
Application Security Intern - GPSU/NE
GuidePoint Security13 hours ago
Remote, United StatesIntern
H1B sponsor
Responsibilities
- Build and iterate on AI-assisted application security harnesses, including prompt design, tool integration, output validation, and LLM API integrations.
- Develop AI-driven workflows for security reporting, findings documentation, and evidence collection.
- Operate, configure, evaluate, and benchmark SAST, DAST, SCA, IAST, RASP, and agentic penetration-testing tools under mentorship.
- Triage and validate automated security findings, distinguishing true positives from false positives.
- Review application source code for injection flaws, authentication weaknesses, insecure data handling, and other common vulnerabilities.
- Document findings with evidence, risk context, and remediation guidance using OWASP and secure coding standards.
- Support AppSec tool integrations with CI/CD pipelines and SDLC workflows.
- Participate in limited client-facing tool and code-review engagements while shadowing experienced practitioners.
Requirements
- Currently enrolled in or recently graduated with a degree in computer science, software engineering, or a related engineering field, or able to demonstrate equivalent qualifications through significant hands-on experience with multiple programming languages.
- Exposure to Python, JavaScript, Java, or a similar programming language and an interest in reading and analyzing code.
- Demonstrated interest in AI tools and their application to security workflows.
- Strong written and verbal communication skills for documenting findings and presenting results to technical audiences.
- Technical aptitude, curiosity about application security, and eagerness to learn in a practitioner-led environment.
- Eastern or Central time zone preferred.
- Must be physically located in the United States for the internship, have a personal computing device and high-speed internet, and be available Monday through Friday during Eastern Time Zone support hours.
Benefits
- Part-time paid internship running for 12 weeks, with potential full-time employment at its conclusion.
- Remote U.S.-based work arrangement with a 25–29 hour weekly schedule supporting the Eastern Time Zone.
- Direct mentorship from experienced security practitioners and hands-on work on real engagements.
- Internship is unavailable to candidates residing in Alaska, California, Hawaii, New Mexico, New York, Oregon, Washington, or Wyoming.
Tech Stack
Categories
About GuidePoint Security
GuidePoint Security provides cybersecurity consulting, managed services, and value-added reselling/integration of security products for enterprises and U.S. public-sector agencies. Its teams deliver assessments, penetration testing, cloud and application security, identity and access management, endpoint and network protection, and governance services. Founded in 2011 and headquartered in Reston, Virginia, the privately held company serves Fortune 500 organizations and cabinet-level federal agencies.