RegScale is a continuous controls monitoring (CCM) platform purpose-built to deliver fast and efficient GRC outcomes. We help organizations break out of the slow and expensive realities that plague legacy GRC tools by bridging security, risk, and compliance through controls lifecycle management. By leveraging CCM, organizations experience massive process improvements like 90% faster certification times, and 60% less audit prep time. Today’s expansive security and compliance requirements can only be met with a modern, CCM based approach, and RegScale is the leader in that space.
Position:
RegScale is seeking a Cyber Security Intern to join our security team. This internship is designed for a student who is excited to explore multiple areas of modern cybersecurity, including security operations, vulnerability management, governance/risk/compliance (GRC), and cloud security.
In this role, you will gain hands-on experience helping protect real production systems while learning how high-growth SaaS companies secure their platforms and maintain compliance. This internship offers exposure to security operations, compliance automation, and risk management, providing a unique opportunity to explore different cybersecurity career paths in a supportive, fast-paced environment.
Key Responsibilities:
- Support the security operations team in monitoring, triaging, and responding to security alerts and events
- Assist with vulnerability management, including scanning, tracking, and coordinating remediation
- Support security compliance and audit activities (e.g., FedRAMP, SOC 2, NIST 800-53) using the RegScale platform
- Help evaluate and configure security tooling such as SIEM, endpoint protection, and cloud security posture management
- Participate in threat and risk assessments and document findings under guidance from senior security engineers
- Collaborate with the CISO’s team on security monitoring, incident response, and policy development
- Document security processes, playbooks, and lessons learned
- Present a final capstone project or security demo at the end of the internship
Qualifications:
- Currently pursuing a Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Information Systems, or a related field
- Familiarity with core security concepts (e.g., networking, operating systems, encryption, or access control)
- Basic understanding of cloud computing concepts (AWS, Azure, or GCP) and cloud security
- Interest in security operations, governance/risk/compliance (GRC), or threat detection
- Ability to learn quickly, ask good questions, and work independently when needed
- Strong written and verbal communication skills
What You’ll Gain:
- Hands-on experience helping protect production SaaS infrastructure
- Exposure to security operations, GRC, and compliance automation
- Mentorship from senior security engineers, architects, and security leaders
- Experience contributing to real-world security and compliance projects
- Insight into how modern cloud-native security and compliance platforms are built