Imprint
FinTech
SeniorApplicationSecurityEngineer
Neural analysis suggests this role is
optimal for Senior candidates.
“Senior Application Security Engineer at Imprint. Skills: Application Security, threat modeling, security architecture reviews, SAST/DAST integration, secure coding practices, cryptography, cloud security. Conduct systematic threat modeling. Perform in-depth security architecture reviews”
What You'll Achieve.
ensure the safety and trust of our customers, partners, and products; develop a robust and scalable security program; protects our infrastructure, applications, and data from threats; enabling the company to innovate quickly and safely; ensure our products and services are built securely from the ground up; proactively address vulnerabilities; support regulatory audits; ensure continuous alignment between engineering, security, and business goals
Industry & Context.
Excellent problem-solving skills
What They're Looking For.
Must Have
5+ years in cybersecurity, specifically focused on Application Security, Hands-on coding experience, Familiarity with modern development stacks (e.g., microservices, REST APIs, containerized environments), Proficiency with SAST/DAST tools, Proficiency with threat modeling methodologies (e.g., MITRE ATT&CK), Proficiency with cryptography concepts (key management, encryption standards), Proficiency with cloud security services (AWS, GCP, or Azure), Excellent communication, collaboration, and problem-solving skills in a fast-paced, cross-functional setting, A development background is required
Nice to Have
Industry certifications (CISSP, CSSLP, OSCP, CEH), Experience with compliance frameworks (PCI DSS, SOC 2, ISO 27001), Exposure to fintech/payments environments
What You'll Do.
Conduct systematic threat modeling
Perform in-depth security architecture reviews
Integrate SAST and DAST into CI/CD pipelines
Analyze testing reports
Guide teams toward swift
effective remediation strategies
Perform or coordinate targeted penetration tests
Implement sustainable fixes
Advise on symmetric and asymmetric encryption mechanisms
Oversee secure key management
Develop and deliver training on secure coding fundamentals and OWASP principles
Lead the “shift-left” security movement
Investigate and document application-focused security incidents
Maintain and refine incident response playbooks
Align AppSec practices with PCI DSS
and relevant frameworks
How You'll Work.
Team & Collaboration
Collaborate with engineering teams; Partner with engineers; Work closely with Risk, Fraud, and Compliance teams
Communication Scope
Excellent communication; Develop and deliver training
Full Job Description
WHO WE ARE Imprint is reimagining co-branded credit cards & financial products to be smarter, more rewarding, and truly brand-first. We partner with companies like Crate & Barrel, Rakuten, Booking.com, H-E-B, Fetch, and Brooks Brothers to launch modern credit programs that deepen loyalty, unlock savings, and drive growth. Our platform combines advanced payments infrastructure, intelligent underwriting, and seamless UX to help brands offer powerful financial products—without becoming a bank. Co-branded cards account for over $300 billion in U.S. annual spend—but most are still powered by legacy banks. Imprint is the modern alternative: flexible, tech-forward, and built for today’s consumer. Backed by Kleiner Perkins, Thrive Capital, and Khosla Ventures, we’re building a world-class team to redefine how people pay—and how brands grow. If you want to work fast, solve hard problems, and make a real impact, we’d love to meet you. THE TEAM The Security Engineering team at Imprint is foundational to ensuring the safety and trust of our customers, partners, and products. We are committed to developing a robust and scalable security program that protects our infrastructure, applications, and data from threats, all while enabling the company to innovate quickly and safely. By joining this fast growing FinTech startup, you’ll have a major impact on shaping the future of payments and card technology. The Role As a Senior Application Security Engineer, you’ll be a linchpin in ensuring our products and services are built securely from the ground up. You’ll design and implement security best practices within our applications, conduct robust testing, and empower engineering teams to proactively address vulnerabilities. LOCATION This is a hybrid role, splitting your time between remote work and 3 days per week on-site at our New York City, San Francisco or Seattle offices What You’ll Do - Conduct systematic threat modeling (e.g., leveraging the MITRE ATT&CK framework) to identify ri
Applying for this Senior Application Security Engineer role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Ashby
- Ashby is a fast modern ATS — most applications take under 3 minutes.
- The resume parser is strong; verify parsed experience dates and job titles.
- Custom screening questions are often scored algorithmically — answer completely.
- Location field affects geo-based screening; use your actual metro area.
ANONYMOUS · UNFILTERED
What do employees actually say about Imprint?
Real rants from real employees. Read before you apply.