I applied online. The process took 6 weeks. I interviewed at Security Innovation
Interview
Saw a Reddit post looking for applicants to go after their challenge site (www.canyouhack.us). Had fun with that for a couple of days, then emailed with what I'd found when I got stuck. A week later, had the first of three tech screens over the phone. Everyone I talked with was decent on the phone, and seemed impressed. A couple of my answers were weak, nothing a little brushing up on the topics couldn't fix. Recommend keeping the OWASP Top 10 summary page open during the calls for reference.
Interview questions [1]
Question 1
How do salts work, how to properly use them when hashing passwords, how to protect against XSS.