Cloudflare6 days ago
Стажёр команды GRC (осень 2026)
Salary not specified
MARKET
13,534 ₽median for this role
Tech Lead / Team Lead · 166 jobs with disclosed pay
5,250half of the offers: 9,771–18,1061.2 млн
The employer didn't disclose pay — compare with the market yourself.
In-Office
Responsibilities
- 01Support preparation and coordination for privacy and AI-related framework audits, including ISO 27701, ISO 27018, Global CBPR / PRP, and ISO 42001.
- 02Help build and maintain a comprehensive knowledge base of privacy, personal data protection, AI governance, and related internal processes to support current and future audits.
- 03Organize audit-ready documentation, evidence, ownership records, and process maps so that requirements can be located, understood, and presented efficiently.
- 04Work with internal stakeholders across Legal, Security, Product, Engineering, People, Procurement, and other teams to gather information required for audit readiness and control validation.
- 05Help translate complex privacy, AI, and compliance topics into clear summaries for internal audiences, including support for presenting material to auditors.
- 06Track gaps, dependencies, action items, and review cycles across multiple frameworks and workstreams.
- 07Contribute to process improvements that make privacy and AI governance work more durable, scalable, and easier to navigate over time.
- 08Where useful, prototype lightweight dashboards, trackers, or workflow tools using spreadsheets, low-code/no-code tools, or AI-assisted coding to improve visibility into audit status and evidence readiness.
- 09Work closely with a mentor who will provide guidance in GRC, privacy, and audit operations.
- 10Present your internship project and recommendations at the end of the program.
Requirements
- 01Interest in privacy, personal data protection, AI governance, technology regulation, or security compliance through coursework, research, internships, or independent study.
- 02Familiarity with privacy and security concepts such as personal data, data lifecycle, purpose limitation, access controls, vendor risk, incident response, or accountability.
- 03Exposure to privacy, AI, or security standards and frameworks such as ISO 27701, ISO 27018, Global CBPR, PRP, ISO 42001, ISO 27001, SOC 2, NIST, or similar frameworks.
- 04Ability to explain legal, policy, or technical concepts clearly to both expert and non-expert stakeholders.
- 05Strong documentation, note-taking, and technical writing skills.
- 06Ability to organize information into a durable and navigable repository, tracker, or knowledge base.
- 07Comfort engaging internal stakeholders, asking clear follow-up questions, and reconciling incomplete or conflicting information.
- 08Analytical thinking and attention to detail when reviewing evidence, controls, an
What we offer
- 01Available Location: London, United Kingdom