Summary
Navy Federal Credit Union is seeking a Summer Associate Intern to support its Adversarial Security Practice. The role involves assisting with penetration testing, threat research, remediation validation, security automation, documentation, and strategic cybersecurity initiatives while completing an independent capstone project.
Responsibilities
- Support application, infrastructure, cloud, wireless, and API penetration testing activities, including information gathering, security testing, vulnerability analysis, and documentation
- Assist with researching emerging cyber threats, attack techniques, vulnerabilities, and industry security trends to enhance the organization's security testing capabilities
- Participate in remediation validation efforts to verify that identified security findings have been effectively addressed
- Support the development and maintenance of penetration testing procedures, playbooks, governance documentation, and operational processes
- Assist with the creation of reports, presentations, and other deliverables that communicate security findings, recommendations, and program objectives to technical and business audiences
- Collaborate with cybersecurity, technology, and business teams to understand system architectures, security controls, and organizational processes
- Evaluate and recommend improvements to security testing methodologies, offensive security capabilities, and assessment processes
- Contribute to strategic cybersecurity initiatives designed to improve the organization's ability to identify, detect, and respond to cyber threats
- Develop recommendations based on research, testing results, industry best practices, and empirical evidence
- Support security automation, process improvement, and capability development efforts across the Adversarial Security Practice
- Participate in team meetings, knowledge-sharing sessions, and cross-functional collaboration opportunities to gain exposure to a broad range of cybersecurity disciplines
- Complete an independent capstone project that delivers lasting value through security research, process improvement, capability development, or strategic recommendations
Skills
- To qualify for this position, applicants must be currently pursuing a degree from an accredited college or university and have an anticipated graduation date of December 2027 or later
- Must be pursuing a Bachelor's or Master's degree from an accredited college or university in Cybersecurity, Computer Science, Information Technology, Information Systems, Computer Engineering, or a related field
- Demonstrated interest in cybersecurity, ethical hacking, penetration testing, security engineering, or information assurance, such as participation in Capture the Flag (CTF) events, Hack The Box, VulnHub, collegiate cyber defense or CTF teams, security clubs, local cybersecurity meetups, security conferences, personal lab environments, vulnerability research, or similar hands-on learning activities
- Basic understanding of networking concepts, operating systems, web applications, and common security principles
- Familiarity with common cybersecurity threats, vulnerabilities, attack techniques, and defensive controls
- Strong analytical and problem-solving skills with the ability to research complex topics and develop practical recommendations
- Effective verbal and written communication skills, including the ability to clearly present technical concepts to diverse audiences
- Ability to work independently while collaborating effectively within a team environment
- Demonstrated curiosity, initiative, and a willingness to learn new technologies and cybersecurity concepts
Qualifications
Must Haves
- To qualify for this position, applicants must be currently pursuing a degree from an accredited college or university and have an anticipated graduation date of December 2027 or later
- Must be pursuing a Bachelor's or Master's degree from an accredited college or university in Cybersecurity, Computer Science, Information Technology, Information Systems, Computer Engineering, or a related field
- Demonstrated interest in cybersecurity, ethical hacking, penetration testing, security engineering, or information assurance, such as participation in Capture the Flag (CTF) events, Hack The Box, VulnHub, collegiate cyber defense or CTF teams, security clubs, local cybersecurity meetups, security conferences, personal lab environments, vulnerability research, or similar hands-on learning activities
- Basic understanding of networking concepts, operating systems, web applications, and common security principles
- Familiarity with common cybersecurity threats, vulnerabilities, attack techniques, and defensive controls
Nice to Haves
- Strong analytical and problem-solving skills with the ability to research complex topics and develop practical recommendations
- Effective verbal and written communication skills, including the ability to clearly present technical concepts to diverse audiences
- Ability to work independently while collaborating effectively within a team environment
- Demonstrated curiosity, initiative, and a willingness to learn new technologies and cybersecurity concepts
Benefits