Salary
💰 $26 - $51 per hour
Tech Stack
Cyber SecurityJavaJavaScriptPythonRubySDLCSpring
About the role
- Implement and test Next Gen platform security products as part of SDLC to enable PayPal's product development.
- Perform quality code reviews to validate against the secure coding guidelines, ensuring that the code conforms to the design.
- Drive vulnerability analysis and remediation.
- Identify, drive and implement security process improvements.
- Collaborate closely with engineers, developers, security architects, product managers, program managers and other teams to deliver high quality products.
- Stay up to date with the latest security trends, technologies, vulnerabilities, and attacks, and incorporate this knowledge into threat models.
- Determine the impact of vulnerabilities in our environment and how to communicate them to stakeholders across the company.
- Understand and apply the enterprise policies, standards and framework for governance, risk & compliance and be an advocate of PayPal’s “Risk as a Lifestyle” philosophy.
- Execute based on the Enterprise Risk Management standard on how to identify, assess, mitigate, monitor, test and report on risks and controls required by the PCIS organization.
- Work with different stakeholders and external auditors to maintain up-to-date documentation for scoping, testing, and remediation of risks and controls across the enterprise.
- Work with central technology controls testing team to validate key controls with stakeholders to provide an early warning to management for timely correction and remediation action.
- Assess audit findings / gaps, including control weaknesses in coordination with different stakeholders and assist with development risk-based approach for management action plans.
- Support development of tools and solutions to enable Technology risk management across PayPal organization and continuously identify opportunities to bring in efficiencies in risk management function.
Requirements
- Overall Passion for cybersecurity and learning through asking questions and experimenting with different approaches
- Willingness to collaborate with team members and communicate effectively within a professional setting
- Ability to take initiative and seek out opportunities to expand your knowledge and skills
- Ability to operate in fast-paced environment, in a self-driven manner, taking initiative and ownership to propose improvements and solutions
- Attention to detail, excellent analytical thinking, communication and time management skills
- Basic understanding of secure coding practices and common security vulnerabilities (e.g., OWASP Top 10)
- Experience with at least one programming language (e.g., Java, Python, JavaScript, Ruby, etc.)
- Interest in learning about application security, including security tools like SAST, DAST, and SCA
- Basic understanding of version control systems like Git
- Experience in working with large data sets to determine patterns and drive to key takeaways
- Interest in learning risk management methodologies, frameworks, and principles (e.g., SOX, COBIT, NIST, CSA, ITIL, PCI, GDPR, etc.)
- Must currently be pursuing Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or related field from an accredited college or university
- Must be returning to school in the Fall of 2026
- Must reside in the U.S. during the Summer internship program
- Must be able to obtain authorization to work in the U.S. for the summer
- Internship is Summer 2026 only (Spring and Fall 2026 internships are not available)