Commerce has been recognized on not just one… but SEVEN of Built In’s Best Places to Work 2026 lists!
Commerce Logo

Commerce

Intern Application Security Engineer

Posted 2 Hours Ago
Be an Early Applicant
In-Office
Austin, TX
25-35 Hourly
Internship
In-Office
Austin, TX
25-35 Hourly
Internship
The Application Security Intern will support the Cybersecurity team, gaining hands-on experience in secure software development, vulnerability management, and incident response workflows while shadowing experienced engineers.
The summary above was generated by AI
Welcome to the Agentic Commerce Era

At Commerce, our mission is to empower businesses to innovate, grow, and thrive with our open, AI-driven commerce ecosystem. As the parent company of BigCommerce, Feedonomics, and Makeswift, we connect the tools and systems that power growth, enabling businesses to unlock the full potential of their data, deliver seamless and personalized experiences across every channel, and adapt swiftly to an ever-changing market. We believe in harnessing AI responsibly to unlock new possibilities, and we’re looking for individuals who use it intentionally to solve problems, accelerate outcomes, and expand what’s possible in their role. Our purpose is to help businesses confidently solve complex commerce challenges so they can build smarter, adapt faster, and grow on their own terms. If you want to be part of a team of bold builders, sharp thinkers, and technical trailblazers who shape the future of commerce, this is the place for you.

Commerce is seeking an Application Security Intern to join the Cybersecurity team for an eight-week summer internship. This role is designed for a student or early-career candidate interested in application security, secure software development, vulnerability management, and how security teams partner with engineering in a modern SaaS environment.As an Application Security Intern, you will work under the guidance of experienced Application Security engineers to learn how BigCommerce identifies, evaluates, and helps remediate security risks across our products and platforms. You will contribute to practical tooling, documentation, and process improvements that help the team scale its AppSec program while gaining exposure to real-world bug hunting, security review, and incident response workflows.This is a hybrid role based in Austin, TX. We require 3 days a week in office and are looking for local candidates only.
What You’ll Do:
  • Learn the structure, goals, and day-to-day operating model of the BigCommerce Application Security program.
  • Support improvements to AppSec tooling, reporting, documentation, and team processes.
  • Assist with organizing or refining vulnerability management workflows, intake processes, dashboards, or knowledge base materials.
  • Shadow AppSec engineers during security reviews, bug hunting, triage, and remediation discussions.
  • Participate in guided hands-on security activities such as testing, reproducing findings, researching vulnerabilities, or validating fixes.
  • Observe how the team partners with engineering, product, infrastructure, and incident response teams.
  • Contribute to a small intern project that improves the AppSec team’s ability to measure, communicate, or scale its work.
  • Present a short summary of learnings, recommendations, and completed work at the end of the internship.
What We’re Looking For:
  • Current student or early-career candidate pursuing cybersecurity, computer science, software engineering, information systems, or a related field.
  • Interest in application security, ethical hacking, secure coding, vulnerability research, or software development.
  • Familiarity with basic web application concepts, APIs, Git, scripting, or common security topics such as OWASP Top 10.
  • Curiosity, good judgment, and willingness to ask questions.
  • Strong written communication skills and ability to document findings clearly.
  • Ability to work with a team, follow guidance, and handle sensitive information responsibly.
Nice to Have:
  • Coursework, labs, CTF participation, personal projects, or prior internship experience related to cybersecurity or software development.
  • Exposure to tools or concepts such as SAST, DAST, SCA, threat modeling, vulnerability management, or cloud security.
  • Basic scripting experience in Python, JavaScript, Bash, or a similar language.
What You’ll Gain:
  • Practical exposure to how an application security program operates inside a SaaS company.
  • Experience with real AppSec tooling, workflows, and vulnerability management practices.
  • Mentorship from security engineers and exposure to engineering partnership models.
  • A clearer understanding of potential career paths in application security, product security, and cybersecurity.
#LI-TK1#LI-HYBRID(Pay Transparency Range: $25.00/Hr.-$35.00/Hr.)

Compensation Transparency


The national base salary range for this role is posted above in this job post.

Final compensation will be determined based on factors such as relevant experience, skills, qualifications and geographic location. We also consider internal equity to help ensure fair and consistent pay practices across our teams.

Where applicable, this role may also be eligible for variable compensation (such as bonus or commission), equity, and benefits in accordance with local policies. Details will be shared during the hiring process. We are committed to equitable and transparent pay practices that align to market data, internal equity, and individual contribution.

Inclusion and Belonging

At Commerce, we believe that celebrating the unique histories, perspectives and abilities of every employee makes a difference for our company, our customers and our community. We are an equal opportunity employer and the inclusive atmosphere we build together will make room for every person to contribute, grow and thrive.

We are committed to creating an inclusive and accessible hiring experience for all candidates. If you require accommodations or adjustments at any stage of the recruitment process, please let us know and we will work with you to meet your needs.

Learn more about the Commerce team, culture and benefits at https://www.commerce.com/careers/

Protect Yourself Against Hiring Scams: Our Corporate Disclaimer 

Commerce, along with many other employers, has become the subject of fraudulent job offers to hopeful prospective job seekers.
Be advised:
Commerce does not offer jobs to individuals who do not go through our formal hiring process.
Commerce will never:

  • require payment of recruitment fees from candidates;

  • request personally identifiable information through unsanctioned websites or applications;

  • attempt to solicit money from you as part of the hiring process or as part of an employment offer;

  • solicit money to complete visa requirements as part of a job offer.

If you receive unsolicited offers of employment from Commerce, we urge you to be extremely cautious and avoid engaging or responding.

Similar Jobs at Commerce

Yesterday
In-Office
88K-132K Annually
Senior level
88K-132K Annually
Senior level
Artificial Intelligence • Cloud • Consumer Web • eCommerce • Information Technology • Software
The Senior Strategy & Operations Analyst will lead partner operations analytics, develop performance insights, manage partner data systems, and ensure operational efficiency for the Partner organization.
Top Skills: ExcelLookerPrm ToolsSalesforceTableau
3 Days Ago
In-Office
56K-95K Annually
Junior
56K-95K Annually
Junior
Artificial Intelligence • Cloud • Consumer Web • eCommerce • Information Technology • Software
The Senior Sales Development Representative will prospect Enterprise accounts, manage CRM data, book meetings, contribute to messaging improvement, and work alongside Account Directors while hitting pipeline targets.
Top Skills: 6SenseActively AiChatgptClaudeClayGoogle SuiteOutreachSalesforceWappalyzerZoominfo
3 Days Ago
In-Office
65K-110K Annually
Mid level
65K-110K Annually
Mid level
Artificial Intelligence • Cloud • Consumer Web • eCommerce • Information Technology • Software
The Financial Analyst II will develop financial models, manage financial close processes, prepare budget reports, and optimize spend analysis, while collaborating cross-functionally within a SaaS environment.
Top Skills: Adaptive InsightsAnaplanExcelGoogle SheetsNetSuiteSage Intacct

What you need to know about the NYC Tech Scene

As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

Key Facts About NYC Tech

  • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
  • Key Industries: Artificial intelligence, Fintech
  • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
  • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account