Application Security Intern - GPSU/NE
Overview
As part of the GPSU program, we are seeking an Application Security Intern to support GuidePoint Security’s Northeast region. In this role, you will gain hands-on experience across three core areas: AppSec tool management, manual code review, and AI harness development. You will work under direct mentorship from experienced practitioners on real work, not simulations. Prior directly related experience is not required, but technical aptitude and genuine curiosity about application security are essential.
Currently enrolled, or recently graduated with a degree in computer science, software engineering, or a related engineering field is required, or equivalent demonstrated by significant hands-on experience with multiple programming languages. You will work with the NE AI and AppSec teams as part of the NE DevSecOps team, building practical skills in tooling, code analysis, and AI-enabled security automation. You will also participate in limited client-facing engagements under mentorship, gaining early exposure to professional security consulting.
Responsibilities
AI Harness Development
Build and iterate on AI-assisted security harnesses under mentorship, including prompt design, tool integration, and output validation
Develop AI-driven workflows for security reporting, findings documentation, and evidence collection
Research and evaluate emerging AI models and frameworks applicable to application security workflows
Contribute to prototype builds that integrate LLM APIs into AppSec tooling and testing pipelines
Participate in agentic pentesting tool evaluations, documenting findings and supporting harness refinement
AppSec Tool Management
Operate and configure SAST, DAST, SCA, IAST, and RASP tools under mentorship, gaining hands-on experience with each tool category
Triage and validate findings from automated security tools, distinguishing true positives from false positives
Support tool configuration, tuning, and integration tasks within CI/CD pipelines and SDLC workflows
Assist in evaluating and benchmarking emerging AppSec tools, including agentic pentesting platforms
Participate in client-facing tool discussions and shadowed engagements under mentorship
Manual Code Review
Review application source code for common vulnerability classes including injection flaws, authentication weaknesses, and insecure data handling
Perform manual code review under mentorship across multiple languages, applying OWASP and secure coding standards
Document findings with supporting evidence, risk context, and remediation guidance
Collaborate with the AppSec team to correlate manual review findings with automated tool output
Shadow client code review engagements and contribute to findings documentation under mentorship
Qualifications
Currently enrolled, or recently graduated with a degree in computer science, software engineering, or a related engineering field; significant hands-on experience with multiple programming languages (required)
Exposure to one or more programming languages (Python, JavaScript, Java, or similar) and interest in reading and analyzing code
Demonstrated interest in AI tools and their application to security workflows
Strong written and verbal communication skills, with the ability to document findings and present results to technical audiences
Technical aptitude and eagerness to learn hands-on in a fast-paced, practitioner-led environment
Eastern/Central time zone, preferred
Internship Details and Expectations
This is a part-time, remote paid internship ($20/hr) that runs for 12 weeks, with potential for full-time employment at the conclusion of the internship. Interns are expected to:
Be physically located within the United States during the entire duration of the internship
Work 25-29hrs/wk Monday-Friday supporting the Eastern Time Zone
Have a personal computing device and access to high-speed internet during working hours
This position is not available for candidates living in the following states: Alaska, California, Hawaii, New Mexico, New York, Oregon, Washington and Wyoming.
The below perks are for those that join GuidePoint Security for full-time employment only.