1

Information Security Risk Intern Jobs in California

IS Analyst

Los Alamitos, CA · On-site

$79K - $95K/yr

Lead enterprise information security risk assessments by analyzing threats, vulnerabilities, business impact, likelihood, and residual risk. * Interpret regulatory requirements and recognized ...

Provide Information Security Risk Management support and assist with the operational delivery of the program. * Perform risk assessments to address security threats, changes to systems and/or ...

Be Seen First

The Senior Information Security Lead is a hands‐on senior individual contributor responsible for ... Conduct security risk assessments for new systems, architecture changes, and third‐party ...

Showing results 21-40

Information Security Risk Intern information

What does an information security risk intern do?

An Information Security Risk Intern assists organizations in identifying, assessing, and mitigating risks related to information security. Their tasks typically include supporting risk assessments, helping to develop security policies, monitoring compliance, and analyzing security incidents. Interns often work closely with IT and security teams to learn about cybersecurity best practices and regulatory requirements. This role is ideal for students or recent graduates interested in gaining hands-on experience in information security and risk management.

What are the key skills and qualifications needed to thrive as an information security risk intern, and why are they important?

To thrive as an Information Security Risk Intern, you need foundational knowledge of cybersecurity principles, risk management concepts, and current security threats, often supported by coursework in information security or a related field. Familiarity with tools such as risk assessment software, vulnerability scanners, and security information and event management (SIEM) systems, as well as certifications like CompTIA Security+ or ISO 27001 awareness, is desirable. Strong analytical thinking, attention to detail, and effective communication skills help interns excel in identifying risks and collaborating with cross-functional teams. These competencies are crucial for accurately assessing threats and supporting the organization's efforts to mitigate security risks.

What are some common challenges an information security risk intern may face during their internship?

As an Information Security Risk Intern, you may encounter challenges such as understanding complex regulatory requirements, adapting to rapidly evolving security threats, and learning to use specialized risk assessment tools. Interns often need to quickly become familiar with internal policies, frameworks like NIST and ISO 27001, and effective communication with cross-functional teams to identify and report vulnerabilities. Balancing learning opportunities with real-world project deadlines can also be demanding, but these experiences provide valuable exposure to the dynamic nature of cybersecurity risk management.

What is the difference between Information Security Risk Intern vs Cybersecurity Risk Analyst?

AspectInformation Security Risk InternCybersecurity Risk Analyst
Required CredentialsTypically pursuing or recent graduate with relevant courseworkOften requires certifications like CISSP, CISA, or Security+
Work EnvironmentInternship setting, learning-focused, entry-levelFull-time professional role, more responsibility
Employer & Industry UsageInternships in tech, finance, government sectorsEstablished companies, cybersecurity firms, financial institutions
Comparison Search IntentUnderstanding entry-level roles in security riskSeeking professional risk analysis positions

The main difference is that an Information Security Risk Intern is an entry-level, learning-focused position often held by students or recent graduates, while a Cybersecurity Risk Analyst is a full-time professional role requiring more experience and certifications. Interns gain foundational knowledge, whereas analysts perform detailed risk assessments and develop security strategies.

What cities in California are hiring for Information Security Risk Intern jobs?

Cities in California with the most Information Security Risk Intern job openings:

Information Security Engineer 4

Fremont, CA

Lam Research
Manufacturing • 10K+ employees

Full-time

Posted 11 days ago


Lam Research rating

8.2

Company rating: 8.2 out of 10

Based on 46 frontline employees who took The Breakroom Quiz

137th of 499 rated machine equipment manufacturers


Job description

The group you'll be a part of This position will be part of Lam Information Security's Application Security team, supporting Secure SDLC, product security, application risk assessments, threat modeling, vulnerability validation, penetration testing, and AI-related security initiatives across Lam-developed applications and AI-enabled solutions. The impact you'll make This position will increase Lam's Application Security and Product Security capacity by helping scale Secure SDLC reviews, application risk assessments, threat modeling, vulnerability validation, penetration testing, and AI-related security reviews. The role will help reduce security risk earlier in the development lifecycle, improve consistency across Lam-developed applications and AI-enabled solutions, and support engineering teams in delivering secure software with appropriate controls for data, access, AI model usage, logging, and human oversight.

What you'll do Support the objectives of the Application Security team by contributing to secure design, Secure SDLC execution, and product security reviews. Assist with application risk assessments, secure design reviews, threat modeling, code review, vulnerability assessment, and penetration testing. Support the integration and operational use of application security tools, including SAST, SCA and DAST, and other DevSecOps capabilities in CI/CD pipelines.

