Jobs and Careers
IM

Senior Infrastructure Security Engineer

Imprint
San Francisco, United StatesRemotefull_timeVerifiedPosted 4 Feb 2025
💰 $220,000/yr($170,000/yr$220,000/yr)

About the role

Who We Are

Imprint is building a next-generation co-branded credit card company to serve America’s great brands. Some of our partners include H-E-B, Turkish Airlines, Brooks Brothers, and Eddie Bauer. Imprint is backed by Khosla Ventures, Kleiner Perkins, and Thrive Capital. We are focused on building a brilliant team who want to change payments and who embody our Operating Principles.

The Team

The Security Engineering team at Imprint is foundational to ensuring the safety and trust of our customers, partners, and products. We are committed to developing a robust and scalable security program that protects our infrastructure, applications, and data from threats, all while enabling the company to innovate quickly and safely. By joining this growing FinTech, you’ll have a major impact on shaping the future of payments and card technology.

Location

This is a hybrid role, splitting your time between remote work and 2–3 days per week on-site at our New York, San Francisco or Seattle offices (as required by your manager).

What You'll Do

As a Senior Infrastructure Security Engineer, your primary focus will be safeguarding our cloud platforms, networks, and underlying systems by:

  • Managing configurations, encryption, and access controls in AWS, ensuring cloud monitoring and compliance with frameworks like PCI DSS and SOC 2.

  • Implementing Infrastructure-as-Code (IaC) best practices to efficiently provision and secure cloud resources.

  • Configure and maintain firewalls, web application firewalls (WAF), host intrusion detection systems (HIDS), network intrusion detection/prevention systems (NIDS/NIPS), and VPNs.

  • Design architecture concepts that incorporate network segmentation, zero-trust principles, and other best practices to minimize attack surfaces.

  • Apply hardening strategies for Kubernetes clusters, operating systems, and containerized environments.

  • Integrate data leakage prevention (DLP) controls to safeguard sensitive information across systems.

  • Lead vulnerability scanning processes using SIEM, endpoint detection, and cloud security platforms; track and remediate findings with relevant teams.

  • Collaborate with Infrastructure and DevOps to ensure continuous security across CI/CD pipelines, including container image scanning and automated patching.

  • Develop, refine, and implement incident response playbooks for infrastructure-related threats.

  • Monitor systems, investigate potential security events, and produce post-incident reports with actionable insights.

  • Develop scripts (Python, Bash, etc.) to automate repetitive security tasks and streamline threat detection.

  • Evaluate and deploy AI-powered security solutions that enhance operational efficiency and reduce mean time to detect/respond.

  • Conduct infrastructure-focused security training for internal teams, promoting a culture of secure operations.

  • Collaborate with risk, fraud, and compliance teams to align infrastructure security controls with PCI DSS, SOC 2, ISO 27001, or other relevant standards.

What We Look For

  • 5+ years in cybersecurity roles, emphasizing infrastructure security, cloud security (especially in AWS), and network security.

  • Hands-on background with firewalls, WAFs, HIDS/NIDS, VPNs, and SIEM solutions.

  • Proficient in system hardening for Kubernetes, operating systems, and containers.

  • Familiarity with architecture concepts and best practices in cloud and on-prem networks.

  • Knowledge of cryptography (public key infrastructure, symmetric/asymmetric encryption).

  • Strong automation and tooling skills (Python, Bash) for security workflows.

  • Clear and effective communicator, able to translate complex technical issues for non-technical stakeholders.

  • Collaborative approach to problem-solving, thriving in fast-paced environments with cross-functional teams.

Preferred

  • Experience with compliance frameworks (PCI DSS, SOC 2, ISO 27001).

  • Relevant certifications: CISSP, CEH, AWS Security, or similar.

  • Background in fintech or payments, understanding unique industry threats and requirements.

Perks & Benefits

  • Competitive compensation and equity packages

  • Leading configured work computers of your choice

  • Flexible paid time off

  • Fully covered, high-quality healthcare including fully covered dependent coverage

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Imprint

View company profile →