Junior Information Security & Data Protection (Internship)

  • Full-time
  • Contract Type: Permanent

Company Description

JOIN ATEXIS! AN ALTEN COMPANY 🚀
 

ATEXIS is a multinational consultancy specialized in providing engineering support services to clients, including leading companies in the aerospace, defense, naval, railway, energy, and industrial sectors.

Job Description

Internship in the Information Security & Data Protection team, focused on governance, risk and compliance (GRC). • Support for the ISMS (ISO/IEC 27001), GDPR compliance and AI governance (EU AI Act).

• Governance- and process-oriented role; basic IT, network and systems knowledge is a plus. 

• Support the implementation and maintenance of management systems, internal controls and compliance requirements (information security, privacy and governance).

• Assist in internal audits to assess the effectiveness of security controls.

• Help identify and assess information security risks.

• Contribute to security training and awareness initiatives and related documentation.

• Work with IT, Procurement & Facilities and HR to ensure security measures are correctly applied.

• Support GDPR compliance and personal data protection activities.

• Support AI governance initiatives, including monitoring EU AI Act requirements and the responsible use of AI.

 

Qualifications

• Currently studying or recently graduated in Information Security, Computer Science, Information Technology or a related field.

• A higher vocational qualification (Técnico Superior) in an IT-related field is also welcome.

• Candidates from other backgrounds (e.g. Law, Business Administration, Industrial Engineering) with a genuine interest in information security and compliance will also be considered.

• Must be eligible for an internship agreement with a university or training institution.

• Relevant courses or entry-level certifications are a plus (e.g. ISO/IEC 27001 Foundation, ISC2 CC, CompTIA Security+, data protection / GDPR courses). 

• No previous professional experience required; academic projects, previous internships or personal projects in information security, IT or compliance are a plus.

• Basic knowledge of information security principles (confidentiality, integrity and availability), networks and systems.

• Familiarity with the principles and basic requirements of ISO standards and process management. • Basic knowledge of data protection and regulatory frameworks such as the GDPR.

• Interest in, or initial knowledge of, artificial intelligence, AI governance and the regulatory requirements of the EU AI Act.

• Standards: ISO/IEC 27001 and ISO/IEC 27002; awareness of ISO 9001, or the NIST Cybersecurity Framework is a plus. • Regulations: GDPR and Spanish LOPDGDD, EU AI Act; awareness of the NIS2 Directive is a plus. • Microsoft 365 (Excel, Word, PowerPoint, Teams, SharePoint) for documentation, reporting and evidence management.

• Experience with GRC or audit tools is a plus but not required. 

• Upper-Intermediate English Level (B2 Level)

Soft Skills:

• Clear and effective communication skills, both verbal and written. • Initiative, proactivity and willingness to take on responsibility. • Team player, able to collaborate in a multidisciplinary environment. • Commitment to continuous learning and improvement in the field of information security. • Strong work ethic, integrity and discretion when handling sensitive and confidential information. • Organized and detail-oriented, with an analytical mindset. 

By clicking the link above or any third-party link within this posting, you are leaving this site and going to a third-party website where the third-party website's terms and privacy policy apply

Privacy Notice