworks to support regulatory audits
Work closely with Risk, Fraud, and Compliance teams to ensure continuous alignment between engineering, security, and business goals
Qualification
Required
5+ years in cybersecurity, specifically focused on Application Security
Hands-on coding experience and familiarity with modern development stacks (e.g., microservices, REST APIs, containerized environments)
Proficiency with SAST/DAST tools, threat modeling methodologies (e.g., MITRE ATT&CK), cryptography concepts (key management, encryption standards), and cloud security services (AWS, GCP, or Azure)
Excellent communication, collaboration, and problem-solving skills in a fast-paced, cross-functional setting
Preferred
Industry certifications (CISSP, CSSLP, OSCP, CEH)
Experience with compliance frameworks (PCI DSS, SOC 2, ISO 27001)
Exposure to fintech/payments environments
Benefits
Competitive compensation and equity packages
Leading configured work computers of your choice
Flexible paid time off
Fully covered, high-quality healthcare, including fully covered dependent coverage
Additional health coverage includes access to One Medical and the option to enroll in an FSA
16 weeks of paid parental leave for the primary caregiver and 8 weeks for all new parents
Access to industry-leading technology across all of our business units, stemming from our philosophy that we should invest in resources for our team that foster innovation, optimization, and productivity
Company
Imprint
Imprint is a co-brand financial platform that designs, configures, and operates financial products in partnership and loyalty experiences.
H1B Sponsorship
Imprint has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (16)
2024 (11)
2023 (3)
2022 (9)
2021 (4)
Funding
Current Stage
Late StageTotal Funding
$852MKey Investors
Khosla VenturesSilicon Valley BankRibbit Capital
2025-12-17Series D· $150M
2025-03-31Debt Financing· $500M
2024-10-10Series C· $75M
Recent News
alleywatch.com
2025-12-24
alleywatch.com
2025-12-24
Company data provided by crunchbase