We are seeking an Information Technology Intern who will support the IT Security team in the assessment, implementation, and continuous improvement of security controls aligned to the CIS Critical Security Controls v8 and the NIST Cybersecurity Framework (CSF) 2.0. The Cybersecurity Controls & Cloud Compliance Intern will report to the Director, Information Technology. The intern will focus primarily on Microsoft Azure and cloud-based infrastructure, contributing to configuration hardening, policy enforcement, compliance gap analysis, and security documentation. This is a hands-on, technical role with measurable deliverables.
Evaluate Azure environment configurations using Microsoft Defender for Cloud (Secure Score, recommendations, and compliance dashboards), Purview, and other Microsoft security tools
Assist in implementing Azure Policy definitions and initiatives to enforce baseline security configurations
Review and help remediate findings related to identity and access management (IAM), storage security, and key management
Support implementation of Microsoft Entra ID (formerly Azure AD) security best practices including MFA, Conditional Access, and Privileged Identity Management (PIM)
Assist with cloud workload protection configuration across Azure VMs, containers, and serverless functions
Hands-on experience with Microsoft Azure through coursework, labs, certifications, or personal projects (Azure portal, Azure CLI)
Completion of or active pursuit of an entry-level certification such as CompTIA Security+, Microsoft AZ-900 (Azure Fundamentals), SC-900 (Security Fundamentals), AZ-500 (Azure Security Engineer), or equivalent
Familiarity with security tooling such as Microsoft Defender for Cloud, Microsoft Sentinel, Nessus/Tenable, Qualys, or similar
Familiarity with scripting languages (PowerShell, Python, Typescript or Bash) for automation and configuration management tasks
Exposure to GRC (Governance, Risk, and Compliance) platforms or tools
Participation in cybersecurity competitions (CTFs), clubs, or student organizations
Currently enrolled in an accredited undergraduate or graduate program in Cybersecurity, Information Technology, Computer Science, Information Systems, or a closely related field
Cumulative 3.0 GPA or above; college transcript required.
Currently enrolled in or newly graduated from an accredited college/university.
Legally authorized to work in the U.S.
At least 18 years of age prior to the scheduled start date.
Must complete an application and provide a cover letter expressing interest and indicating best department to further learning goals.
Must successfully pass a background check prior to the program start date. Onboarding will be provided.
Successfully pass all compliance modules.
Final presentation on learning during last week of the program.