Upstox logo
🔥 Viewed by 57 students today✓ Verified Listing

App Security Intern

UpstoxCompetition: Moderate • Entry Level
|Bangalore|By CampusToCareer Editorial Team|Posted 1 day ago|Last verified 1 day ago
✓ Company career page verified✓ Application route verifiedLast checked on Jun 25, 2026
💼 Experience Required
Fresher / 0-1 Years
🕒 Employment Type
Internship
🎓 Target Batch
2026
🚀 Role Category
Engineering
📌 How to Apply
Click on the Apply button
💰 Stipend
Not publicly disclosed
Compensation follows company standards.
Skills Recommended
Web applicationmobile applicationand API security fundamentalsOWASP Top 10 for WebMobileand APIAWSPythonGolangOAuth 2.0SAMLOIDCCI/CD pipelinescontainerization
Career Guide • 5 min role analysis

Complete preparation guide for App Security Intern

Upstox is hiring for App Security Intern (Internship) in Bangalore, targeting candidates from the 2026 batch with Fresher / 0-1 Years experience. Key skills mentioned in the listing include Web application, mobile application, and API security fundamentals, OWASP Top 10 for Web. This page goes beyond the raw listing so students can understand what Upstox usually expects for this role, how to prepare for their screening process, and how to apply more thoughtfully instead of forwarding a generic resume.

AI editorial content is being generated for this role. Check back shortly for personalized interview questions, salary insights, and skill breakdowns.

Application trackerSkill learning pathsDaily coding practice

Role Preparation Guide

CampusToCareer Editorial

This page is built as a career preparation guide for App Security Intern at Upstox. Read the editorial sections below for company context, skill breakdowns, interview preparation, and salary insights. The original employer job description is preserved at the bottom of this page for reference.

💡 Editor's Comprehensive Career Guide for this Role

🏢 About Upstox & Culture

Upstox is a leading organization in the technology and services industry, committed to driving innovation and digital transformation. They provide a dynamic and supportive environment for early-career professionals to learn, collaborate, and build solutions at scale. Freshers at Upstox are integrated into production teams with structured onboarding and mentorship.

📈 Career Progression Pathway

Beginning as an entry-level associate or intern at Upstox, you can progress to a Senior Engineer role within 2-3 years, taking ownership of core services. Long-term pathways include Technical Architect, Dev Lead, or Product Management.

💰 Salary & Compensation Insights

Compensation for this fresher profile at Upstox is highly competitive, aligning with standard market standards for entry-level engineering roles. Stipends or base salaries are accompanied by health benefits and learning allowances.

⚡ Recruitment & Selection Process

1
Written Aptitude & Coding AssessmentUsually consists of multiple choice questions on core subjects (DBMS, OS, Networks) and 1-2 coding problems.
2
Technical Interview 1Deep dive into project architecture, coding skills, and basic algorithms.
3
Technical Interview 2 (For advanced profiles)Focuses on system design, database schemas, and writing clean mock code.
4
HR / Managerial RoundBehavioral alignment, leadership questions, and culture fit check.

CampusToCareer Analysis

⭐ Original AnalysisLast Verified: Jun 25, 2026

🎯 Should You Apply?

✓ Suitable for:

  • Graduates looking to join Upstox
  • Science & engineering backgrounds
  • Candidates seeking structured team environments

✗ Not ideal if:

  • Seeking executive or senior roles
  • Comfortable only with remote options

⚡ Difficulty Level

Application DifficultyMedium
Expected CompetitionHigh
Interview Rounds2–4 rounds
Note: These stats are evaluated by our editorial team based on past application metrics and hiring trends.

🎓 What You Will Learn

Skills you may develop through this role:

  • Web application
  • mobile application
  • and API security fundamentals
  • Professional collaboration

📝 How to Prepare

  1. Research Upstox's main business services and engineering culture
  2. Brush up on core database and coding fundamentals
  3. Prepare clean projects explanations
  4. Practice situational communication questions

📄 Resume Match Tips

Highlight these on your resume to stand out:

  • Highlight collaborative projects
  • Mention any tech certifications that align with Upstox's domain
  • Keep formatting clean and easy to scan
⚠️

Reality Check

This role at Upstox provides a great entry-point into the technology space. However, it requires active self-learning, and you may handle rotational maintenance or onboarding documentation tasks initially.

❓ Frequently Asked Questions

Editorial Analysis Disclaimer: The opinions expressed in this CampusToCareer Analysis are formulated by our platform editors to guide students. Please review the official company listing before applying.
Apply Now
Reference Only

Original Job Description

The text below is preserved from the employer's listing for verification. CampusToCareer editorial content above is the primary guide for preparing your application.

