Remote Application Security Intern — Shape Secure SDLC

Verygoodsecurity

United States

On-site

USD 20,000 - 32,000

Part time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Verygoodsecurity is seeking a curious, motivated Application Security Intern to help build secure products and development practices. You will partner with security and engineering teams to evaluate application risk, improve secure software development workflows, and help developers ship software safely in an environment handling sensitive payment and identity data.

Ideal candidates are detail-oriented, collaborative, and eager to learn, with exposure to security concepts, code, and tooling.

Qualifications

  • Foundational understanding of application security concepts such as the OWASP Top 10, API security, authentication and authorization, secure coding, and common software vulnerabilities.
  • Ability to read and reason about code in Java, Python, JavaScript, or Go.
  • Familiarity with Git, the software development lifecycle, and basic testing or debugging workflows.
  • Strong interest in secure software design, cloud-native architectures, and automation.
  • Strong written and verbal communication skills, with the ability to explain technical issues clearly to both security and engineering stakeholders.
  • Curious, collaborative, and excited to learn how security can enable developers rather than slow them down.

Responsibilities

  • Support application security reviews for services, APIs, and new product features across the VGS platform.
  • Help identify, validate, and track security findings from static analysis, dependency scanning, container scanning, and other security testing tools.
  • Participate in threat modeling and secure design discussions with engineering teams during feature development.
  • Help evaluate the security of AI-enabled development workflows, including internal AI systems integrated into the SDLC, by thinking like both an attacker and a defender to identify risks and improve guardrails.
  • Assist with manual testing and validation of web application and API security issues, including access control, authentication, input validation, and secrets handling.
  • Help improve secure SDLC processes by contributing to developer guidance, secure coding resources, and repeatable review checklists.
  • Work with engineers to understand remediation options and clearly document security risks and recommendations.
  • Contribute to improving security tooling and guardrails in CI/CD and development workflows.
  • Be proactive and innovative; we rely on your feedback to help build a world-class product securely.
  • Be a part of a team that believes in transparency, collaboration, grit, and humility, and in doing the right thing for our customers and the company.

Skills

Java
Python
JavaScript
Go

Education

Pursuing CS/Cybersecurity/SE degree

Tools

Git
Burp Suite
SAST/DAST tools
Docker
Kubernetes
CI/CD pipelines

Job description

Verygoodsecurity is seeking a curious, motivated Application Security Intern to help build secure products and development practices. You will partner with security and engineering teams to evaluate application risk, improve secure software development workflows, and help developers ship software safely in an environment handling sensitive payment and identity data.

Ideal candidates are detail-oriented, collaborative, and eager to learn, with exposure to security concepts, code, and tooling.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Application Security Engineer - Shape Secure DevOps
Senior Application Security Engineer - Shape Secure DevOps

LPL Financial • Tempe (AZ)

On-site
USD 101,000 - 168,000
401K matching
Health benefits
Employee stock options
+2
Remote Application Security Engineer: Strengthen the SDLC
Remote Application Security Engineer: Strengthen the SDLC

Bright-Vision-Technologies • United States

Remote
USD 85,000 - 105,000
Remote Application Security Engineer | Secure SDLC Expert
Remote Application Security Engineer | Secure SDLC Expert

Compu-Link • Austin (TX)

On-site
USD 115,000 - 130,000
Medical, dental, vision
Health Savings Account
401(k) with match
+2
Hybrid App Security Engineer—Secure SDLC Leader
Hybrid App Security Engineer—Secure SDLC Leader

Packsize • Salt Lake City (UT)

Hybrid
USD 120,000 - 150,000
Product & App Security Intern: Build Secure Software Skills
Product & App Security Intern: Build Secure Software Skills

Socket.dev • Round Rock (TX)

On-site
USD 29,000 - 43,000
Remote Application Security Internship – Offensive Research
Remote Application Security Internship – Offensive Research

Doyensec LLC. • Page (AZ)

Remote
Opportunity for professional growth
Cutting-edge research experience
Feedback and guidance
Remote Application Security Engineer | Secure SDLC & Cloud
Remote Application Security Engineer | Secure SDLC & Cloud

BairesDev • United States

Remote
USD 90,000 - 130,000
100% remote work
Excellent compensation
Flexible hours
+2
Remote Application Security Engineer — Secure SDLC
Remote Application Security Engineer — Secure SDLC

Fragomen • United States

On-site
USD 90,000 - 120,000
Senior Security Engineer
Senior Security Engineer

Mach7 Technologies • New Jersey

On-site
USD 120,000 - 190,000
Remote Application Security Architect - SDLC Security
Remote Application Security Architect - SDLC Security

Beacon Hill • United States

On-site
USD 120,000 - 160,000