Summer 2026

Graduate Software Developer Intern

Posted on 1/24/2026

Virtru

Virtru

201-500 employees

Persistent data protection with secure sharing

Compensation Overview

$35 - $40/hr

Washington, DC, USA

Hybrid

Hybrid role with optional in-office DC visits; remote-first capacity with occasional in-person events.

Category
Software Engineering (1)
Required Skills
Python
Git
SQL
Java
C/C++
Linux/Unix
Data Analysis

Get referred to Virtru

See people who can refer or advise you

Requirements
  • Currently pursuing or completed advanced degree in Computer Science or related field
  • Must be a self-starter who works well independently on assigned tasks and products
Responsibilities
  • Define the research problem: Identify challenges our engineering team is facing. Learn more about Virtru’s initiatives and department goals (current focus on protecting data in use via secure digital data clean rooms) through internal discussions and discovery with your manager
  • Conduct a review: Collect internal existing knowledge and developments external to Virtru
  • Develop your research hypotheses and methodology: Based on the research problem and review, develop hypotheses that can be tested and a process for experimentation
  • Run your tests, collect data and analyze: Innovate, learn fast, repeat!
  • Draw Conclusions: Develop suggestions, share with your team, document and prepare to present!
  • Communicate results: Communicate the research findings through reports, presentations, or publications internal and external to Virtru
Desired Qualifications
  • Languages: Python, Java, Go-lang
  • Infrastructure: AWS using Terraform, Ansible, Docker, Google Cloud Platform
  • Frameworks / Tooling: Kubernetes, Open Policy Agent
  • Familiarity with data structure and algorithms
  • Desire to learn and grow with a close-knit engineering team
  • Familiarity or desire to learn to use AI in daily workflow; Design and security of Agentic AI systems

Virtru provides data protection and privacy solutions through a platform that safeguards data sharing, storage, and analysis across its lifecycle. Its Trusted Data Format (TDF) is an open standard that keeps data protected and accessible only to authorized users, wherever it is stored or shared, by letting developers embed protections into apps, devices, or infrastructure. Unlike perimeter-focused security, Virtru emphasizes data-centric controls that travel with the data, offered through a suite of developer tools and subscriptions. The company aims to help healthcare, finance, government, and education meet privacy regulations and reduce data breaches by maintaining ongoing control over sensitive information.

Company Size

201-500

Company Stage

Series D

Total Funding

$189.8M

Headquarters

Washington DC, District of Columbia

Founded

2012

Get referred to Virtru

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • July 2026 Ohalo integration automates classification-to-encryption for unstructured data, meeting CMMC Level 2 and NIST 800-171[3].
  • June 2026 Rocket.Chat integration enables real-time ABAC re-evaluation every few minutes for classified collaboration under Zero Trust mandates[3].
  • Series D $50M raise in 2026 strengthens capital to scale across defense, intelligence, and regulated enterprise markets[3].

What critics are saying

  • Microsoft Purview Information Protection will displace Virtru Secure Share within 6–12 months via native M365 integration; 45–60% probability[2].
  • AI-driven identity abuse by late 2026 bypasses static ABAC policies when attackers spoof OAuth entitlements, rendering object encryption ineffective[2].
  • OpenTDF adoption collapses if NATO or IC pivots to proprietary ZTDF without Virtru stewardship within 12–24 months; existential impact[2].

What makes Virtru unique

  • Virtru owns TDF, the open standard for persistent data protection embedding policies directly into data objects[1][2].
  • Its platform enforces object-level attribute-based access control that travels with data beyond network perimeters[1][4].
  • TDF is the U.S. Intelligence Community standard for classification markings and coalition Zero Trust interoperability[1][4].

Help us improve and share your feedback! Did you find this helpful?

Benefits

Hybrid Work Options

Unlimited Paid Time Off

Home Office Stipend

Professional Development Budget

Company Social Events

Health Insurance

Dental Insurance

Vision Insurance

Life Insurance

Disability Insurance

401(k) Company Match

Stock Options

Growth & Insights and Company News

Headcount

6 month growth

-2%

1 year growth

-2%

2 year growth

-4%
Newsmatics Inc.
Jul 14th, 2026
Virtru and Ohalo partner to deliver ai-driven data discovery, classification, and governance for sensitive unstructured data.

