About the Internship
As a Cybersecurity Intern, you'll gain hands-on experience working alongside our Governance, Risk, and Compliance (GRC) team, contributing to initiatives across security, compliance, risk management, privacy, and data protection. You'll collaborate with technical, business, and leadership teams while supporting security and compliance efforts that enable WSO2 to serve customers in over 100 countries. This internship offers a unique opportunity to develop practical skills, work on meaningful projects, and learn from experienced cybersecurity professionals.
What You'll Learn
- Hands-on exposure to ISO, PCI-DSS, SOC 2, and other globally recognised certification and attestation programs.
- Understanding on how audit controls are designed, executed, and evidenced.
- Supporting external audits and evidence gathering across multiple teams.
- Understanding risk management methodologies and managing risk registers across multiple product offerings and business units.
- Planning and tracking security and compliance activities across multiple business units via dashboards and follow-ups.
- Principles and concepts relating to data privacy and data protection.
- Global regulations and concepts on data privacy and data protection and how they can be applied in real-life scenarios.
- Understanding of third-party and supplier risk management, including security assessments, compliance reviews, and ongoing monitoring of vendors and sub-processors.
- Collaboration with legal, risk, engineering, product, and operations teams to embed security and privacy requirements into business processes and product development lifecycles.
- Development of skills to translate technical and regulatory requirements into business-friendly guidance for diverse stakeholders.
- Learning how to balance regulatory compliance with business agility and operational efficiency, using a risk-based and pragmatic approach.
- Building strong foundations for professional certifications and long-term career growth in cybersecurity governance, risk, compliance, and data protection.
Key Requirements
- Pursuing a degree in Cybersecurity or equivalent.
- Basic understanding of technical compliance requirements and standards.
- Interest in technical troubleshooting, technical documentation, and project management.
- Ability to multi-task across multiple initiatives and teams.
- Strong interpersonal skills to communicate requirements and findings across multiple functional teams.
- The drive to excel and a never-give-up attitude.
- Curiosity and eagerness to learn and explore.
- Ability to work both independently and collaboratively in a fast-paced environment.
- Basic familiarity with documentation tools, spreadsheets, and collaboration platforms (e.g., Google Workspace, Github) is an advantage.
Diversity Drives Innovation:
We've built our business on a commitment to diversity and inclusion. We believe it's important to foster an environment that values and respects each individual's strengths, perspectives, and ideas. Doing so not only drives innovation; it also ensures that we can create superior experiences for our customers, partners, and employees worldwide. We value the diversity of our team regardless of race, ethnicity, religion, gender, age, national origin, disability, sexual orientation, or veteran or marital status, and we do not tolerate any form of discrimination.