Imprint is building a next-generation co-branded credit card company to serve America’s great brands. Some of our partners include H-E-B, Turkish Airlines, Brooks Brothers, and Eddie Bauer. Imprint is backed by Khosla Ventures, Kleiner Perkins, and Thrive Capital. We are focused on building a brilliant team who want to change payments and who embody our Operating Principles.
The Security Engineering team at Imprint is foundational to ensuring the safety and trust of our customers, partners, and products. We are committed to developing a robust and scalable security program that protects our infrastructure, applications, and data from threats, all while enabling the company to innovate quickly and safely. By joining this fast growing FinTech startup, you’ll have a major impact on shaping the future of payments and card technology.
The Role
As a Senior Application Security Engineer, you’ll be a linchpin in ensuring our products and services are built securely from the ground up. You’ll design and implement security best practices within our applications, conduct robust testing, and empower engineering teams to proactively address vulnerabilities.
This is a hybrid role, splitting your time between remote work and 2–3 days per week on-site at our New York City, San Francisco or Seattle offices (as required by your manager).
What You’ll Do
Conduct systematic threat modeling (e.g., leveraging the MITRE ATT&CK framework) to identify risks, define attack paths, and propose mitigations early in the development lifecycle.
Perform in-depth security architecture reviews to ensure applications and microservices follow secure design principles.
Collaborate with engineering teams to conduct code reviews, pinpoint vulnerabilities, and champion OWASP Top 10 best practices.
Integrate SAST and DAST into CI/CD pipelines, ensuring continuous and automated detection of security flaws.
Analyze testing reports and guide teams toward swift, effective remediation strategies.
Perform or coordinate targeted penetration tests on critical applications and systems.
Document findings and partner with engineers to implement sustainable fixes.
Advise on symmetric and asymmetric encryption mechanisms to safeguard data at rest and in transit.
Oversee secure key management, ensuring cryptographic libraries and protocols are properly utilized.
Develop and deliver training on secure coding fundamentals and OWASP principles.
Lead the “shift-left” security movement by embedding security considerations in early stages of development—a strong development background is required to effectively collaborate and coach.
Investigate and document application-focused security incidents.
Maintain and refine incident response playbooks, integrating lessons learned into ongoing improvements.
Align AppSec practices with PCI DSS, SOC 2, and relevant frameworks to support regulatory audits.
Work closely with Risk, Fraud, and Compliance teams to ensure continuous alignment between engineering, security, and business goals.
What We Look For
5+ years in cybersecurity, specifically focused on Application Security.
Hands-on coding experience and familiarity with modern development stacks (e.g., microservices, REST APIs, containerized environments).
Proficiency with SAST/DAST tools, threat modeling methodologies (e.g., MITRE ATT&CK), cryptography concepts (key management, encryption standards), and cloud security services (AWS, GCP, or Azure).
Excellent communication, collaboration, and problem-solving skills in a fast-paced, cross-functional setting.
Preferred
Industry certifications (CISSP, CSSLP, OSCP, CEH)
Experience with compliance frameworks (PCI DSS, SOC 2, ISO 27001).
Exposure to fintech/payments environments
Perks & Benefits
Competitive compensation and equity packages
Leading configured work computers of your choice
Unlimited vacation policy
Fully covered, high-quality healthcare, including fully covered dependent coverage
Access to One Medical and option to enroll in an FSA
16 weeks of paid parental leave for the primary caregiver and 8 weeks for all new parents
Flexibility for remote work and asynchronous collaboration
Access to industry-leading technology tools to foster innovation and productivity
Imprint is committed to a diverse and inclusive workplace. Imprint is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status. Imprint welcomes talented individuals from all backgrounds who want to build the future of payments and rewards. If you are passionate about FinTech and eager to grow, let’s move the world forward, together.
$170K – $220K
...Golden Seal Enterprises seeks professional, responsible unarmed security officers who are customer focused, friendly , and helpful!... ...shift ~ Evening shift ~ Monday to Friday ~ Night shift ~ Overnight shift ~ Weekends as needed Work Location: In person...
...Position Description: If you love to meet new people and have a passion for providing great service, join us as a Server at Another Broken Egg Caf. Youll ensure Guests enjoy a memorable dining experience by delivering attentive and friendly service in a fast-paced...
...team and products. As we continue to grow, we are seeking a Senior Director of Marketing to drive the next phase of our expansion. Position... ...plans. Manage digital marketing initiatives, including SEO/SEM, email campaigns, paid media, social media, and eCommerce optimization...
...UR Services specializes in pre-scheduled drop off catering delivery to business clients. Our peak busy time is weekday breakfast 6-9... ...the people we deliver to recognize this. We only contract with drivers who use insulated thermal delivery bags, utilize pushcarts and...
Territory Sales ManagerJob SummaryThe Territory Sales Manager achieves maximum market penetration, market growth, and increases sales and profitability by creating a superior customer experience for the NAPA independent Store Owners. This role manages NAPA program implementations...