Virtru and Ohalo partner to deliver ai-driven data discovery, classification, and governance for sensitive unstructured data. New joint solution bridges data discovery and persistent enforcement, automating classification-to-encryption for federal agencies and regulated enterprises. WASHINGTON, D.C., July 14, 2026 (GLOBE NEWSWIRE) - Virtru, the leader in data-centric security, and Ohalo, the enterprise file governance company, today announced the availability of their integrated solution that automatically discovers, classifies, labels, and encrypts sensitive data at scale. The integration connects the AI-driven classification capabilities of Ohalo Data X-Ray with the Virtru Data Security Platform, enabling organizations to remediate years of unprotected files across shared drives, federal repositories, and hybrid-cloud environments in a single automated operation. Once remediated, protected files remain governed and controlled by data owners, regardless of where they travel. Traditional data security approaches create a dangerous gap between knowing where sensitive data lives and actually protecting it. Organizations invest heavily in data discovery and classification tools, yet sensitive files remain exposed across contractor laptops, partner networks, and downstream systems once shared. The Virtru + Ohalo integration eliminates this gap by automatically triggering persistent protection the moment files meet policy criteria - transforming static inventories into continuous, automated protection. Discover with Ohalo, Govern with Virtru The Virtru + Ohalo integration closes the gap between data discovery and data protection through a seamless, automated pipeline: * Discover, Classify and Label: Data X-Ray scans documents at hundreds of thousands of words per second, classifying what is inside using three layers: Natural language processing and machine learning for semantic precision, generative AI for document-level context, and your own rules for sensitivity and business logic, moving beyond simple keyword matching to truly understand what data contains. Every file is labeled automatically as part of the same pass, replacing manual labeling that is neither trustworthy nor scalable at enterprise volumes. * Encrypt and Protect: Once Data X-Ray classifies and labels sensitive files, the integration automatically converts them to the Trusted Data Format (TDF), wrapping each object in encryption and a granular access policy that travels with the data. The Virtru + Ohalo solution inherits classification tags and sensitivity markers to trigger corresponding TDF policies, maintaining consistent protection across the data lifecycle. * Govern Continuously: Virtru enforces persistent access controls on every protected object, requiring both human and non-human entities to authenticate before decrypting - ensuring data remains fully under the owner's control wherever it travels, with the ability to revoke or update access at any time. * Maintain Compliance: The solution addresses critical challenges for organizations subject to CMMC Level 2, NIST SP 800-171, and CUI protection requirements, as well as regulated enterprises navigating HIPAA, GDPR, and FTC Safeguards Rule obligations. "Organizations need to protect data at the object level, with security and governance controls that remain attached to each file throughout its lifecycle," said John Ackerly, CEO and Co-Founder of Virtru. "Our partnership with Ohalo makes that possible by connecting intelligent discovery and classification directly to persistent TDF-based protection. Together, we're enabling customers to continuously govern sensitive data, update access policies as context changes, and maintain agency over their information, wherever it travels." The integration enables organizations to encrypt massive backlogs of legacy files in a single automated workflow - solving the "cold start" problem that has stalled many governance initiatives. When policies or sensitive terms change, Data X-Ray can re-crawl data sources and re-encrypt files with updated attributes. A built-in dry run capability allows administrators to test encryption and decryption behavior before applying changes across their entire data estate. "Organizations are drowning in unstructured data scattered across air-gapped, on-premise, and hybrid-cloud environments," said Kyle DuPont, CEO and Co-Founder of Ohalo. "A label is only as good as what's behind it, and