Application Security Engineer Intern job at Cytonn Investments
Website :
13 Days Ago
Linkedid Twitter Share on facebook
Application Security Engineer Intern
2026-03-05T08:32:24+00:00
Cytonn Investments
https://cdn.greatkenyanjobs.com/jsjobsdata/data/employer/comp_2118/logo/Cytonn%20Investments.png
INTERN
Nairobi
Nairobi
00100
Kenya
Finance
Computer & IT, Science & Engineering, Business Operations
KES
MONTH
2026-03-18T17:00:00+00:00
8

Responsibilities

  • Perform static code analysis (SCA) on applications to identify vulnerabilities and report to software engineers for fixing
  • Set up and monitor applications for intrusion detection and protect applications against common vulnerabilities
  • Secure application infrastructure (servers and databases) against intrusion, ensuring they’re regularly patched against known vulnerabilities
  • Manage vulnerability reporting in all applications and systems, including open source software that the applications run on
  • Perform analysis of all security systems log files, review and keep track of triggered events, research current and future cyber threats, reconcile correlated cyber security events, develop and modify new and current cyber security correlation rule sets, and operate security equipment and technology
  • Perform software testing (patches, other updates)
  • Tracking and reporting vulnerabilities in server software by using tools such as CVE
  • Preparation of Weekly reporting of common vulnerabilities that affect our environment, as reported on various platforms (CVE etc.) and their mitigations
  • Ensuring that the Web infrastructure is monitored and actively protecting applications from common vectors
  • Monitoring servers for intrusion and performance
  • Ensuring all server software is updated and security patches applied regularly
  • Manage vulnerability reporting in all applications and systems, including open source software that the applications run on
  • Weekly tracking of all issues raised from penetration testing, vulnerability assessment and static/dynamic scans
  • Any other duties as may be assigned from time to time

Requirements

  • Bachelor's degree in Computer Science, Information Systems or specialized training/certification
  • Experience in application security, preferably a software security role
  • Expertise with browser security controls (CSP, XFO, HSTS), web application security topics such as OWASP Top 10, and authentication infrastructure (SAML, OAUTH)
  • Experience building tools and processes to reliably identify security issues such as SQL injection, XSS, CSRF, and business logic flaws across large code bases
  • Must be familiar with Cyber Security Tools, network topologies, intrusion detection, PKI, and secured networks
  • A grade of B+ and above in KCSE (or equivalent) with good grades in math and languages
  • Knowledge and/or experience with threat analysis and penetration testing methodologies and tooling
  • Knowledge of at least one programming language, web application technologies and frameworks is an added advantage
  • Knowledge of security issues affecting Internet-facing applications
  • Knowledge of cloud infrastructure and UNIX/Linux environments
  • Perform static code analysis (SCA) on applications to identify vulnerabilities and report to software engineers for fixing
  • Set up and monitor applications for intrusion detection and protect applications against common vulnerabilities
  • Secure application infrastructure (servers and databases) against intrusion, ensuring they’re regularly patched against known vulnerabilities
  • Manage vulnerability reporting in all applications and systems, including open source software that the applications run on
  • Perform analysis of all security systems log files, review and keep track of triggered events, research current and future cyber threats, reconcile correlated cyber security events, develop and modify new and current cyber security correlation rule sets, and operate security equipment and technology
  • Perform software testing (patches, other updates)
  • Tracking and reporting vulnerabilities in server software by using tools such as CVE
  • Preparation of Weekly reporting of common vulnerabilities that affect our environment, as reported on various platforms (CVE etc.) and their mitigations
  • Ensuring that the Web infrastructure is monitored and actively protecting applications from common vectors
  • Monitoring servers for intrusion and performance
  • Ensuring all server software is updated and security patches applied regularly
  • Manage vulnerability reporting in all applications and systems, including open source software that the applications run on
  • Weekly tracking of all issues raised from penetration testing, vulnerability assessment and static/dynamic scans
  • Any other duties as may be assigned from time to time
  • Expertise with browser security controls (CSP, XFO, HSTS)
  • Web application security topics such as OWASP Top 10
  • Authentication infrastructure (SAML, OAUTH)
  • Experience building tools and processes to reliably identify security issues such as SQL injection, XSS, CSRF, and business logic flaws across large code bases
  • Familiarity with Cyber Security Tools, network topologies, intrusion detection, PKI, and secured networks
  • Knowledge and/or experience with threat analysis and penetration testing methodologies and tooling
  • Knowledge of at least one programming language, web application technologies and frameworks
  • Knowledge of security issues affecting Internet-facing applications
  • Knowledge of cloud infrastructure and UNIX/Linux environments
  • Bachelor's degree in Computer Science, Information Systems or specialized training/certification
  • Experience in application security, preferably a software security role
  • A grade of B+ and above in KCSE (or equivalent) with good grades in math and languages
bachelor degree
No Requirements
JOB-69a93f98a79ec

