Security / Privacy Engineer (Intern)
About the Role
We’re looking for a Security & Privacy Engineering Intern who wants to build real safeguards into production systems—not just run tools and generate reports.
You’ll work on implementing core security and privacy controls across systems handling sensitive speech data. This includes access control, encryption, auditability, and data protection in a fast-moving environment where systems are still evolving.
You’ll collaborate closely with engineering and product teams to ensure security is built into the system by design—not added later. Your work will directly impact user trust, data safety, and enterprise readiness.
If you think critically about risk, care about building secure systems, and want to see your work protect real users, this role will challenge you in the right ways.
What You Will Do
Contribute to IAM and RBAC design and implementation
Work with encryption and KMS to secure data in transit and at rest
Design and implement audit trails, logging, and data retention policies
Participate in secure SDLC practices and security reviews
Support threat modeling and risk assessments
Build privacy-preserving patterns for PII handling and redaction
Document security controls, guidelines, and best practices
What We’re Looking For
Basic understanding of IAM and RBAC concepts
Familiarity with encryption fundamentals and key management
Exposure to secure development practices and security reviews
Awareness of common security risks and mitigation strategies
Understanding of privacy concepts around PII handling
Ability to think through trade-offs between security, usability, and speed
Founding Mindset
You think in terms of protecting users and the business, not just tools
You ask “what’s the worst that could happen?” before making decisions
You take ownership of security and privacy outcomes
You balance strong controls with usability and development speed
You proactively identify risks before they become incidents
Bonus
Experience with security tools (SAST, DAST, secret scanning)
Exposure to incident response or security monitoring
Familiarity with compliance frameworks like SOC 2 or ISO 27001
Experience with security reviews or vendor due diligence
What Success Looks Like
Within 4–6 weeks, you should be able to:
Own one or more security or privacy initiatives
Ship at least one meaningful control into production
Identify and reduce risk in a critical system area (auth, logging, PII)
Improve documentation and patterns for secure development
What You’ll Get
Hands-on experience building security and privacy into real systems
Direct collaboration with founders and core technical teams
Ownership of meaningful security initiatives—not just audits
A portfolio of controls, designs, and improvements you contributed to
A strong pathway into security engineering or privacy-focused roles
Who This Is Not For
If you only want to run tools and file tickets
If you avoid discussing trade-offs with engineering or product teams
If you prefer slow, compliance-only environments
If you’re looking for a low-pressure internship
Who Will Thrive Here
Builders who see security as an enabler, not a blocker
Engineers who think across systems and user behavior
Calm problem-solvers who can reason about subtle risks
High-agency individuals who care deeply about trust and safety
About the Company
We’re building the speech intelligence layer for Southeast Asia—turning real-world, accented, code-switched speech into structured, usable outputs for businesses.
- Locations
- Singapore
- Remote status
- Fully Remote