labels applied by hand or inherited from metadata are neither trustworthy nor scalable. Data X-Ray opens every file, classifies and labels what is actually inside it, not just what the metadata claims. That is the foundation modern data security demands. By partnering with Virtru, we're enabling our customers to move beyond static inventories to active, persistent protection that extends everywhere the data travels. This integration ensures that classification drives enforcement, and enforcement stays current with classification, creating a continuous security loop that adapts to mission and threat context, both internally and externally." At the core of this integration is the Trusted Data Format (TDF), an open interoperability standard for data-centric security invented by Virtru Co-Founder Will Ackerly during his tenure at the National Security Agency. TDF has been adopted as the data protection standard for national defense and intelligence missions across the United States and allied partners globally, with the Intelligence Community standardizing classification and control markings within the TDF specification. The Zero Trust Data Format (ZTDF), derived from TDF, is the first interoperable data security standard that bridges the gap between the US IC/DOW and existing NATO STANAGs - making the Virtru + Ohalo integration directly relevant to coalition environments where interoperability is mission-critical. The Virtru + Ohalo integration is available for qualifying defense, intelligence, federal civilian, and enterprise organizations. To request a demo and learn more about automating classification-to-encryption workflows, visit www.virtru.com/partners/technology/ohalo or contact [email protected]. Technical & Compliance Details The solution integrates through Ohalo Data X-Ray's admin console, which connects directly to the Virtru Data Security Platform via secure credentials. Administrators configure ABAC namespace and attribute selection in a single setup, with dry run validation before full deployment. The integration supports S3-compatible or on-premise object storage, and works seamlessly with OIDC/OAuth2 identity providers including Okta, Microsoft Entra ID, and Ping Identity. Virtru's defense-in-depth architecture with client-side encryption ensures Virtru never accesses plaintext data. The Virtru Data Security Platform is FedRAMP Moderate authorized and FIPS 140-2 validated (VirtruCrypto module #4440), supporting compliance with NIST SP 800-171, HIPAA, GDPR Article 32, and other regulatory frameworks. Customer-controlled key management addresses data residency requirements under GDPR and state privacy laws. About Virtru Virtru empowers organizations to unlock the power of data while maintaining control wherever it's stored and shared. Trusted by over 6,000 organizations across the public and private sectors - including JPMorganChase, Equifax, Capital One, Salesforce, and the U.S. Department of War - Virtru's Data Security Platform has created a new paradigm in data-centric security, where protection travels with the data itself rather than relying on traditional perimeter defenses. Built on the Trusted Data Format (TDF), an open standard, the platform embeds access policies directly into the data and enforces them at every point of interaction. To learn more, visit virtru.com. About Ohalo Ohalo is an enterprise file governance company. Most enterprise information lives in files like documents, PDFs, emails, and contracts, yet the tools meant to govern them only read the labels, never the contents. Data X-Ray opens every file, reads what is inside, and classifies it, then feeds the results into your AI, compliance, and security systems. It all runs inside your own environment without moving data, whether on-prem, cloud, or air-gapped. Trusted by the Fortune 500, financial institutions, defense agencies, and critical infrastructure operators worldwide. Learn more at www.ohalo.co Media Contacts: Nick Michael [email protected] Carolyn Branco [email protected] Legal Disclaimer: EIN Presswire provides this news content "as is" without warranty of any kind. National Capital Daily do not accept any responsibility or liability for the accuracy, content, images, videos, licenses, completeness, legality, or reliability of the information contained in this article. If you have any complaints or copyright issues related to this article, kindly contact the author above.

