Assist in developing and maintaining scripts, tools, and automation frameworks to support security operations.
Help integrate security tools with CI/CD pipelines, monitoring systems, and incident response processes.
Automate repetitive security tasks such as log analysis, vulnerability scanning, and alert triage.
PatientPoint is a leading digital health company that connects patients, providers, and life sciences companies with the right information at the moments care decisions are made. With a network of digital devices in 35,000 physician offices serving over 750 million patient visits annually, the company offers a dynamic, purpose-driven culture.
This internship offers hands-on experience supporting the development of secure engineering standards for software and production engineering teams.
You will help enhance existing guidance with specific implementation details and may support the development of custom libraries and resources.
Ideal candidates have programming experience in Python, Rust, C++, or Solidity and familiarity with Generative AI tooling.
Galaxy Digital Inc. is a global leader in digital assets and data center infrastructure, growing the economy that runs on code. The company is headquartered in New York City with offices across North America, Europe, the Middle East, and Asia, and values a culture of high performance, transparent feedback, and mission-first approach.
Help shape technical direction of security tooling and AppSec practices. - Lead secure design across major engineering projects, from threat modeling through architecture. - Perform advanced offensive security work, chaining vulnerabilities and proving business impact.
Super.com is a fast-paced, high-growth tech company that maximizes lives for customers and employees. It offers a remote-first culture, invests in career progression, and provides generous benefits including unlimited PTO and parental leave.
Design, implement, and maintain internal tooling for acquiring and parsing recaptured underground data.
Build and deploy cloud infrastructure using Infrastructure as Code technologies.
Collaborate with the research team to support targeting and collection of new data sources.
SpyCloud transforms recaptured darknet data to disrupt cybercrime. They have over 250 cybersecurity experts and foster a collaborative, innovative culture.
Be a technical contributor on a global software engineering team in Product Security, building robust and scalable systems.
Design and implement software and automation tools for security use cases like software supply chain security and AI-powered vulnerability discovery.
Own SRE excellence, CI/CD, and datastore operations for mission-critical security services, ensuring flawless performance.
CrowdStrike is a global leader in cybersecurity, protecting organizations with an AI-native platform to stop breaches. Founded in 2011, the company fosters a culture of flexibility, autonomy, and responsible AI adoption, with a large-scale distributed system processing trillions of events daily.
Work on real cybersecurity tasks including Microsoft security configuration, threat research, and automation.
Collaborate directly with the Director of Cybersecurity on client security work and compliance support.
Build skills in security tooling, scripting, and documentation with a path to full-time employment.
EVOCS is an IT consulting firm that helps businesses operate more effectively through practical expertise and technology solutions. The company is a trusted technology partner to a growing number of organizations, with a team committed to quality and client relationships.
Work closely with industry-leading subject matter experts on real-world security response and collaborative projects.
Complete in-house training programs to enhance your security knowledge and skills.
Participate in partner-led vendor training and certifications for hands-on development.
GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. The company has over 1,300 employees and is known for its enjoyable workplace atmosphere with strong core values.
Design and implement layered AI guardrails and sandboxing to constrain AI behavior and secure enterprise workflows.
Partner with users to bake secure-by-default patterns into AI-assisted workflows and maintain an inventory of AI-to-service connections.
Continuously test guardrails through red-teaming and evaluate new AI tools to find secure ways to enable adoption.
Waabi, founded by AI visionary Raquel Urtasun, is the leader in Physical AI, developing autonomous transportation technology for commercial trucks and robotaxis. Backed by world leaders in AI and automotive, the company has offices in Toronto, San Francisco, Dallas, and Pittsburgh and is growing quickly with a diverse, innovative team.
Assist with vulnerability management and security incident investigations.
Support triage of security findings and improve detection capabilities.
Learn and contribute to securing AWS and Kubernetes infrastructure.
Sezzle is a fintech company that provides interest-free installment plans to financially empower the next generation. The company is dynamic and innovative, with a focus on cutting-edge technology and a collaborative culture.
Translate security policy into practical, deployable solutions across applications, data environments, and AI systems.
Design, build, and deploy security controls for web applications, data pipelines, APIs, and Agentic AI systems.
Implement secure-by-design practices throughout the software development lifecycle, including code-level remediations and configuration hardening.
EnableComp provides Specialty Revenue Cycle Management solutions for healthcare organizations, leveraging over 24 years of industry-leading expertise. A multi-year recipient of the Top Workplaces award, they have been recognized as Black Book's #1 Specialty RCM Solution provider in 2024 and are among the top one percent of the Inc. 5000 fastest-growing private companies in the US for eleven years.
