Support the development and formalization of internal cybersecurity and information security policies.
Assist in identifying and documenting gaps in current access control practices, particularly around SSO, geographic access restrictions, and source code access.
Collaborate with engineering, IT, and product teams to align policy language with technical implementation.
Contribute to access review and documentation processes to ensure role-based permissions are enforced across systems.
Help assess data protection measures, such as source code backup practices, and participate in improvement initiatives.
Qualifications
BS or MS student in Cybersecurity, Information Systems, Computer Science, Public Policy, or a related field.
Strong interest in cybersecurity, compliance, or information governance, especially in the context of emerging technologies like autonomous systems.
Comfortable navigating both technical and policy discussions; able to distill complex technical issues into clear policy recommendations.
Familiarity with concepts like SSO, MFA, RBAC (Role-Based Access Control), and network access controls.
US Citizenship required.
Bonus Points For
Experience writing or interpreting security policies, even in academic or student club settings.
Exposure to cybersecurity frameworks such as NIST, ISO 27001, or SOC 2.
Familiarity with tools like GitHub, Google Workspace, or Okta.
Interest in startups, autonomous vehicles, or regulated technology environments.
Preferred Background
Demonstrated experience through coursework, internships, research, or independent projects.
A proactive mindset with a passion for reducing organizational risk and improving clarity around security expectations.