Vacancy title:
Application Security Engineer Intern

[Type: INTERN, Industry: Finance, Category: Computer & IT, Science & Engineering, Business Operations]

Jobs at:
Cytonn Investments

Deadline of this Job:
Wednesday, March 18 2026

Duty Station:
Nairobi | Nairobi

Summary
Date Posted: Thursday, March 5 2026, Base Salary: Not Disclosed

Similar Jobs in Kenya
Learn more about Cytonn Investments
Cytonn Investments jobs in Kenya

JOB DETAILS:

Responsibilities

  • Perform static code analysis (SCA) on applications to identify vulnerabilities and report to software engineers for fixing
  • Set up and monitor applications for intrusion detection and protect applications against common vulnerabilities
  • Secure application infrastructure (servers and databases) against intrusion, ensuring they’re regularly patched against known vulnerabilities
  • Manage vulnerability reporting in all applications and systems, including open source software that the applications run on
  • Perform analysis of all security systems log files, review and keep track of triggered events, research current and future cyber threats, reconcile correlated cyber security events, develop and modify new and current cyber security correlation rule sets, and operate security equipment and technology
  • Perform software testing (patches, other updates)
  • Tracking and reporting vulnerabilities in server software by using tools such as CVE
  • Preparation of Weekly reporting of common vulnerabilities that affect our environment, as reported on various platforms (CVE etc.) and their mitigations
  • Ensuring that the Web infrastructure is monitored and actively protecting applications from common vectors
  • Monitoring servers for intrusion and performance
  • Ensuring all server software is updated and security patches applied regularly
  • Manage vulnerability reporting in all applications and systems, including open source software that the applications run on
  • Weekly tracking of all issues raised from penetration testing, vulnerability assessment and static/dynamic scans
  • Any other duties as may be assigned from time to time

Requirements

  • Bachelor's degree in Computer Science, Information Systems or specialized training/certification
  • Experience in application security, preferably a software security role
  • Expertise with browser security controls (CSP, XFO, HSTS), web application security topics such as OWASP Top 10, and authentication infrastructure (SAML, OAUTH)
  • Experience building tools and processes to reliably identify security issues such as SQL injection, XSS, CSRF, and business logic flaws across large code bases
  • Must be familiar with Cyber Security Tools, network topologies, intrusion detection, PKI, and secured networks
  • A grade of B+ and above in KCSE (or equivalent) with good grades in math and languages
  • Knowledge and/or experience with threat analysis and penetration testing methodologies and tooling
  • Knowledge of at least one programming language, web application technologies and frameworks is an added advantage
  • Knowledge of security issues affecting Internet-facing applications
  • Knowledge of cloud infrastructure and UNIX/Linux environments

Work Hours: 8

Experience: No Requirements

Level of Education: bachelor degree

Job application procedure

Never pay for any notarisation, certificate or assessment as part of any recruitment process. When in doubt, contact us

Click Here to Apply Now

All Jobs | QUICK ALERT SUBSCRIPTION

Job Info
Job Category: Internships/ Trainee jobs in Kenya
Job Type: Full-time
Deadline of this Job: Wednesday, March 18 2026
Duty Station: Nairobi | Nairobi
Posted: 05-03-2026
No of Jobs: 1
Start Publishing: 05-03-2026
Stop Publishing (Put date of 2030): 10-10-2076
Apply Now
Notification Board

Join a Focused Community on job search to uncover both advertised and non-advertised jobs that you may not be aware of. A jobs WhatsApp Group Community can ensure that you know the opportunities happening around you and a jobs Facebook Group Community provides an opportunity to discuss with employers who need to fill urgent position. Click the links to join. You can view previously sent Email Alerts here incase you missed them and Subscribe so that you never miss out.

Caution: Never Pay Money in a Recruitment Process.

Some smart scams can trick you into paying for Psychometric Tests.