Senior Application Security Engineer

2 hours, 29 minutes ago
Full-time
Senior
Cybersecurity
Chime

Chime

Chime is a financial technology company that offers banking services with no monthly fees, fee-free overdraft, and credit-building opportunities. They partner with regional banks to provide innovative and inclusive financial products, aiming to make fi...

Banks
1K-5K
Founded 2012
$2300M raised

Description

  • Build and improve security capabilities, automation, and guardrails for mobile applications and backend/API services.
  • Perform application and API/backend penetration testing.
  • Identify, triage, and help remediate vulnerabilities across Chime products.
  • Partner with engineering and product teams to embed security into the development lifecycle across mobile apps, APIs, and backend services.
  • Review architecture and code across iOS, Android, APIs, and backend systems with a focus on secure storage, authentication, authorization, communication, and session/token handling.
  • Leverage AI to accelerate security workflows such as code review support, triage, and threat modeling.
  • Partner with teams building AI-enabled features to define and implement production-grade AI security controls.
  • Own security posture across the full application stack, including identity and authentication flows and CI/CD pipelines.

Requirements

  • 5+ years of experience in application security with strong hands-on experience across both mobile and backend systems.
  • Hands-on experience securing iOS and Android applications in production environments.
  • Strong understanding of mobile threat models and common attack techniques.
  • Experience with mobile security testing techniques, including static and dynamic analysis.
  • Familiarity with iOS and Android platform security features and limitations.
  • Practical coding experience, preferably in Ruby, Go, or Python.
  • Ability to clearly communicate security risks, tradeoffs, and remediation guidance to engineering partners.
  • Experience reviewing distributed systems and modern application architectures is preferred.
  • Experience working with AI-related security workflows or AI-enabled features is preferred.

Benefits

  • Base salary from $213,000 to $295,000, depending on location, skills, qualifications, and experience.
  • Eligible for a bonus and competitive equity package.
  • 401(k) match plus medical, dental, vision, life, and disability benefits.
  • Generous vacation policy and company-wide paid Chime Days.
  • Backup child, elder, and pet care support, plus a subsidized commuter benefit for eligible employees.
  • Annual wellness stipend for eligible wellness-related expenses.
  • Up to 24 weeks of paid parental leave for birthing parents and 12 weeks for non-birthing parents.
  • Access to Maven with $15k lifetime reimbursement for egg freezing, fertility treatments, adoption, and more.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Staff Application Security Engineer

Thumbtack 1K-5K Construction & Engineering

Thumbtack is hiring a Security Engineer to shape application security for its cloud-based, AI-enabled home services platform as the company scales.

AWS CI/CD GCP Secrets Management
44 minutes ago

Staff Product Security

Alphasense 51-250 Industrial Conglomerates

AlphaSense is hiring a Staff Product Security Engineer in the USA to design and secure AI, data, and cloud-native products across the product lifecycle.

AWS Azure CI/CD DevSecOps GCP Java JavaScript Kubernetes Microservices Python Secrets Management
2 hours ago

Product Security Engineer

Modern Health 251-1K Health Care Providers & Services

Modern Health is hiring a Product Security Engineer to help secure its remote, fast-growing mental health benefits platform by strengthening application, cloud, and compliance practices across the product lifecycle.

Agile AWS Bash Datadog Django Flask HashiCorp Vault Packer Penetration Testing PostgreSQL Python Redis Terraform
5 hours, 15 minutes ago

Senior Director, Product Management

SecurityScorecard 251-1K IT Services

SecurityScorecard is hiring a product management leader to own the vision and roadmap for supply chain security detection and response solutions that help customers identify, prioritize, and respond to cyber risks in real time.

Cybersecurity Machine Learning SIEM
6 hours, 44 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers