yandex
R
roku
Страна
Великобритания
+500% приглашений

Откликайтесь
на вакансии с ИИ

Ускорим процесс поиска работы
InternГибридПолная занятость

Security Researcher Intern, Trust Engineering

ИИОценка ИИ

Отличная возможность для студентов поработать в топовой технологической компании над реальными задачами безопасности. Гибридный формат работы в Кембридже и оплачиваемая стажировка делают это предложение очень привлекательным.


Вакансия из Quick Offer Global, списка международных компаний
Пожаловаться

Сложность вакансии

ЛегкоСложно
ИИОценка ИИ

Для стажировки уровень сложности выше среднего, так как требуются глубокие знания системного программирования (C/C++), понимание архитектуры ОС и владение специфическими инструментами анализа безопасности (CodeQL, фаззинг).

Анализ зарплаты

Медиана3 500 £
Рынок2 800 £ – 4 500 £
ИИОценка ИИ

Зарплата для интернов в сфере кибербезопасности в Кембридже обычно выше среднего по рынку стажировок из-за высокой концентрации технологических гигантов. Roku предлагает конкурентоспособную оплату, соответствующую уровню Tier-1 компаний.

Сопроводительное письмо

I am writing to express my strong interest in the Security Researcher Intern position within the Trust Engineering team at Roku. As a student with a deep fascination for firmware security and program analysis, I have closely followed Roku's innovations in the streaming industry. My background in C/C++ and Python, combined with my academic focus on systems programming, aligns perfectly with your mission to enhance firmware security through advanced tooling.

During my studies, I have developed a solid foundation in OS concepts and Linux development, which I am eager to apply to real-world challenges. I am particularly excited about the opportunity to work with CodeQL and AFL++ to improve static and dynamic analysis. The prospect of owning an end-to-end research project and contributing to the security posture of a platform used by millions is incredibly motivating.

I am impressed by Roku's culture of pragmatic innovation and collaboration. I am confident that my technical skills and proactive approach to problem-solving will allow me to make a meaningful contribution to the Trust Engineering team during this 12-week internship. Thank you for considering my application.

+250% к просмотрам

Составьте идеальное письмо к вакансии с ИИ-агентом

Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в roku уже сейчас

Присоединяйтесь к команде Roku в Кембридже и внесите свой вклад в безопасность миллионов стриминговых устройств по всему миру!

Описание вакансии

Teamwork makes the stream work.

Roku is changing how the world watches TV

Roku is the #1 TV streaming platform in the U.S., Canada, and Mexico, and we've set our sights on powering every television in the world. Roku pioneered streaming to the TV. Our mission is to be the TV streaming platform that connects the entire TV ecosystem. We connect consumers to the content they love, enable content publishers to build and monetize large audiences, and provide advertisers unique capabilities to engage consumers.

From your first day at Roku, you'll make a valuable - and valued - contribution. We're a fast-growing public company where no one is a bystander. We offer you the opportunity to delight millions of TV streamers around the world while gaining meaningful experience across a variety of disciplines.

About this area

At Roku, our Trust Engineering team is a close-knit group of passionate professionals. Our mission? To protect our customers, partners, devices, services, infrastructure, and data. We work collaboratively, sharing insights and expertise to stay ahead of the curve. Join us, and you’ll be part of a dynamic team that thrives on challenges and celebrates victories together. 

About the role

Join Roku’s Trust Engineering team as a Security Researcher Intern, where your passion for security and technology will help drive our success. We offer a paid 12-week internship, starting in Summer 2026.

As a Security Researcher Intern, you’ll be assigned a scoped project that strengthens our security posture. You will improve our firmware security tooling by enhancing CodeQL‑based static analysis, building coverage‑guided QEMU fuzzing harnesses, and owning an end‑to‑end research‑driven engineering project. 

What you’ll be doing

  • Design and implement static analysis improvements:
  • Extend CodeQL queries/extractors to cover new firmware components.
  • Reduce noise via diff‑aware analysis, deduplication, and better handling of dead code.
  • Make results more actionable for engineers (grouping, severity, exploitability hints).
  • Build and enhance fuzzing and dynamic analysis:
  • Prototype or extend QEMU‑based harnesses using frameworks such as AFL++ or Syzkaller.
  • Add instrumentation and coverage reporting to guide corpus evolution and test effectiveness.
  • Feed fuzzing results back into static analysis as new rules or patterns.
  • Own a well‑scoped research‑plus‑engineering project from design through implementation, evaluation, documentation, and an end‑of‑internship presentation.

We’re excited if you have

  • Currently enrolled in a Bachelor, MS or PhD program in CS, CE, EE, or a closely related field.
  • Strong programming skills in C/C++ and Python, with experience working on non‑trivial systems code.
  • Solid foundation in OS concepts, algorithms/data structures, and Linux development (shell, build systems, debugging tools).
  • Comfortable with git and modern CI systems (e.g., GitLab, GitHub Actions).
  • Bonus points for:
  • Coursework or research in software security, program analysis, or compilers.
  • Hands‑on experience with static analysis (CodeQL, Clang‑Tidy, Coverity, Infer) or fuzzing (AFL++, libFuzzer, Syzkaller).
  • Experience with firmware/embedded systems or prior research/technical reports in related areas.

If you are excited about applying program analysis and fuzzing techniques to protect millions of streaming devices, we would like to hear from you. 

Our Hybrid Work Approach

Roku fosters an inclusive and collaborative environment where teams work in the office Monday through Thursday. Fridays are flexible for remote work except for employees whose roles are required to be in the office five days a week or employees who are in offices with a five day in office policy.

Benefits

Roku is committed to offering a diverse range of benefits as part of our compensation package to support our employees and their families. Our comprehensive benefits include global access to mental health and financial wellness support and resources. Local benefits include statutory and voluntary benefits which may include healthcare (medical, dental, and vision), life, accident, disability, commuter, and retirement options (401(k)/pension). Our employees can take time off work for vacation and other personal reasons to balance their evolving work and life needs. It's important to note that not every benefit is available in all locations or for every role. For details specific to your location, please consult with your recruiter.

Accommodations

Roku welcomes applicants of all backgrounds and provides reasonable accommodations and adjustments in accordance with applicable law. If you require reasonable accommodation at any point in the hiring process, please direct your inquiries to EmployeeRelations@Roku.com.

The Roku Culture

Roku is a great place for people who want to work in a fast-paced environment where everyone is focused on the company's success rather than their own. We try to surround ourselves with people who are great at their jobs, who are easy to work with, and who keep their egos in check. We appreciate a sense of humor. We believe a fewer number of very talented folks can do more for less cost than a larger number of less talented teams. We're independent thinkers with big ideas who act boldly, move fast and accomplish extraordinary things through collaboration and trust. In short, at Roku you'll be part of a company that's changing how the world watches TV.

We have a unique culture that we are proud of. We think of ourselves primarily as problem-solvers, which itself is a two-part idea. We come up with the solution, but the solution isn't real until it is built and delivered to the customer. That penchant for action gives us a pragmatic approach to innovation, one that has served us well since 2002.

To learn more about Roku, our global footprint, and how we've grown, visit https://www.weareroku.com/factsheet.

By providing your information, you acknowledge that you want Roku to contact you about job roles, that you have read Roku's Applicant Privacy Notice, and understand that Roku will use your information as described in that notice. If you do not wish to receive any communications from Roku regarding this role or similar roles in the future, you may unsubscribe at any time by emailing WorkforcePrivacy@Roku.com.

+400% к собеседованиям

Создайте идеальное резюме с помощью ИИ-агента

Создайте идеальное резюме с помощью ИИ-агента

Навыки

  • Git
  • C++
  • Python
  • Linux
  • CI/CD
  • Data Structures
  • Algorithms
  • Static Analysis
  • QEMU
  • AFL
  • CodeQL
  • Fuzzing
  • Syzkaller

Возможные вопросы на собеседовании

Проверка базовых знаний системного программирования и управления памятью, критически важных для безопасности прошивок.

Можете ли вы объяснить разницу между переполнением стека и переполнением кучи, и как каждое из них может быть использовано в контексте уязвимостей прошивки?

Оценка опыта работы с инструментами, указанными в описании вакансии.

Опишите ваш опыт работы с CodeQL или другими инструментами статического анализа. Как вы подходите к написанию кастомных запросов для поиска специфических паттернов уязвимостей?

Проверка понимания методологий динамического тестирования безопасности.

Как бы вы спроектировали фаззинг-стенд для закрытого компонента прошивки, используя QEMU и AFL++?

Оценка навыков отладки в Linux-среде.

Какие инструменты и методы вы используете для отладки падения программы (crash) в системном коде, когда стандартные логи недоступны?

Проверка способности доводить исследовательские проекты до конца.

Расскажите о самом сложном техническом проекте, который вы реализовали. С какими основными трудностями вы столкнулись и как их преодолели?

Похожие вакансии

ЛП
Лемана Про
Не указана

Стажер в SOC

InternВ офисе
TCP/IP · DNS · HTTP · HTTPS · Windows · Linux · Active Directory · MITRE ATT&CK · Cyber Kill Chain · VirusTotal · Any.Run · SIEM · IRP
+13 навыков
ЦР
ЦБ РФ
Не указана

Стажер в сфере информационной безопасности

InternВ офисе
OSI Model · TCP/IP · CIA Triad · Python Imaging Library · Windows Server · Linux · Splunk · IPAM · CMDB · Vulnerability Management · LLM · Artificial Intelligence
+12 навыков
OS
Omega Solutions
280 000 ₽ – 300 000 ₽

Senior Information Security Specialist

SeniorУдалённо
Information Security · Cyber Risk Management · FAIR · NIST · ISO 27001 · CISSP · CISM · CRISCBase · SQL · Power BI · Tableau · GRC · Threat Intelligence · Vulnerability Management · PCI DSS · GDPR
+16 навыков
NDA
100 000 ₽ – 200 000 ₽

Python Backend-инженер (CyberSec)

Удалённо
Python · REST API · TCP/IP · TLS · DNS · TCPDump · Wireshark · Linux · Cybersecurity · Network Administration
+10 навыков
H
HuntTech
225 000 ₽ – 285 000 ₽

ИБ-специалист (Middle+ / Senior)

SeniorУдалённо
Information Security · FSTEC · ISO 27001 · NIST · Risk Assessment · Compliance · Technical Writing
+7 навыков
М
Метаскан
до 550 000 ₽

Специалист по анализу защищенности / Пентестер

Удалённо
Pentesting · Red Team · Linux · DNS · HTTP · Burp Suite · OWASP Top 10 · Python · Bash · NMAP · Nuclei · Amass · ZAP
+13 навыков
более 1000 офферов получено
4.9

1000+ офферов получено

Устали искать работу? Мы найдём её за вас

Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!

R
roku
Страна
Великобритания