Productive businesses use 1Password to secure employees at scale.
Security Engineer Intern, Application Security
Location
California + 1 moreAll locations: California | Texas
Posted
3 days ago
Salary
0
Seniority
Entry Level
Job Description
Security Engineer Intern, Application Security
1Password
• Validate incoming security findings from the broader research community using code analysis tooling or other industry standard pentesting tooling e.g. burpsuite. • Work with engineering teams to remediate valid findings in our codebase (product). Respond to security researchers, help with public disclosure. • Build or improve upon new automated workflows and tooling, leveraging LLMs for vulnerability triage, validation, remediation in any of rust, golang, python, etc.
Job Requirements
- Confidence: A willingness to take on new challenges, and see them through to completion.
- Humility: You're not afraid to ask "stupid" questions and make mistakes (as long as you learn from them).
- Curiosity: You look for better ways of doing things, even if everyone seems happy with how they are.
- Teamwork: We work together, and succeed as a team!
- Bonus points for: Software development experience in general, bonus points for rust, golang experience
- Previous experience working with any of Bug Bounty, Vulnerability Management or Pentesting programs at a Software Development or Software Security organization
Benefits
- Generous PTO policy - 2.08 days per month (1.5 work weeks per 4 month term)
- Company-wide wellness days (1 per quarter)
- Employee-led inclusion and belonging programs and ERGs
- Remote-first environment
- Peer-to-peer recognition through Bonusly
- 1Password University access and learning sessions
- Monthly internship events and socials
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Infrastructure & Endpoint Security Engineer
Devoted StudiosCreating equal opportunity for talent to work on games of their dreams
• Design and maintain secure network and infrastructure architecture; • Configure and manage firewalls, VPNs, access controls, and network segmentation; • Secure servers, cloud resources, containers, and virtual machines; • Secure employee workstations and enforce security baselines; • Monitor endpoints and infrastructure for suspicious activity; • Collect, analyze, and correlate security logs; • Detect, investigate, and respond to security incidents; • Perform vulnerability analysis, risk assessment, and remediation; • Conduct system and network hardening; • Develop and deliver internal security trainings and awareness sessions; • Manage and maintain security training platforms and learning content; • Organize phishing simulations and awareness campaigns; • Collaborate with IT, DevOps, Infrastructure, and HR teams; • Complete and review clients security questionnaires and security assessment forms to demonstrate the company’s security posture; • Participate in security and compliance calls with client information security specialists and stakeholders. **Monitoring & Incident Response:** - Set up and maintain security monitoring and alerting; - Investigate anomalies and security incidents; - Perform root-cause analysis and post-incident reviews; - Improve detection, response, and prevention processes. **Security Awareness & Training:** - Plan and deliver security awareness programs; - Manage training platforms and user enrollment; - Track training completion and effectiveness; - Continuously improve training materials based on incidents and risks.
• Define, drive, and execute product strategy and roadmap for cybersecurity and control platforms • Translate enterprise risk priorities, threat scenarios, and regulatory requirements into product capabilities and control solutions • Ensure alignment between product outcomes, risk reduction, and business resilience objectives • Act as the voice of the customer, representing the needs of control owners, engineers, risk partners, and business stakeholders • Engage in continuous discovery, test-and-learn, and feedback loops to validate assumptions and refine product direction • Build strong partnerships across Product Security, Cyber Operations, Technology Risk, and engineering teams • Decompose complex problems into manageable work items and maintain a prioritized product backlog • Lead iterative, outcome-based delivery using agile and test-and-learn methodologies • Provide clear direction, timely feedback, and alignment across cross-functional teams • Ensure controls are designed with clear linkage to risk scenarios, exposure conditions, and business outcomes • Enable standardized control onboarding, lifecycle management, and adoption across domains • Define and manage KPIs to measure control effectiveness, risk reduction, and product adoption
• Design and maintain SAP authorization architecture • Design and maintain SAP Fiori security architecture • Ensure proper authorization design for SAP Fiori and related services • Establish security standards across SAP modules • Ensure SAP security architecture supports MP Materials’ SAP S/4HANA Private Cloud environment • Provide security guidance for SAP integrations, enhancements, and custom development • Define and maintain the long-term SAP security strategy and roadmap • Own and maintain the SAP Segregation of Duties (SoD) framework • Identify and remediate access risks and control gaps • Support internal and external audit activities • Administer and continuously improve SAP GRC Access Control • Establish scalable processes for access requests and approvals • Manage privileged access governance and SAP GRC Emergency Access Management processes • Improve automation and governance of SAP access lifecycle management processes • Partner with infrastructure and cybersecurity teams to ensure SAP security aligns with enterprise security standards • Serve as the SAP security subject matter expert within the SAP Center of Excellence.
Software Developer, Security
TechBiz GlobalTechBiz Global is a leading IT recruitment and software development company
• Develop, test, and maintain secure web applications. • Write clean, scalable, and security-focused code. • Build and maintain APIs, backend services, and frontend features. • Identify and resolve security vulnerabilities in applications. • Apply secure coding standards and best practices. • Support secure API development, authentication, and authorization. • Work with WebSockets and real-time application features. • Collaborate with development, product, and security teams. • Participate in code reviews, security reviews, and technical discussions. • Support deployment, configuration, and system hardening. • Prepare technical and security-related documentation when needed




