Intern - Security Operations

2 hours, 17 minutes ago
Internship
Entry Level
Cybersecurity
Marqeta

Marqeta

Marqeta is a pioneer in modern card issuing and payment solutions, offering businesses instant card issuance and payment processing through their innovative open API platform.

Diversified Financial Services
251-1K
Founded 2010

Description

  • Validate and formalize incident response procedures aligned to the Cybersecurity Incident Response Plan (CIRP).
  • Develop SOAR runbook automations in Cortex XSOAR to operationalize response procedures.
  • Design and facilitate tabletop exercises that test security procedures, coordination, and escalation paths.
  • Contribute to post-exercise improvement reports that strengthen security posture and operational readiness.
  • Gain exposure to detection engineering workflows, including detections-as-code and MITRE ATT&CK coverage mapping.
  • Work with Security Operations and Response stakeholders across Security Operations, Compliance/TPRM, and Identity.
  • Translate human-readable incident response steps into repeatable automated workflows.
  • Document technical processes clearly for operational and executive use.

Requirements

  • Currently pursuing a Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Information Systems, or a related field.
  • Expected graduation date between December 2025 and June 2027.
  • Foundational knowledge of security operations concepts, including log analysis, intrusion detection, incident response lifecycles, and common attack techniques.
  • Familiarity with at least one scripting or programming language such as Python or Bash.
  • Comfort working in Linux and cloud environments, with AWS preferred.
  • Strong written communication skills and ability to produce structured documentation.
  • Interest in incident response methodology, security procedure development, and operational readiness.
  • Proactive, detail-oriented problem-solving approach with the ability to work independently and escalate appropriately.
  • Relevant certifications or coursework such as CompTIA Security+, CySA+, BTL1, or GIAC certifications (preferred).
  • Experience with SOAR platforms, SIEM platforms, or EDR tools (preferred).
  • Prior internship, co-op, or project experience in a SOC or incident response context (preferred).
  • Understanding of the MITRE ATT&CK framework and its application to detection and response operations (preferred).
  • Exposure to compliance frameworks relevant to financial services such as PCI DSS (preferred).
  • Experience facilitating exercises, workshops, or structured reviews in any context (preferred).
  • Able to participate in a 12-week internship beginning June 8, 2026 and ending August 28, 2026.

Benefits

  • Weekly internship pay of CAD 1,468.
  • Remote Flex First work environment within Ontario or British Columbia, Canada.
  • 3 vacation days.
  • Mentor and intern buddy support.
  • Opportunity to work on real-life projects.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Analytics Manager, Full Stack (Fraud Analytics)

Affirm 1K-5K Diversified Financial Services

Affirm is hiring a Fraud Strategy & Analytics team member to lead fraud monitoring and escalations while partnering across teams to improve detection and decisioning as the company scales internationally.

Machine Learning Python SQL
17 minutes ago

Senior Cybersecurity Risk Analyst

American Institutes for Research 1K-5K Professional Services

AIR is hiring a Senior Cybersecurity Risk Analyst to support institution-wide security, risk, and compliance efforts across advanced testing, monitoring, assessments, and client-facing security activities.

AWS Azure Cybersecurity GCP Penetration Testing
1 hour, 17 minutes ago

Information Security Analyst (Remote)

Evio Beauty 11-50 Consumer Goods

Evio is hiring an Information Security Analyst to help protect systems, data, and infrastructure in a regulated healthcare environment while strengthening and maturing the company’s security program.

AWS HIPAA OAuth PowerShell Python SAML
2 hours, 32 minutes ago

Federal Security Operations - SkillBridge Intern

Zscaler 1K-5K Internet Software & Services

Zscaler is hiring a remote Federal Security Operations - SkillBridge Intern for its Enterprise Security team to support federal security operations, deployment coordination, and customer issue management in a cloud-first environment.

Active Directory AWS Azure GCP SAML SIEM Splunk
3 hours, 2 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers