Cambium Learning
SecurityAnalystIntern
Neural analysis suggests this role is
optimal for Entry candidates.
“Security Analyst Intern at Cambium Learning. Skills: Vendor risk assessments, Third-party risk management, Security awareness training, GRC, Security program activities. Assist with vendor risk assessments by collecting due diligence artifacts and tracking status.. Review questionnaire responses and evidence for summarize observations and follow up with vendors and internal stakeholders for clarifications.”
What You'll Achieve.
Meet weekly deliverables.; Help produce simple metrics dashboards and end-of-campaign summaries.; Maintain clean, audit-ready records.
Industry & Context.
Follow documented processes; Light research; Process improvement tasks
Must reside and work within the US for the duration of internship., Must have reliable home office internet access., Actively participate in video-based interviews during the recruiting process and ongoing virtual meetings with their camera on., Use of note-taking tools, reference materials, or AI-powered tools (including generative AI, language models, or similar technologies) during interviews or other selection activities is prohibited unless prior written approval has been obtained., Reimbursement to help cover the cost of setting up your home or remote office.
What They're Looking For.
Must Have
Currently pursuing a Bachelor’s or Master’s degree in Cybersecurity, Information Systems, Computer Science, Risk Management, or a related field., Interest in (or coursework related to) third-party risk management, security governance, or compliance., Organizational skills and attention to detail., Able to manage multiple tasks and follow documented processes., Clear written and verbal communication., Comfortable collaborating with internal teams and following up with vendors professionally., Proficiency with Microsoft Office (especially Excel) or Google Suite., Able to learn new tools quickly., Able to work effectively in a fully remote environment, including participating in virtual meetings and communicating status clearly., Must have reliable home office internet access.
Nice to Have
Experience with or interest in creating training content, communications, or internal documentation (e.g., writing, editing, basic design)., Comfort working with basic metrics and reporting (e.g., pivot tables/charts) and/or familiarity with learning management systems or security awareness platforms is a nice to have.
What You'll Do.
Assist with vendor risk assessments by collecting due diligence artifacts and tracking status.
Review questionnaire responses and evidence for summarize observations and follow up with vendors and internal stakeholders for clarifications.
Help document vendor risks
compensating controls
and remediation items in the company’s third-party risk management (TPRM) maintain clean
Support security awareness training planning: build and maintain the training calendar
coordinate campaign logistics
and assist with rollout communications.
Assist with awareness platform setup (as applicable): user/group uploads
and QA of training modules and phishing simulations.
and simulation help produce simple metrics dashboards and end-of-campaign summaries.
Draft and update program documentation
and internal wiki pages related to vendor assessments and security awareness.
Provide general support for GRC and security program activities as needed (e.g.
process improvement tasks).
How You'll Work.
Team & Collaboration
Communicate progress asynchronously.; Collaborating with internal teams.; Following up with vendors professionally.; Participating in virtual meetings.
Communication Scope
Clear written and verbal communication; Communicate progress asynchronously; Communicating status clearly
Process & Methodology
Manage multiple tasks, Track status, Coordinate campaign logistics, Build and maintain the training calendar
Full Job Description
**Location:** US, Remote. Must reside and work within the US for the duration of internship. **Internship Overview:** Be part of the mission to protect people, data, and trust. This 10‑week internship gives you hands‑on experience supporting critical cybersecurity and risk programs, helping ensure the company works securely with partners and builds a culture of security awareness. You’ll contribute to meaningful, real‑world work while developing skills that directly impact organizational resilience. Our Security Analyst Intern must have reliable availability during agreed-upon collaboration windows for meetings and check-ins, communicate progress asynchronously, and meet weekly deliverables. **Key Responsibilities:** * Assist with vendor risk assessments by collecting due diligence artifacts (e.g., SOC reports, security questionnaires, policies) and tracking status. * Review questionnaire responses and evidence for completeness; summarize observations and follow up with vendors and internal stakeholders for clarifications. * Help document vendor risks, compensating controls, and remediation items in the company’s third-party risk management (TPRM) system; maintain clean, audit-ready records. * Support security awareness training planning: build and maintain the training calendar, coordinate campaign logistics, and assist with rollout communications. * Assist with awareness platform setup (as applicable): user/group uploads, assignment rules, testing workflows, and QA of training modules and phishing simulations. * Track participation, completion, and simulation results; help produce simple metrics dashboards and end-of-campaign summaries. * Draft and update program documentation, job aids, FAQs, and internal wiki pages related to vendor assessments and security awareness. * Provide general support for GRC and security program activities as needed (e.g., meeting notes, light research, process improvement tasks). **Internship Requirements:** * Currently pursuing a Bac
Applying for this Security Analyst Intern role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Workday
- Workday has a multi-step form — save your progress after every section.
- "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
- Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
- Job requisition numbers are useful when following up with HR by email.
ANONYMOUS · UNFILTERED
What do employees actually say about Cambium Learning?
Real rants from real employees. Read before you apply.