1

Internship Cyber Security Risk Analyst Jobs in North Carolina

In cybersecurity we analyze and diagnose specific environments from the point of view of compliance or regulatory risks, we incorporate technological solutions, we manage the operation of ...

Cybersecurity Analyst SME

Concord, NC · On-site

$164K - $212K/yr

Cyber and IT Risk Management Job Qualifications: Skills: Cyber Security Architecture, Risk ... Our work depends on a Cyber Security Analyst SME joining our team to support USPACOM J6 mission ...

Fraud Risk Analyst

Charlotte, NC · On-site

$105.40 - $124/hr

Extensive data analytics experience in fraud analytics, fraud prevention, risk management, financial services, cybersecurity, or a related field, and experience translating findings into business ...

GRC Analyst

Charlotte, NC · On-site

$85 - $120/hr

IT Security GRC Analyst (2 Openings) Location: Charlotte, NC (Hybrid Schedule) 2 days onsite / 3 ... Cybersecurity Risk Management * Perform cybersecurity risk assessments for applications ...

next page

Showing results 1-20

Internship Cyber Security Risk Analyst information

What does an internship cyber security risk analyst do?

An Internship Cyber Security Risk Analyst supports the cybersecurity team by identifying, assessing, and helping to mitigate potential security risks within an organization’s information systems. Interns in this role often assist with evaluating security measures, conducting vulnerability assessments, and reviewing compliance with security policies. They may also help develop risk reports and collaborate with other teams to implement best security practices. This position is ideal for those looking to gain hands-on experience in the field of cybersecurity risk management.

What are the key skills and qualifications needed to thrive as an internship cyber security risk analyst?

To thrive as an Internship Cyber Security Risk Analyst, you need foundational knowledge in information security principles, risk assessment, and familiarity with security frameworks, often supported by coursework in cybersecurity or related fields. Experience with tools such as vulnerability scanners, SIEM platforms, and basic certifications like CompTIA Security+ are highly valued. Strong analytical thinking, attention to detail, and effective communication skills help interns interpret findings and collaborate with teams. These capabilities are crucial for identifying vulnerabilities, supporting risk mitigation, and ensuring the security posture of an organization.

What types of projects or tasks can an intern expect to work on as a cyber security risk analyst?

As an intern in Cyber Security Risk Analysis, you can expect to assist with identifying and assessing potential security risks within an organization’s IT infrastructure. Common tasks may include helping to review security policies, conduct vulnerability assessments, and analyze security incidents under the guidance of senior analysts. You may also collaborate with IT and compliance teams to document findings and recommend mitigation strategies. This role offers the chance to gain hands-on experience with industry-standard tools and exposure to real-world risk management processes, providing a strong foundation for a future career in cybersecurity.

What is the difference between Internship Cyber Security Risk Analyst vs Cyber Security Risk Analyst?

AspectInternship Cyber Security Risk AnalystCyber Security Risk Analyst
QualificationsEnrolled in or recent graduate of relevant degree programs; some certifications beneficialTypically requires professional certifications (e.g., CISSP, CISA) and experience
Work EnvironmentInternship setting, learning-focused, supervisedFull-time, professional role with independent responsibilities
ResponsibilitiesAssisting with risk assessments, supporting security projects, learning proceduresConducting risk analysis, developing mitigation strategies, managing security protocols

The Internship Cyber Security Risk Analyst role is an entry-level, learning position designed for students or recent graduates gaining industry experience. In contrast, a Cyber Security Risk Analyst is a full-time professional responsible for managing and analyzing security risks independently. The internship offers foundational exposure, while the full analyst role requires more advanced skills and certifications.

What cities in North Carolina are hiring for Internship Cyber Security Risk Analyst jobs?