Work with development teams to identify and document security requirements, common application risks, and required controls based on application risk level, data sensitivity, exposure, and system interconnections. Help engineering teams interpret and apply secure coding standards, OWASP guidance, internal Secure SDLC requirements, and product security best practices. Assist in reviewing AI-related security risks, including prompt injection, insecure model/tool integration, data leakage, excessive autonomy, insecure AI outputs, model sourcing, sensitive data exposure, and lack of human-in-the-loop controls.

Participate in AI-related security initiatives, including secure AI model usage, AI-assisted development governance, AI-enabled application review, and secure MLOps process improvement. Research, evaluate, and help pilot new security capabilities, automation, and AI-assisted AppSec workflows under guidance from senior security engineers. Document findings, recommendations, and review outcomes clearly for application teams, security leadership, and governance tracking.

Partner with cross-functional teams to improve secure development practices and reduce application and product security risk. Who we're looking for Bachelor's degree in computer science, Information Security, Information Technology, Engineering, or related field, or equivalent practical experience. 3+ years of experience in information security, application security, product security, software engineering, DevSecOps, or related technical field.

Working knowledge of Secure SDLC practices, including threat modeling, secure design review, code review, vulnerability assessment, and security testing. Familiarity with common application security frameworks and risks, including OWASP Top 10, API security, authentication/authorization, input validation, secrets management, and secure coding practices. Hands-on or working experience with one or more application security tools such as SAST, DAST, SCA, secrets scanning, container scanning, or vulnerability management platforms.

Basic understanding of CI/CD pipelines and developer tools such as Git, Bitbucket, Jenkins, Azure DevOps, Artifactory, or similar platforms. Ability to analyze technical information, identify security risks, and communicate findings clearly to engineering and security stakeholders. Strong collaboration skills and ability to work with cross-functional global teams.

Preferred qualifications Experience supporting security reviews for cloud, product, or manufacturing/engineering software environments. Experience with Azure, Microsoft DevOps, Kubernetes, containers, APIs, or modern application architectures. Exposure to AI/ML security concepts, including generative AI, RAG, AI agents, model governance, prompt injection, model/data leakage, AI-assisted coding, and secure MLOps.

Familiarity with security requirements for AI-enabled applications, including approved model usage, data minimization, access control, logging, monitoring, human oversight, and secure tool/plugin integration. Experience helping engineering teams remediate application vulnerabilities and validate fixes. Security certifications such as Security+, CSSLP, CISSP, GIAC, or similar are preferred but not required.

Ability to break down complex security problems, document practical recommendations, and contribute to repeatable security review processes. Our commitment We believe it is important for every person to feel valued, included, and empowered to achieve their full potential. By bringing unique individuals and viewpoints together, we achieve extraordinary results.

Lam Research ("Lam" or the "Company") is an equal opportunity employer. Lam is committed to and reaffirms support of equal opportunity in employment and non-discrimination in employment policies, practices and procedures on the basis of race, religious creed, color, national origin, ancestry, physical disability, mental disability, medical condition, genetic information, marital status, sex (including pregnancy, childbirth and related medical conditions), gender, gender identity, gender expression, age, sexual orientation, or military and veteran status or any other category protected by applicable federal, state, or local laws. It is the Company's intention to comply with all applicable laws and regulations.

Company policy prohibits unlawful discrimination against applicants or employees. Lam offers a variety of work location models based on the needs of each role. Our hybrid roles combine the benefits of on-site collaboration with colleagues and the flexibility to work remotely and fall into two categories - On-site Flex and Virtual Flex.

'On-site Flex' you'll work 3+ days per week on-site at a Lam or customer/supplier location, with the opportunity to work remotely for the balance of the week. 'Virtual Flex' you'll work 1-2 days per week on-site at a Lam or customer/supplier location, and remotely the rest of the time. Salary CA San Francisco Bay Area Salary Range for this position: $92,000.00 - $211,000.00

The above salary range for this position is relevant to applicants that reside or work onsite in the California, San Francisco Bay Area only. Salary offers will depend on factors that include the location you work from, your level, education, training, specific skills, years of experience and comparison to other employees already in this role. Actual salary may vary from salary offered due to numerous factors including but not limited to unpaid time off, unpaid leave, company mandated shutdown, and other relevant factors.

Our Perks and Benefits At Lam, our people make amazing things possible. That's why we invest in you throughout the phases of your life with a comprehensive set of outstanding benefits.


What Lam Research employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Lam Research logo

About Lam Research

Sourced by ZipRecruiter

Lam Research designs and builds products for semiconductor manufacturing, including equipment for thin film deposition, plasma etch, photoresist strip, and wafer cleaning processes.

Industry

Manufacturing

Company size

10,000+ Employees

Headquarters location

Fremont, CA, US

Year founded

1980

Social media