Job Description

App Security Intern

Apply Now

Job Description

Job Title: Security Engineering Intern (Appsec)

Location: Bangalore

Work arrangement: 5 days in the office

About Upstox

At Upstox, we’re building the future of investing — simple, powerful, and for everyone. We're one of India’s fastest-growing fintech platforms, backed by the best in the business, including Mr. Ratan Tata and Tiger Global, and on a mission to make wealth creation accessible to every Indian. From first-time investors to seasoned traders, millions trust us to power their financial journeys. We're not just moving fast — we’re moving with purpose. If you thrive in a high-energy, high-impact environment, you're in the right place.

The Role:

As a Security Engineering Intern (AppSec), you will be embedded in the application security team at Upstox, working hands-on to identify, assess, and help remediate security vulnerabilities across our web, mobile, and API surfaces. This is not a bug-bounty role — we're looking for an engineer who can deeply understand application flows, reason about risk, and contribute meaningfully to secure product development. You will work closely with engineering and product teams to build security into the SDLC, participate in architecture reviews and threat modelling, and help triage and manage our bug bounty program. Beyond testing, you will also contribute to security automation initiatives and internal tool development projects — writing scripts and building utilities that scale our security capabilities and reduce manual effort across the team.

We are looking for individuals who are self-driven, quick starters with a strong ownership mindset.

What You’ll Own

Your role will involve:

● Perform security testing across Web, Mobile, and API surfaces — identify

vulnerabilities, understand application flows end-to-end, and recommend effective

mitigations.

● Participate in security architecture reviews and threat modelling sessions alongside engineering and product teams.

● Triage and manage vulnerabilities reported through the bug bounty program —

assess impact, validate findings, and coordinate remediation with engineering teams

● Write and maintain automation scripts (Python/Golang) to scale security testing and integrate security checks into CI/CD pipelines.

● Review AWS configurations and cloud infrastructure for common misconfigurations and security gaps.

● Evaluate the security posture of microservices and containerized environments

(Docker, Kubernetes).

● Collaborate with developers to ensure secure implementation of authentication and authorisation mechanisms (OAuth, SAML, OIDC).

● Stay current on emerging security threats, including AI-related security issues, and

help assess their relevance to Upstox's product and infrastructure.

● Contribute to internal security tooling, documentation, and knowledge-sharing within the organisation.

Who You Are

● Currently pursuing or completing a Bachelor's/Master's degree in Computer Science,

Information Technology, or a related field, with graduation in 2026.

● Solid understanding of web application, mobile application, and API security

fundamentals, including OWASP Top 10 for Web, Mobile, and API.

● Hands-on experience performing security testing across web, mobile, and API

surfaces — not just finding bugs, but understanding the full application flow

● Familiarity with AWS and awareness of common cloud misconfigurations (e.g.,

exposed S3 buckets, over-permissive IAM roles, insecure security groups)

● Comfortable writing automation scripts in Python or Golang to support security

testing and tooling

● Good understanding of authentication and authorisation protocols — OAuth 2.0,

SAML, and OIDC — and their common vulnerabilities.

● Basic understanding of CI/CD pipelines, containerization (Docker, Kubernetes), and

microservices architecture from a security perspective.

● Basic familiarity with common security issues in AI/ML systems (e.g., prompt

injection, model data leakage, adversarial inputs)

● Strong ability to understand and articulate mitigation strategies, not just identify

vulnerabilities — we hire engineers, not bug hunters

● Curious, self-driven, and eager to learn — able to operate with autonomy in a

fast-paced environment.

Good-to-haves:

● Red teaming experience is a strong plus.

● Security certifications such as OSCP, GWAPT, CEH, or equivalent are a bonus. We

strongly value skills over certifications.

● Prior experience in fintech or financial services security is an advantage

Why This Role Rocks

At Upstox, security is not an afterthought — it's core to everything we build. You'll be part of a team that sits at the intersection of security and engineering, directly influencing how millions of users experience safe, reliable financial services. This isn't a role where you shadow people or run checklists — you'll own real work from day one: testing production systems, contributing to threat modelling sessions, triaging live bug bounty reports, building security tooling, and writing automation that has actual impact. You'll be immersed in a high-scale, cloud-native fintech environment — microservices, modern auth protocols, containerized infrastructure, and an evolving AI footprint. If you're someone who wants to think like an attacker, build like an engineer, and grow fast — this is the right place to start.

By applying for this position, you acknowledge that you have reviewed our Prospective Employee Privacy Notice, which outlines how Upstox collects, uses, and protects your Personal Information ("PI"). I accept Upstox's Prospective Employee Privacy Notice. Upstox is an Equal Opportunity Employer; all qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, veteran status, or other characteristics.