Cities in North Carolina with the most Internship Cyber Security Risk Analyst job openings:

Principal, Cybersecurity Risk

Fidelity Investments

Durham, NC • On-site

Full-time

Posted 13 days ago


Fidelity Investments rating

8.7

Company rating: 8.7 out of 10

Based on 273 frontline employees who took The Breakroom Quiz

16th of 152 rated financial services


Job description

Job Description:

Note: Fidelity will not provide immigration sponsorship for this position

The Role

The Enterprise Cybersecurity Risk (ECS Cyber Risk) team is seeking an experienced Principal-level risk professional to lead in the creation of cyber risk analysis pertaining to ECS. The candidate will understand current and emerging cybersecurity risks and determine key risk scenarios for the ECS Product Areas. The candidate will participate in risk / threat modeling sessions to prioritize top risks. The candidate will advise on both exceptions and audit finding risk levels to drive down the number of exceptions and accurately risk rate audit findings. The candidate will quantify cyber risk and present analyses at the technical and executive level that will allow senior management to make informed decisions based on resulting risk data.

The Expertise and Skills You Bring

  • Minimum 3-5 years of risk experience quantifying cyber risk scenarios and presenting data in a meaningful and insightful way to senior leaders.

  • Demonstrated experience in cybersecurity risk management, assessment frameworks, and metrics reporting.

  • Experience managing projects end-to-end, from initial stages of acquiring data from multiple sources and subject matter experts to the tracking, maintenance, and closure of a project, with proven ability to integrate data into risk analysis tools and communicate progress effectively across multiple lines and levels.

  • Use and understanding of governance, risk, and compliance tools.

  • Advanced understanding of NIST 800-53 Cybersecurity Framework, Cybersecurity Risk Institute (CRI), and FAIR

  • CRISC, CISSP, or CISM certifications are preferred.

  • You have effective communication and excellent presentation skills to senior leaders.

  • You can deep dive into metrics that will both (1) quantify the work being done and (2) quantify how cyber risk position has improved.

  • Critical thinking skills to ask detailed questions and fully vet answers to uncover discrepancies and gaps others may not have found is a must.

  • You can work across business lines to influence change and help mitigate cyber risk.

  • You have an intermediate understanding of risks pertaining to the following: cloud security, access controls, encryption, vendor security, data exfiltration, application security, perimeter security, customer protection, privileged access, denial of service, unpatched vulnerabilities, and end of life software.

  • You operate in a fast-paced environment and can complete analyses quickly and accurately integrating new cybersecurity data into risk models as it emerges.

  • You bring an investigator mindset to deep dive into metrics to understand and communicate actionable risk to business and technology groups.

  • Determining the appropriate controls for cybersecurity risks

  • Working with asset inventory and asset management

  • Evaluating multiple sources, reports, industry trends to compare risk related findings to existing ECS policies and uncover gaps and opportunities for process improvement.

  • Determining what, who, and where changes are warranted to close gaps, working with appropriate contacts to draft policy enhancement ensuring continued progress.

The Team

ECS Cyber Risk provides cybersecurity risk analyses pertaining to existing and emerging risk scenarios and communicates these risks to appropriate ECS technical teams and senior leadership. This team focuses on identifying, measuring, prioritizing, and reporting on cyber risk scenarios and will work both independently and across business units and technology teams to assist senior management with informed decisions and directions in strategy to either maintain the course or if needed, change direction.

Fidelity's Onsite Working Model
Fidelity is transitioning to a full-time onsite working model through a phased rollout across regions and roles. Currently, some roles and locations require 100% onsite presence, while others require less. Onsite expectations are likely to evolve as the rollout continues. This transition does not apply to fully remote roles.

Certifications:Category:Information Technology

Please be advised that Fidelity's business is governed by the provisions of the Securities Exchange Act of 1934, the Investment Advisers Act of 1940, the Investment Company Act of 1940, ERISA, numerous state laws governing securities, investment and retirement-related financial activities and the rules and regulations of numerous self-regulatory organizations, including FINRA, among others. Those laws and regulations may restrict Fidelity from hiring and/or associating with individuals with certain Criminal Histories.


What Fidelity Investments employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom