Security Compliance Intern
ECIAbout the role
ECI is the leading global provider of managed services, cybersecurity, and business transformation for mid-market financial services organizations across the globe. From its unmatched range of services, ECI provides stability, security and improved business performance, freeing clients from technology concerns and enabling them to focus on running their businesses. More than 1,000 customers worldwide with over $3 trillion of assets under management put their trust in ECI.
At ECI, we believe success is driven by passion and purpose. Our passion for technology is only surpassed by our commitment to empowering our employees around the world.
The Opportunity:
As a Security Compliance Intern, you will have the opportunity to work with cutting edge technology and industry leaders in the financial space. Your role will be responsible for assisting with conducting security audits/assessments, reviewing policies and client documentation, conducting vendor risk management, and presenting recommendations to client leadership teams, and acting as a security centric technical leader amongst your peers. You will be a part of a strong international team that supports clients across the globe. You will gain familiarity with security frameworks and have a strong ability to tie risk to the organization based on their operations. In this role, you can’t be afraid to get your hands dirty and help the leadership team build an ever-evolving program.
This is a hybrid role in NYC. Working hours: maximum 25 hours per week in any given week.
What you will be doing:
- Learn to assess client security infrastructures and document information security policies, processes, and technical controls.
- Learn to identify information security weaknesses and gaps by conducting client security assessments, risk assessment, and vendor due diligence through interviews, questionnaires, documentation reviews, and technical assessments.
- Describe and communicate security findings, potential business risks, present remediation recommendations, and estimate costs and effort levels for remediation to internal teams.
- Learn to update client policies based on industry standards, best practices, and regulatory requirements such as SEC, FTSE, ISO27001, NIST, GDPR etc. as necessary.
- Collect and organize evidence from all client assessments and ECI’s System Service Desk and Network Service Desk.
- Conduct simulated phishing exercises, awareness training, and incident response tabletop exercises for clients
- Assist clients with security aspects during their internal and external audits.
Is this role for you?
- Studying Computer Science, Information Security, Cybersecurity, or a related field
- Strong Technical Aptitude and a willingness to learn
- Analytical thinking skills and the ability to come to conclusions on your own
- Exceptional written and verbal communication skills, with the ability to present to client leadership teams and executives.
- Technical background and experience/understanding with different IT systems, including but not limited to Microsoft, Google, etc.
- Stays vigilant of constantly aware of evolving industry threats and real-world events that impact client security.
- Strong interpersonal skills to deal with a diverse set of clients and colleagues.
ECI’s culture is all about connection - connection with our clients, our technology and most importantly with each other. In addition to working with an amazing team around the world, ECI also offers a competitive compensation package and so much more! If you believe you would be a great fit and are ready for your best job ever, we would like to hear from you!
Love Your Job, Share Your Technology Passion, Create Your Future Here!
#LI-Hybrid
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s