Job Summary:
We are looking for a proactive and detail-oriented Cyber Security Intern to support the IT Risk Management function within the organization. The role involves identifying, assessing, and mitigating risks related to IT infrastructure and operations, while ensuring compliance with key standards such as PCI DSS, ISO 27001, ISO 27701, PDPA, and other relevant regulations. The Cyber Security Intern will assist in maintaining a secure and resilient IT environment, ensuring that the organization's information systems are protected against potential risks.
Key Responsibilities:
- Risk Identification & Assessment: Assist in identifying and evaluating IT risks across different business functions.
Conduct regular risk assessments, security audits, and vulnerability assessments to detect potential risks or security gaps.
Support in documenting and maintaining the organization's risk register.
- Compliance Support: Help ensure compliance with PCI DSS, ISO 27001, ISO 27701, PDPA, and other relevant regulations.
Assist in preparing for internal and external IT audits by gathering evidence, managing documentation, and coordinating with relevant stakeholders.
Monitor regulatory changes and support the implementation of necessary changes to meet compliance requirements.
- Incident Monitoring & Reporting: Assist in tracking and responding to IT security incidents, coordinating with other teams to resolve issues.
Maintain an incident log and report on security incidents and corrective actions taken.
- Policy and Procedure Development: Support the development, review, and update of IT risk policies, procedures, and guidelines.
Assist in ensuring that IT risk management policies are properly implemented and adhered to across the organization.
- Training & Awareness: Assist in conducting IT risk awareness training for employees, ensuring they are informed about key security practices and compliance requirements.
Help create awareness materials on best practices in information security and risk management.
- Documentation & Reporting: Prepare and maintain reports on IT risk activities, audit findings, and compliance status for management and regulatory bodies.
Assist in developing key metrics to track the effectiveness of IT risk management initiatives.
- Vendor Risk Management: Help assess third-party vendor risks, ensuring that external partners comply with the organization's IT security and risk management standards.
Coordinate vendor reviews and help manage IT-related risks from external service providers.
Qualifications & Experience:
- Students currently pursuing Cyber Security / Computer Science or related disciplines.
- Good understanding of network security and cybersecurity domain knowledge.
- Creative problem solver with the ability to multitask in a rapidly changing environment.
- Good written, verbal communication and presentation skills.
- No relevant working experiences is required training will be provided.
- Fresh graduates/student/Part-timer are welcome to apply