Junior Information Security & Data Protection (Internship)
- Full-time
- Contract Type: Permanent
Company Description
JOIN ATEXIS! AN ALTEN COMPANY 🚀
ATEXIS is a multinational consultancy specialized in providing engineering support services to clients, including leading companies in the aerospace, defense, naval, railway, energy, and industrial sectors.
Job Description
Internship in the Information Security & Data Protection team, focused on governance, risk and compliance (GRC). • Support for the ISMS (ISO/IEC 27001), GDPR compliance and AI governance (EU AI Act).
• Governance- and process-oriented role; basic IT, network and systems knowledge is a plus.
• Support the implementation and maintenance of management systems, internal controls and compliance requirements (information security, privacy and governance).
• Assist in internal audits to assess the effectiveness of security controls.
• Help identify and assess information security risks.
• Contribute to security training and awareness initiatives and related documentation.
• Work with IT, Procurement & Facilities and HR to ensure security measures are correctly applied.
• Support GDPR compliance and personal data protection activities.
• Support AI governance initiatives, including monitoring EU AI Act requirements and the responsible use of AI.
Qualifications
• Currently studying or recently graduated in Information Security, Computer Science, Information Technology or a related field.
• A higher vocational qualification (Técnico Superior) in an IT-related field is also welcome.
• Candidates from other backgrounds (e.g. Law, Business Administration, Industrial Engineering) with a genuine interest in information security and compliance will also be considered.
• Must be eligible for an internship agreement with a university or training institution.
• Relevant courses or entry-level certifications are a plus (e.g. ISO/IEC 27001 Foundation, ISC2 CC, CompTIA Security+, data protection / GDPR courses).
• No previous professional experience required; academic projects, previous internships or personal projects in information security, IT or compliance are a plus.
• Basic knowledge of information security principles (confidentiality, integrity and availability), networks and systems.
• Familiarity with the principles and basic requirements of ISO standards and process management. • Basic knowledge of data protection and regulatory frameworks such as the GDPR.
• Interest in, or initial knowledge of, artificial intelligence, AI governance and the regulatory requirements of the EU AI Act.
• Standards: ISO/IEC 27001 and ISO/IEC 27002; awareness of ISO 9001, or the NIST Cybersecurity Framework is a plus. • Regulations: GDPR and Spanish LOPDGDD, EU AI Act; awareness of the NIS2 Directive is a plus. • Microsoft 365 (Excel, Word, PowerPoint, Teams, SharePoint) for documentation, reporting and evidence management.
• Experience with GRC or audit tools is a plus but not required.
• Upper-Intermediate English Level (B2 Level)
Soft Skills:
• Clear and effective communication skills, both verbal and written. • Initiative, proactivity and willingness to take on responsibility. • Team player, able to collaborate in a multidisciplinary environment. • Commitment to continuous learning and improvement in the field of information security. • Strong work ethic, integrity and discretion when handling sensitive and confidential information. • Organized and detail-oriented, with an analytical mindset.
By clicking the link above or any third-party link within this posting, you are leaving this site and going to a third-party website where the third-party website's terms and privacy policy apply