Internship in Cybersecurity evaluating Microsoft 365 environments and Entra ID Security-as-Code tool. Gain experience in security assessment methodologies and collaborate with professionals.
Responsibilities
The project focuses on evaluating a Security-as-Code tool designed for assessing Microsoft 365 environments and Entra ID.
The primary objective is to understand the deployment process, including its configuration and integration within existing systems.
The project involves: conducting a comprehensive analysis of the tool's functionalities; identifying its strengths and potential areas for improvement; performing a gap analysis by comparing the tool with another security assessment script, and determining areas where it excels and where enhancements might be necessary.
Additionally, the project explores the implementation of custom controls within the Security-as-Code framework.
This involves delving into the technical aspects of the tool to understand how custom policies and controls can be developed and integrated into the existing framework.
Collaboration with team members is essential to design and test these custom controls, ensuring they meet the team's specific security needs.
Through this project, participants will gain experience in security assessment methodologies, Microsoft 365 and Entra ID features and architecture, and the customization of security solutions, contributing to the enhancement of the organization's security posture through automation.
Requirements
Pursuing or recently completed a degree in Information Technology, Cybersecurity, Computer Science, or a related field.
Familiarity with Microsoft 365 and Software-as-a-Service concepts.
Understanding of security assessment methodologies and tools.
Basic knowledge of scripting languages (e.g., PowerShell, Python) for understanding code.
Ability to conduct comprehensive analysis and gap assessments of tools.
Strong problem-solving skills to identify strengths and areas for improvement in security solutions.
Effective communication skills to collaborate with team members and articulate findings and recommendations.
Ability to work in a team-oriented environment.
Keen interest in cybersecurity and security automation.
Nice to have: Coding skills in PowerShell to improve and add custom controls.
Knowledge of Entra ID in particular.
Experience with administration of SaaS tools, provisioning of access, and IT/Security operations.
Experience or knowledge about CI/CD best practices.
Job title
Intern – Cloud Security, MS 365 Security-as-Code Analysis
Cloud Security Engineer supporting and securing client environments across AWS and hybrid infrastructures. Collaborating with Cloud Operations to monitor, investigate, and remediate security events.
Cybersecurity Risk Coordinator at Globo ensuring operational security across digital content. Analyzing risks and developing strategies to enhance business resilience.
Account Cybersecurity Lead providing cybersecurity governance and oversight at Capgemini. Leading client relationships, security management systems, and risk compliance oversight.
Senior SAP Security Specialist managing SAP Security responsibilities and projects. Collaborating on security tools and conducting workshops in Hamburg.
Sales Account Manager for Cyber Security and Awareness role at HvS - Consulting GmbH. Providing holistic consulting on Cyber Security services and managing client relationships.
Security Engineer at PRC - Saltillo safeguarding IT infrastructure from cyber threats. Collaborating with IT teams to design and maintain security controls in a hybrid work environment.
Information Security Manager leading cyber security initiatives at NVISO, enhancing clients’ security posture and managing a team of consultants in Germany.
Cybersecurity Assessment Expert at IT - Strat managing A&A of information systems for U.S. federal clients. Ensuring compliance with DOD cybersecurity policies and standards in complex IT environments.
Senior Security Engineer responsible for deploying and maintaining endpoint security solutions. Collaborating across teams to enhance security posture and supporting incident response activities.