Information Security Intern focusing on Governance, Risk, and Compliance at papernest. Involves compliance projects and security documentation in a tech environment.
Responsibilities
You will be the "guardian of the framework."
Help turn our security activities into a structured, audit-ready program, focusing heavily on Governance, Risk, and Compliance (GRC).
Assist in the NIS2 compliance project by helping map our current measures against essential entity obligations.
Support PCI-DSS oversight by collecting evidence (screenshots, logs, configs) and organizing them for external auditors.
Help manage our continuous compliance platforms to ensure we are always audit-ready.
Act as the librarian for our security knowledge.
Help centralize, format, and update our Security Policy Framework to ensure it is accessible to all employees.
Work on Internal audit preparation by ensuring all procedures are written down and up to date.
Assist in documenting security KPIs and preparing reports for leadership.
Take ownership of the Vendor security due diligence process.
Send out security questionnaires to new tools/partners and review their answers.
Maintain our register of third-party risk assessments and ensure contractual security clauses are tracked.
Assist the Senior Engineer in tracking vulnerability remediation by following up with developers to ensure tickets are closed on time.
Help organize security awareness campaigns (phishing simulations, training sessions) to boost our internal culture.
Requirements
Student in Business (IT Management), Computer Science, or Cybersecurity with a focus on GRC.
Detail-Oriented: You love checklists, organized folders, and clear documentation.
Strong Writing Skills: You can explain complex rules in simple, clear English.
Interest in Regulations: You are curious about GDPR, NIS2, and PCI-DSS and want to learn how they apply to a real tech scale-up.
Tech-Savvy: You don’t need to be a coder, but you are comfortable with tech tools (Jira, Notion, Excel) and understand the basics of how a SaaS company works.
Benefits
Evolve in an international and inclusive environment: everyone has a place at papernest, and with more than 46 different nationalities, it's not uncommon here to start a sentence in English and finish it en français o en español
Enjoy a competitive compensation for your internship. We value every contribution and are committed to offering attractive remuneration for your efforts and dedication.
A healthy and balanced breakfast is offered every Tuesday!
Interns are not just “photocopy-coffee” assistants! As a full-fledged team member, you're here to learn, but also to share your ideas and implement projects. You'll be supported throughout your journey to maximize your skills and prepare for your future.
Enjoy 1 day of remote work per week to optimize your focus and efficiency.
Security Architect in Transactions domain ensuring cybersecurity for Payments and Financial markets. Collaborating with teams to enhance compliance and security practices.
Modern Infrastructure and Security Architect at MUFG responsible for directing cyber security initiatives. Collaborating with engineers to enhance security features and tools across the organization.
Senior Federal Technical Program Manager driving execution of federal cloud operations. Facilitating engagements between HPE's CSP and MSP teams while ensuring compliance and operational efficiency.
Cloud Cybersecurity Engineer supporting multi - cloud environments for critical missions in alignment with the U.S. Air Force. Roles include overseeing security authorizations and collaborating with government teams.
Program Security Manager overseeing security and compliance for mission applications in the US. Managing security programs and leading facility operations at Aurora and Philadelphia locations.
Information System Security Manager providing cybersecurity and RMF support for DoD systems and applications. Collaborating with military, government, and contractor personnel to ensure national security and systems compliance.
AI Security Engineer focusing on identifying and mitigating AI vulnerabilities. Involves research, development, and implementation of adversarial machine learning algorithms.
Vice President overseeing DHS & National Security Accounts at ITC Federal. Driving growth, managing P&L, and building strategic relationships across federal contracting.
Information Systems Security Officer supporting national priority programs for AMERICAN SYSTEMS. Ensuring security of AIS and network operations as part of information technology and security teams.
Information Systems Security Officer ensuring security for national priority programs at AMERICAN SYSTEMS. Overseeing automated information systems and providing security coordination for compliance and vulnerability management.