Senior Application Security Engineer jobs in United States
info-icon
This job has closed.
company-logo

Imprint · 5 days ago

Senior Application Security Engineer

Imprint is a FinTech company reimagining co-branded credit cards and financial products. The Senior Application Security Engineer will be responsible for ensuring products and services are built securely, implementing security best practices, conducting testing, and collaborating with engineering teams to address vulnerabilities.

FinanceFinancial ServicesFinTechLoyalty ProgramsPayments
check
H1B Sponsor Likelynote

Responsibilities

Conduct systematic threat modeling (e.g., leveraging the MITRE ATT&CK framework) to identify risks, define attack paths, and propose mitigations early in the development lifecycle
Perform in-depth security architecture reviews to ensure applications and microservices follow secure design principles
Collaborate with engineering teams to conduct code reviews, pinpoint vulnerabilities, and champion OWASP Top 10 best practices
Integrate SAST and DAST into CI/CD pipelines, ensuring continuous and automated detection of security flaws
Analyze testing reports and guide teams toward swift, effective remediation strategies
Perform or coordinate targeted penetration tests on critical applications and systems
Document findings and partner with engineers to implement sustainable fixes
Advise on symmetric and asymmetric encryption mechanisms to safeguard data at rest and in transit
Oversee secure key management, ensuring cryptographic libraries and protocols are properly utilized
Develop and deliver training on secure coding fundamentals and OWASP principles
Lead the “shift-left” security movement by embedding security considerations in early stages of development—a strong development background is required to effectively collaborate and coach
Investigate and document application-focused security incidents
Maintain and refine incident response playbooks, integrating lessons learned into ongoing improvements
Align AppSec practices with PCI DSS, SOC 2, and relevant frameworks to support regulatory audits
Work closely with Risk, Fraud, and Compliance teams to ensure continuous alignment between engineering, security, and business goals

Qualification

Application SecurityThreat ModelingSAST/DAST ToolsCryptographyCompliance FrameworksCloud Security ServicesDevelopment BackgroundFintech ExposureIndustry CertificationsCommunicationCollaboration SkillsProblem-Solving Skills

Required

5+ years in cybersecurity, specifically focused on Application Security
Hands-on coding experience and familiarity with modern development stacks (e.g., microservices, REST APIs, containerized environments)
Proficiency with SAST/DAST tools, threat modeling methodologies (e.g., MITRE ATT&CK), cryptography concepts (key management, encryption standards), and cloud security services (AWS, GCP, or Azure)
Excellent communication, collaboration, and problem-solving skills in a fast-paced, cross-functional setting

Preferred

Industry certifications (CISSP, CSSLP, OSCP, CEH)
Experience with compliance frameworks (PCI DSS, SOC 2, ISO 27001)
Exposure to fintech/payments environments

Benefits

Competitive compensation and equity packages
Leading configured work computers of your choice
Flexible paid time off
Fully covered, high-quality healthcare, including fully covered dependent coverage
Additional health coverage includes access to One Medical and the option to enroll in an FSA
16 weeks of paid parental leave for the primary caregiver and 8 weeks for all new parents
Access to industry-leading technology across all of our business units, stemming from our philosophy that we should invest in resources for our team that foster innovation, optimization, and productivity

Company

Imprint

twittertwittertwitter
company-logo
Imprint is a co-brand financial platform that designs, configures, and operates financial products in partnership and loyalty experiences.

H1B Sponsorship

Imprint has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (16)
2024 (11)
2023 (3)
2022 (9)
2021 (4)

Funding

Current Stage
Late Stage
Total Funding
$852M
Key Investors
Khosla VenturesSilicon Valley BankRibbit Capital
2025-12-17Series D· $150M
2025-03-31Debt Financing· $500M
2024-10-10Series C· $75M

Leadership Team

leader-logo
Daragh Murphy
Founder and CEO
linkedin
leader-logo
Michael Pechman
Co-Founder
Company data provided by crunchbase