11 hours ago

Application Security Engineer Intern

SoFi

On Site
Intern
$75,000
San Francisco, CA

Job Overview

Job TitleApplication Security Engineer Intern
Job TypeIntern
CategoryCommerce
Experience5 Years
DegreeMaster
Offered Salary$75,000
LocationSan Francisco, CA

Who's the hiring manager?

Sign up to PitchMeAI to discover the hiring manager's details for this job. We will also write them an intro email for you.

Uncover Hiring Manager

Job Description

Application Security Engineer Intern at SoFi

Shape a brighter financial future with us. At SoFi, we're changing the way people think about and interact with personal finance through innovative, mobile-first technology. As a next-generation financial services company and national bank, our mission is to help millions of members reach their goals, guided by our core value of 'Put our member's interest first.' Join us to invest in yourself, your career, and the financial world.

The SoFi Product Security team collaborates closely with engineering, product, and design organizations. Our core mission is to secure the products and services delivered to our members and customers. We achieve this by deploying best-in-class Product Security practices, compliance frameworks, and design patterns, working hand-in-hand with product owners, engineers, and executives.

The Role

As an Application Security Engineer Intern, you will play a crucial role in ensuring the security of our existing and new platforms, products, and services. You will work in conjunction with security architects, development engineers, and product teams to review systems and services, ensuring security controls are inherently baked into them.

The ideal candidate is highly collaborative, capable of balancing robust security needs with business objectives, and creative in solving complex Product Security problems within an agile environment.

Please note: The candidate must be available for the entire internship period.

  • Cohort 1: Monday, June 1st, 2026 to Friday, August 21st, 2026
  • Cohort 2: Monday, June 15th, 2026 to Friday, September 4th, 2026

What You’ll Do

  • Conduct security testing and analysis to identify and mitigate potential risks.
  • Assess discovered vulnerabilities and properly prioritize their scope, impact, and necessary response actions.
  • Conduct security reviews of our products and production infrastructure.
  • Contribute to vulnerability management, application security, and/or offensive/red-team operations.
  • Engage in security audit and security regulatory exercises with partners and vendors.
  • Support treatment and remediation activities with identified points of contact and system owners.
  • Collaborate with cross-functional teams to ensure that security is integrated into the SDLC process.
  • Code and help develop in-house application security projects.

What You’ll Need

  • Enrolled in an accredited US-based university (working towards a Bachelor’s or Master’s degree) with an expected graduation date of December 2026 or Spring 2027.
  • Must be returning to school for at least one quarter or semester after the internship.
  • Have no more than 12 months of professional full-time work experience (excluding internships and research assistant roles).
  • Must be willing to relocate to the San Francisco Bay Area and be available to work in the San Francisco HQ office.
  • Basic knowledge of industry standards regarding vulnerability management including Common Vulnerabilities and Exposures (CVE), Common Vulnerability Scoring System (CVSS), OWASP, etc.
  • Basic knowledge of cryptography, including symmetric and asymmetric encryption and software techniques that are commonly used to harden cryptographic algorithms against side-channel vulnerabilities.
  • Experience with different types of vulnerability assessment tools or related experience in vulnerability detection DAST/SAST tools.
  • Excellent written and verbal communication skills.
  • Ability to demonstrate knowledge with prioritizing remediation activities with operational teams through risk ratings of vulnerabilities and assets.
  • Stay up-to-date with the latest security trends and best practices to continuously improve our product security.

Internship Perks

SoFi offers a rich internship experience, including:

  • Access to senior leadership, including exclusive Q&A sessions with executives across all functions of SoFi.
  • Learning sessions for career, financial, and professional development.
  • Networking socials with fellow interns.
  • Opportunities to participate in company-wide events like All-Hands and SoFi circles programming.
  • Exclusive intern swag giveaways.
  • Personalized Mentorship Program.
  • Fully stocked kitchen (snacks & drinks).
  • Invites to Member events, and more!

Key skills/competency

  • Application Security
  • Vulnerability Management
  • DAST/SAST Tools
  • OWASP Top 10
  • Cryptography
  • SDLC Security
  • Risk Assessment
  • Security Testing
  • Red Teaming Principles
  • Threat Mitigation

Tags:

Application Security Engineer
Security Testing
Vulnerability Management
Risk Assessment
SDLC Security
Security Audits
Product Security
Red Teaming
Threat Mitigation
Security Reviews
DAST
SAST
OWASP
CVE
CVSS
Cryptography
Python
Java
Cloud Security
Agile

Share Job:

How to Get Hired at SoFi

  • Research SoFi's culture: Study their mission, values, recent news, and employee testimonials on LinkedIn and Glassdoor.
  • Tailor your resume: Highlight experience with security testing, vulnerability management, DAST/SAST tools, OWASP, and cryptography for an Application Security Engineer Intern role.
  • Prepare for technical questions: Review CVE, CVSS, OWASP Top 10, and basic cryptographic principles to demonstrate your foundational knowledge.
  • Show collaboration and problem-solving: Emphasize teamwork and agile environment adaptability in your interview responses, aligning with SoFi's collaborative culture.
  • Demonstrate passion for security: Discuss latest security trends and your commitment to continuous learning to secure financial products effectively.

Frequently Asked Questions

Find answers to common questions about this job opportunity

Explore similar opportunities that match your background