The Fast Mode
Apr 13th, 2026
Virtru integrates Data Security Platform with Cloudflare R2 to enable object-level Access Control.

Virtru integrates Data Security Platform with Cloudflare R2 to enable object-level Access Control. Image Credit: Sashkin/Bigstockphoto.com Virtru, the leader in data-centric security, today announced that its Data Security Platform now delivers object-level data governance to Cloudflare R2 cloud storage. The integration enables organizations to enforce cryptographic, attribute-based access policies on individual objects stored in R2, transforming a single storage bucket into a governed repository where different files carry different access rules, enforced by the data itself. As a result, organizations can store, search, analyze, and connect AI tools to their most sensitive data in Cloudflare R2 while retaining persistent, granular control over every object - ensuring only authorized individuals and systems can access sensitive data, regardless of location or application. Shifting Access Control from the Bucket Level to the Data Level Like all S3-compatible object storage, Cloudflare R2 governs access at the bucket level. Everyone with access to a bucket can see everything inside it. Organizations have historically worked around this limitation by proliferating buckets - creating separate buckets for different sensitivity levels, different departments, and different regulatory regimes. The result is architectural complexity that drives up cost, slows operations, and creates data silos with governance gaps. The Virtru Data Security Platform eliminates that tradeoff. With Trusted Data Format (TDF) encryption and attribute-based access control (ABAC) applied at the individual object level, a single R2 bucket can hold objects with entirely different governance profiles. A finance analyst and an engineering lead can both access the same bucket, but each can only open the files for which they are authorized. Contracts, engineering specifications, research data, and compliance records coexist in a single repository, each governed by its own policy and enforced cryptographically by the data itself. From Protected Storage to Governed Operations "Securing data at rest has never been a hard problem," said John Ackerly, CEO and Co-Founder of Virtru. "The hard problem is governing what happens to sensitive data once it's put to work - searched, analyzed, queried, or accessed by AI tools and automated workflows. Data owners shouldn't have to choose between the operational and economic benefits of modern cloud storage and the ability to govern their most sensitive data. Now, with the Virtru Data Security Platform and Cloudflare R2, they no longer have to." Because every object in R2 now carries its own cryptographically enforced access policy, the Virtru Data Security Platform enables organizations to move beyond static storage protection into governed operations where sensitive data can be actively searched, analyzed, and acted upon while policy enforcement remains continuous and granular. Every operation is evaluated in real time against the requesting user's attributes and enforced by the object's own TDF-wrapped policy. Governance doesn't depend on the application, the network, or the storage provider. It travels with the data. Why Cloudflare R2 R2's zero egress fees make object-level governance especially practical. When data retrieval incurs no transfer costs, real-time policy evaluation adds no compounding overhead. Organizations get the storage economics they chose R2 for - plus the ability to commingle data with different sensitivity levels in the same repository, each object individually protected, revocable at any time, and auditable across every access event. Cloudflare secures the network and infrastructure. The Virtru Data Security Platform secures the data itself. Virtru + Cloudflare: Complementary Security Architecture R2 and the Virtru Data Security Platform operate at complementary layers of the security stack: Infrastructure layer (Cloudflare): Encryption at rest and in transit, DDoS protection, global distribution across 330+ data centers, S3-compatible API, and native Workers integration for edge compute Data layer (Virtru): Object-level TDF encryption, attribute-based access control, real-time policy enforcement, access revocation, and comprehensive audit logging across every access event TDF encryption ensures that objects stored in R2 remain cryptographically protected even at rest - Cloudflare infrastructure cannot decrypt the contents. Only users, systems, or applications whose attributes satisfy the object's ABAC policy can access the plaintext. Data sovereignty stays with the data owner, not the storage provider. Now Available to Early Adopters The integration is available now through an early adopter program. Organizations interested in deploying object-level data governance across their Cloudflare R2 environments can learn more at virtru.com/data-security-platform or contact their Virtru account representative. John Ackerly, CEO and Co-Founder of Virtru Securing data at rest has never been a hard problem. The hard problem is governing what happens to sensitive data once it's put to work - searched, analyzed, queried, or accessed by AI tools and automated workflows. Data owners shouldn't have to choose between the operational and economic benefits of modern cloud storage and the ability to govern their most sensitive data. Now, with the Virtru Data Security Platform and Cloudflare R2, they no longer have to. Ray Sharma is an Industry Analyst and Editor at The Fast Mode. He has over 15 years of experience in mobile broadband technologies and solutions, conducting research and analysis on various technology segments and producing articles and write-ups on the latest developments within the sector. He is also in charge of social media engagement and industry liaisons. The Fast Mode 9658 likes TWEETS 28.4K FOLLOWING 3479 FOLLOWERS 13.2K

The Associated Press
Apr 9th, 2026
Virtru enables object-level data governance for Cloudflare R2 cloud storage

Virtru has announced its Data Security Platform now provides object-level data governance for Cloudflare R2 cloud storage. The integration enables organisations to enforce cryptographic, attribute-based access policies on individual objects, allowing different files within a single storage bucket to carry different access rules. The platform uses Trusted Data Format encryption and attribute-based access control applied at the object level, eliminating the need for multiple buckets to manage different sensitivity levels. Each object carries its own cryptographically enforced access policy, enabling real-time policy evaluation whilst maintaining R2's zero egress fee benefits. The integration is now available through an early adopter programme. Virtru's platform is trusted by over 6,000 organisations, including JPMorganChase, Equifax and the US Department of Defense.

Global Legal Chronicle
Sep 12th, 2025
Virtru Secures $50M in Series D Round

Virtru, a data security company based in Washington, D.C., has successfully completed a Series D financing round, raising $50 million. The financing was led by King & Spalding.

Pexip
Jul 31st, 2025
How Pexip and Virtru are redefining secure real-time communication in defense environments

"By integrating Pexip's secure video solutions with Virtru's advanced data protection and granular access controls, we are giving defense organizations the ability to protect sensitive conversations while improving operational agility, giving mission partners the advantage of speed and control."

INACTIVE