Embed security into every phase of the SDLC and champion secure design for Gen AI and agentic AI tools.
Perform secure code reviews, threat modeling, and establish secure API patterns across engineering teams.
Operate the application vulnerability management lifecycle and communicate risk to engineering and business leaders.
GameChanger builds a platform for youth sports, helping families elevate the next generation through community and technology. They are a remote-first, dynamic tech company based in New York City, solving major challenges in youth sports.
Design, build, and scale application security capabilities to support secure software development across the enterprise.
Develop security patterns and guardrails for AI-assisted development and agentic workflows.
Integrate security tools with developer platforms to improve vulnerability management and automate remediation.
NBCUniversal is a leading media and entertainment company creating world-class content for film, television, streaming, and theme parks. As a subsidiary of Comcast, it fosters an inclusive culture and community engagement across a diverse global workforce of thousands.
Build and maintain security infrastructure across AWS and Kubernetes, including telemetry pipelines, cryptographic material lifecycle, and compliance automation.
Engineer agentic AI workflows using tools like Claude Code and MCP integrations to automate security tasks such as code review and drift detection.
Develop threat models and embed security controls into deployment pipelines to prevent vulnerabilities at build time.
Lumin Digital provides cloud-native digital banking solutions for credit unions and banks. The company fosters a culture of trust, respect, and boldness, encouraging innovation and collaboration in a fully remote, async-first environment.
Assist customers with application security testing tool configurations and triage support.
Lead AppSec Program maturity assessments using frameworks like BSIMM and SSDF.
Develop Strategic Roadmaps and deliver presentations to executive leadership.
Black Duck Software, Inc. helps organizations build secure, high-quality software, minimizing risks while maximizing speed and productivity. It is a recognized pioneer in application security, providing SAST, SCA, and DAST solutions.
Act as an Application Security SME, partnering with Engineering and Product teams to embed security throughout the SDLC.
Lead application security reviews, threat modeling, code reviews, and penetration testing to identify and mitigate risks.
Design and automate security controls across CI/CD pipelines, including SAST, SCA, and other AppSec tooling.
Job&Talent is a world-leading, AI-powered workforce management platform for frontline industries. Headquartered in Madrid, the company operates in 10 countries across Europe, the US, and Latin America, backed by leading investors, and places millions of workers.
Design, develop, and maintain automated tests for Caseware IDEA, improving the existing Ranorex framework.
Integrate tests into GitHub, CI/CD, and release workflows using AI-assisted tools like Copilot and Claude.
Perform manual, exploratory, and regression testing, investigate failures, and mentor QA teammates.
Caseware makes software for accounting firms, corporations, and governments, leading the audit and accounting industry for 30+ years. With 500,000+ users in 130 countries, it fosters a collaborative, inclusive culture and is growing after investment from Hg Capital.
Build and maintain automation using Python and agentic coding tools to reduce manual GRC workflows.
Partner with Procurement, Legal, Engineering, and other teams on risk reviews and risk-informed decisions.
Affirm is a financial technology company that offers buy now, pay later services. The company values security as critical to its success and has a culture focused on engineering-driven risk management.
Act as the bridge between architectural intent and operational reality, mediating conflicts between security requirements and feasible implementation.
Implement preventive, default-on security controls across cloud and enterprise environments, codified as policy- and infrastructure-as-code.
Define and enforce security requirements for AI-powered features, including model access controls, prompt-injection mitigations, and output validation.
Rithum is the world's most trusted commerce network, accelerating how brands, suppliers, and retailers work together to deliver seamless e-commerce experiences. More than 40,000 companies trust Rithum to grow their business across hundreds of channels, representing over $50 billion in annual GMV.
Conduct third-party security assessments and evaluate vendor security controls to manage risk.
Build and maintain automation using Python and agentic coding tools to replace manual GRC workflows.
Partner with cross-functional teams including Procurement, Legal, Engineering, and Compliance on risk-informed decisions.
Affirm is a financial technology company that reinvents credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without hidden fees. It is a remote-first company with a culture focused on innovation and engineering-driven security.
Improve reliability and automation of secret rotation using GitHub Actions.
Manage secrets, security assets, and cloud resources in AWS environments.
Analyze Kibana logs and support development teams in troubleshooting.
Coforge is a global IT services and solutions company that focuses on digital transformation. They hire professionals based on skills and qualifications, promoting a diverse and inclusive culture.