Year-Round Intern - Application Security

The OCCDallas, TX
$25 - $25Hybrid

About The Position

The Product & Application Security team is responsible for securing OCC's applications across their entire lifecycle, from code to production. Our work spans security testing (penetration testing, SAST, DAST, SCA, container scanning), security integration into developer workflows and CI/CD pipelines, and vulnerability research and advisory. A core part of our mission is making secure development the path of least resistance for every developer at OCC. The intern will support a key initiative: using frontier AI models to develop, codify, and embed security standards directly into OCC's developer workflows and AI-assisted coding environments. This includes building AI-consumable security configurations, automating the enforcement of security standards within our existing tooling and pipelines, and helping reduce the manual effort currently required to maintain consistency across OCC's development ecosystem. This is high-impact work that will have lasting effect on how security is practiced across the organization long after the internship concludes. The intern will gain hands-on experience at the intersection of application security, software engineering, and frontier AI, working alongside experienced security professionals on real, production-affecting initiatives rather than isolated side projects.

Requirements

  • Rising senior or second-year graduate student, graduating December 2027 or May/August 2028.
  • Desired Majors: Computer Science, Cybersecurity / Information Security, Software Engineering, Computer Engineering, Management Information Systems
  • Basic programming/scripting ability (Python, Bash, or similar) needed for automation work
  • Familiarity with software development concepts and the SDLC
  • Understanding of version control (Git/GitHub)
  • Basic familiarity with AI/LLM tools and concepts (Claude, GitHub Copilot, Cursor, or similar)
  • Ability to work collaboratively across technical teams and communicate findings clearly to both security and non-security audiences
  • Self-starter who can take ownership of deliverables and drive work forward with minimal supervision
  • Strong written communication — the intern will be producing standards documentation that developers will read and follow
  • Curiosity and willingness to learn — AppSec sits at the intersection of security, development, and AI, so adaptability matters
  • Attention to detail

Nice To Haves

  • Exposure to CI/CD concepts (GitHub Actions, Jenkins, etc.) a plus
  • Familiarity with security concepts — OWASP Top 10, common vulnerability classes a plus
  • Experience with any security tooling (Snyk, SonarQube, Burp Suite, etc.) a plus
  • Familiarity with static analysis or code review a plus
  • Basic understanding of APIs and how applications communicate a plus
  • Exposure to cloud environments (AWS, Azure, GCP) a plus
  • Experience with prompt engineering or structuring AI-consumable instruction files (e.g.,markdown-based configuration such as Claude.md) a plus

Responsibilities

  • Using frontier AI models and LLMs as core engineering tools to research, synthesize, and codify OCC-specific secure coding standards based on industry frameworks (OWASP, NIST,CIS)
  • Building AI-consumable configuration files (e.g., Claude.md) that embed security requirements directly into AI-assisted developer workflows and GitHub repositories across OCC
  • Automating the enforcement of security standards within CI/CD pipelines and developer tooling (Snyk, SAST/DAST tools, GitHub), writing real automation that runs in production workflows
  • Collaborating with development teams to integrate and test security standards in real developer environments
  • Assisting with vulnerability triage and remediation guidance, gaining exposure to real-world security findings alongside experienced AppSec engineers

Benefits

  • Paid sick leave accrued based on hours worked
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service