About The Role
As a Security Researcher Intern at Semgrep, you will join a team that is incredibly curious, motivated, and collaborative. You will gain broad exposure to our security research and security efforts, working on projects that span multiple security and engineering disciplines. This may include vulnerability research, writing Semgrep rules, engineering improvements to our production environment, or making changes to our rule templates.
During your internship, you will work closely with a dedicated group of security researchers, program analysis experts, and product engineers. You will learn from senior security professionals who bring experience and wisdom from decades of working in-house to secure organizations like Google, Facebook, and successful startups. You’ll be part of a larger intern cohort that is spread out across various teams in engineering. You’ll attend lunch and learn sessions across the company, learning about everything from the relative strengths and weaknesses of different development languages to the best ways to secure modern cloud infrastructure. You’ll get to use Semgrep and work to improve the product experience for our customers.
Responsibilities
- Participate in our Security Research operations program.
- Triage new vulnerabilities and probe deeply into the source code to write Semgrep rules.
- Conduct research and generate patterns to identify specific CVEs in our customers' code.
- Engineer improvements to our rule production pipeline, infrastructure, and rule writing tools.
- Develop impactful ways to improve rule writing efficiency, such as through automations, integrations with AI, or templates.
- Collaborate with other Security Researchers at Semgrep to complete projects and tasks.
- Present your work to the Semgrep team at the end of your internship.
Ideal Candidate
- Interested in building a career in Security or Security Research.
- Curious to learn about vulnerabilities.
- Eager to gain experience with a broader range of languages.
- Experienced with scripting in one or more well-used languages: Python, Go, etc.
- Able to work in our San Francisco office.
- Available to start your internship on May 27th, 2025, or June 23rd, 2025.
A Day in the Life
A typical day might involve conducting research for vulnerabilities in multiple languages, working with the Security Research team to design and implement improvements to our tooling, helping to debug and fix errors in our infrastructure, and reviewing and writing code to add a feature in our rule writing pipeline.
What We Offer
- $2,400 per week for our 10-week full-time internship.
- Close 1:1 mentorship from full-time engineers on the team.
- Regular feedback from your team’s manager.
- The opportunity to work in-person in our San Francisco office.
- An intern cohort of peers.
Our goal is to competitively and fairly compensate every Semgrep employee with a system that equally rewards those who are vocal and those who are less comfortable making demands during the final steps of the hiring process. We update our compensation bands based on market data to ensure they’re above the average for comparable roles.
We also invest in our employees’ well-being and long-term success with comprehensive health plans, generous vacation time, 401k, learning stipends, and more. Our benefits are for everyone, so that you’re taken care of, and we work with individuals to make sure they have what they need, whether that’s quiet work space, adjusted hours, or something else.
Benefits Extracted with AI
- Comprehensive health plans
- Generous vacation time
- 401k
- Learning stipends
- Close 1:1 mentorship
- Regular feedback
- Intern cohort of peers
Similar jobs
Last update: 23 minutes ago
Senior Security Engineer
Join Atos as a Senior Security Engineer in Amstelveen, focusing on cybersecurity, network security, and vulnerability management.
Data Security Engineer - Cryptography
Join Vattenfall as a Data Security Engineer focusing on cryptography and key management in a hybrid work environment.
Solutions Engineer
Join Darktrace as a Solutions Engineer in Amsterdam, providing technical pre-sales and post-sales support in a hybrid work environment.
Senior Full-Stack Engineer ReactJS/NodeJS
Join Gorgias as a Senior Full-Stack Engineer specializing in ReactJS and NodeJS, enhancing AI-powered ecommerce solutions.
Full Stack Engineer with Node.js and React
Join RightCrowd as a Full Stack Engineer to develop cloud-native applications using Node.js and React. Work remotely with cutting-edge technology.
IT QA Engineering Intern - Rookie Program SS' 2025
Join Under Armour's Rookie Program as an IT QA Engineering Intern in Amsterdam. Gain hands-on experience in QA engineering with a focus on testing and agile processes.
Senior Solutions Engineer
Join Reddit as a Senior Solutions Engineer in Amsterdam to support our growing advertising business with technical expertise and problem-solving skills.
Senior Backend Engineer - Payments
Join Instapro Group as a Senior Backend Engineer in Berlin, focusing on PHP and payment systems in a hybrid work environment.
Entry Level Back-End Software Engineer (Java)
Join Grammarly as an Entry Level Back-End Software Engineer in Berlin. Work with Java, AWS, and more in a hybrid environment.
Senior Fullstack Developer for AI-Driven Mission Technologies
Seeking a Senior Fullstack Developer for AI-driven mission technologies, focusing on Java, JavaScript, Python, and C++. Remote work available.
Senior C++ Computer Vision Engineer
Join a cutting-edge AI-DeepTech startup in Berlin as a Senior C++ Computer Vision Engineer. Work on world-class on-device AI technology.
Front-end Angular Engineer
Join Zivver as a Front-end Angular Engineer to shape the future of secure web applications. Work with Angular, TypeScript, and more in Amsterdam.
Senior Software Engineer - Backend Development
Join Sysdig as a Senior Software Engineer to develop scalable backend services using Go, RESTful APIs, and microservices in a hybrid work environment.
Lead Developer with DevOps and Functional Programming
Join Reaktor as a Lead Developer in Amsterdam, focusing on DevOps, Functional Programming, and JavaScript in a hybrid work environment.
Salesforce Software Engineer
Join AnyDesk as a Salesforce Software Engineer to develop and maintain internal business systems in a dynamic, remote-friendly environment.
Senior Software Engineer - Embedded Systems and Cryptography
Join Adva Network Security as a Senior Software Engineer in Berlin, focusing on embedded systems and cryptography.
Senior Software Engineer - .NET and Go
Join Sysdig as a Senior Software Engineer in Berlin, focusing on .NET and Go for cloud security solutions.
Senior Backend Engineer (Java, Spring)
Join Moss as a Senior Backend Engineer in Berlin, focusing on Java, Spring, and microservices.
Backend Software Engineer - Privacy Technology
Join Zalando as a Backend Software Engineer in Privacy Technology, focusing on data protection and privacy automation services.
Working Student QA - Automation (d/f/m)
Join Bettermile as a Working Student in QA Automation, focusing on web and mobile testing with Java and Cucumber in a hybrid work environment.
Junior Security Software Engineer
Join CHECK24 as a Junior Security Software Engineer in Berlin, focusing on application security, vulnerability management, and penetration testing.
Senior Software Engineer - Satellite Communications
Join ST Engineering iDirect as a Senior Software Engineer to develop satellite communication products using C++, Linux, and Agile methodologies.
Senior Backend Engineer - PHP, Symfony, Laravel
Join Instapro Group as a Senior Backend Engineer, working with PHP, Symfony, and Laravel in a hybrid environment.
Intermediate Backend Engineer - Ruby on Rails, PostgreSQL
Join GitLab as an Intermediate Backend Engineer to enhance CI platform performance using Ruby on Rails and PostgreSQL in a remote role.