Security Engineer Intern
Summary
Internship on Swile's Security team in Paris: handling real security alerts (triage, investigation, escalation), running targeted security audits, owning automation and hardening projects, and supporting fraud investigations. Core work involves Python scripting, detection improvement, and exposure to SIEM/log analysis.
About the role
Our Security team protects Swile's products, data and engineering platform. We work with a simple principle: when something is recurring, we automate it, and when a security requirement can become code, we write the code.
As a Security Engineer Intern, you will not shadow the team, you will be part of it. You will handle real alerts, run your own audits and own projects end to end, with a dedicated mentor in the team throughout your internship.
What you will do
Detection and response
- Handle day to day security alerts: triage, investigate, qualify, escalate when needed.
- Improve what we detect: reduce noise, close detection gaps, propose new signals.
- Automate the recurring: when an alert or a manual check keeps coming back, script it away. This is where we expect you to leave a mark.
Security audits
- Run targeted audits, from a few days to a few weeks, on applications, configurations or third party providers.
- Turn findings into a prioritised remediation plan rather than a list of tickets.
Projects you will own
- Ad hoc security projects across the engineering platform.
- Security review and hardening of the tools and integrations we rely on (Dust, third party providers, internal integrations).
Fraud
- Support fraud investigations: dig, follow the trail, understand how an abuse pattern works and how we could detect it earlier.
What we are looking for
This is an internship, so how you think matters more than what you already know.
- You learn fast and you are genuinely curious about security.
- You are a doer: you answer quickly, you close loops, you do not let things sit.
- You are pragmatic: you calibrate your response to the actual level of urgency and risk, and you know that not everything is a P1.
- You are open minded and comfortable asking questions across engineering teams.
- You are comfortable working in English, written and spoken.
- You have some scripting ability (Python or equivalent) and a basic understanding of web applications, APIs and cloud environments.
Nice to have that would make you stand out
- Personal projects, CTFs, homelab, bug bounty or security writeups.
- First exposure to a SIEM, to detection rules or to log analysis at scale.
- Curiosity for fraud and abuse patterns in a financial product.
What this internship is not
- Not a pure GRC, compliance or policy writing internship.
- Not a pentest internship.
- Not a role where you watch dashboards without changing them.
Practical details
- Location: Paris preferred.
- Duration and start date: 3-6 months internship, ASAP or from January 2027
- Mentor: a Security Engineer from the team.
Skills
As published by lever
Resume/CV, Full name, Email, Phone, Current location, Current company, LinkedIn URL, Twitter URL, GitHub URL, Portfolio URL, Other website, Gênero - Qual gênero você se identifica? (Preenchimento não obrigatório), Raça - Você se autodeclara como uma pessoa: (Preenchimento não obrigatório), Como você descreve sua orientação afetivo-sexual? (Preenchimento não obrigatório), Você se identifica como pessoa com deficiência? (Preenchimento não obrigatório), Caso sim, com qual condição você se identifica? (Preenchimento não obrigatório), Você se identifica como pessoa neurodivergente?Caso precise de alguma adaptação específica devido a uma deficiência e/ou neurodivergência, por favor, nos informe com mais detalhes sobre como podemos melhor atender. Essas informações serão tratadas como confidenciais e utilizadas apenas com o propósito de nos adequar e prover a melhor acessibilidade para você.
