Tentang peran ini
Job Description
Internship in the Information Security & Data Protection team, focused on governance, risk and compliance (GRC).
- Support for the ISMS (ISO/IEC 27001), GDPR compliance and AI governance (EU AI Act).
- Governance- and process-oriented role; basic IT, network and systems knowledge is a plus.
- Support the implementation and maintenance of management systems, internal controls and compliance requirements (information security, privacy and governance).
- Assist in internal audits to assess the effectiveness of security controls.
- Help identify and assess information security risks.
- Contribute to security training and awareness initiatives and related documentation.
- Work with IT, Procurement & Facilities and HR to ensure security measures are correctly applied.
- Support GDPR compliance and personal data protection activities.
- Support AI governance initiatives, including monitoring EU AI Act requirements and the responsible use of AI.
Qualifications
- Currently studying or recently graduated in Information Security, Computer Science, Information Technology or a related field.
- A higher vocational qualification (Técnico Superior) in an IT-related field is also welcome.
- Candidates from other backgrounds (e.g. Law, Business Administration, Industrial Engineering) with a genuine interest in information security and compliance will also be considered.
- Must be eligible for an internship agreement with a university or training institution.
- Relevant courses or entry-level certifications are a plus (e.g. ISO/IEC 27001 Foundation, ISC2 CC, CompTIA Security+, data protection / GDPR courses).
- No previous professional experience required; academic projects, previous internships or personal projects in information security, IT or compliance are a plus.
- Basic knowledge of information security principles (confidentiality, integrity and availability), networks and systems.
- Familiarity with the principles and basic requirements of ISO standards and process management.
- Basic knowledge of data protection and regulatory frameworks such as the GDPR.
- Interest in, or initial knowledge of, artificial intelligence, AI governance and the regulatory requirements of the EU AI Act.
- Standards: ISO/IEC 27001 and ISO/IEC 27002; awareness of ISO 9001, or the NIST Cybersecurity Framework is a plus.
- Regulations: GDPR and Spanish LOPDGDD, EU AI Act; awareness of the NIS2 Directive is a plus.
- Microsoft 365 (Excel, Word, PowerPoint, Teams, SharePoint) for documentation, reporting and evidence management.
- Experience with GRC or audit tools is a plus but not required.
- Upper-Intermediate English Level (B2 Level)
Skills
- Clear and effective communication skills, both verbal and written.
- Initiative, proactivity and willingness to take on responsibility.
- Team player, able to collaborate in a multidisciplinary environment.
- Commitment to continuous learning and improvement in the field of information security.
- Strong work ethic, integrity and discretion when handling sensitive and confidential information.
- Organized and detail-oriented, with an analytical mindset.
JOIN ATEXIS! AN ALTEN COMPANY 🚀
ATEXIS is a multinational consultancy specialized in providing engineering support services to clients, including leading companies in the aerospace, defense, naval, railway, energy, and industrial sectors.
Sumber: halaman karir pemberi kerja sendiri.