Application Security Intern
Job description
About the role
We are seeking an Application Security Intern to join our team in Bangalore. This position offers a unique opportunity to gain hands-on, practical experience in the field of application security while actively contributing to Rubrik's innovative projects and initiatives. You will work in close collaboration with seasoned security and engineering professionals, immersing yourself in real-world scenarios to enhance the organization's overall security practices. The role is structured to bridge the gap between academic theory and industry execution, providing comprehensive exposure to the challenges and solutions defining modern application security. You will be entrusted with ownership of specific security initiatives, guiding them from initial conception through to successful implementation. This internship is designed to foster critical thinking, technical growth, and professional development. You will be encouraged to ask insightful questions, propose constructive improvements, and actively engage in strategic security discussions. Your contributions will play a direct role in strengthening the integrity, confidentiality, and reliability of our application security posture. This is a hands-on learning environment where your work will have a tangible and meaningful impact.
What you'll do
- Conduct thorough analysis of application components to uncover potential security weaknesses and entry points.
- Implement and test robust security controls designed to protect applications from common threats and sophisticated attack vectors.
- Utilize a combination of automated scanning tools and manual testing techniques to systematically identify vulnerabilities within codebases and system configurations.
- Collaborate directly with software engineers to review code changes, ensuring that security principles are applied consistently and effectively.
- Document all security findings, risk assessments, and remediation steps in clear, detailed reports tailored for both technical and non-technical audiences.
- Participate actively in security code reviews to ensure that new features are developed and deployed with "security by design" principles.
- Research emerging security threats, trends, and countermeasures to support the development of proactive defense strategies for the organization.
- Assist in the creation, maintenance, and evolution of security standards, guidelines, and best practices for adoption by development teams.
- Provide support for the execution of comprehensive security testing activities throughout the Software Development Lifecycle (SDLC).
- Contribute to the ongoing improvement of existing security tools, processes, and methodologies within the application security team.
- Analyze security logs and alerts to identify suspicious activities, anomalies, and potential security incidents in a timely manner.
- Develop proof-of-concept exploits to validate identified vulnerabilities, helping the team understand the real-world impact and risk.
Requirements
- You must be currently pursuing a degree in Computer Science, Information Technology, or a closely related technical field.
- Demonstrated familiarity with core programming languages such as Python, Java, or C++.
- A solid understanding of fundamental web application security principles and established best practices.
- Basic, working knowledge of common security tools and technologies used in the industry.
- Strong analytical capabilities and proven problem-solving skills to dissect complex security issues.
- Excellent verbal and written communication skills, with the ability to convey technical concepts to diverse audiences.
- Proven ability to work effectively within a team environment, collaborating on shared security objectives.
- Must be eligible to work legally in India without requiring additional visa sponsorship or work permits.
- Availability to commit to the full duration of the internship as defined by the program requirements and project needs.
- A willingness to learn and rapidly adapt to new security technologies, frameworks, and methodologies.
- Ability to take initiative and ownership of tasks in a self-directed manner while remaining aligned with team goals.
Nice to have
- Prior internship or professional experience in application security, software development, or a related technical field.
- Formal knowledge of security frameworks and standards, such as the OWASP Top Ten.
- Familiarity with major cloud environments, specifically AWS or Azure, and their security configurations.