Grc Team Intern (summer 2026)

Cloudflare Cloudflare · Enterprise · London, United Kingdom · Security

The GRC Team Intern will work on projects to improve Cloudflare's security posture, integrate security into company processes, and learn about risk management and compliance frameworks. The role involves executing a specialized project, working cross-functionally, and presenting findings. Desirable skills include knowledge of security frameworks, risk management, basic Python scripting, workflow logic, and effective AI model instruction.

What you'd actually do

  1. Execute a specialized project that directly improves Cloudflare’s security posture.
  2. Improve the maturity of Cloudflare’s Security Compliance program by working on projects like:
  3. Work cross-functionally with Legal, People, Engineering, and Finance teams to integrate security into the fabric of the company.
  4. Work closely with a mentor who will provide hands-on guidance in your specific security domain.
  5. Connect and learn from our executives and leadership team including our co-founders.

Skills

Required

  • Working knowledge of industry-standard frameworks such as NIST 800-53, ISO 27001, or SOC 2 principles through coursework or personal study.
  • Understanding of risk management methodologies - identifying threats, assessing impact/likelihood, and suggesting mitigation strategies.
  • Ability to write basic Python scripts to automate repetitive tasks, such as interacting with APIs or data cleaning.
  • Workflow Logic & Orchestration - experience with "if-this-then-that" logic in automation platforms.
  • Understanding how to "instruct" AI models effectively and leverage them to perform day-to-day tasks.
  • Demonstrated critical thinking skills and drive to learn and adapt new technologies.
  • Curiosity, empathy and ability to get things done.
  • Ability to commit to a minimum 12 week summer internship.
  • In the office 3-5 days a week in the London office

Nice to have

  • Demonstrated passion for security & software development, such as personal projects, open-source contributions, or experience
  • You’ve built something with our developer platform using [Cloudflare for Students](https://www.cloudflare.com/students/)

What the JD emphasized

  • Working knowledge of industry-standard frameworks such as NIST 800-53, ISO 27001, or SOC 2 principles through coursework or personal study.
  • Understanding of risk management methodologies - identifying threats, assessing impact/likelihood, and suggesting mitigation strategies.
  • Ability to write basic Python scripts to automate repetitive tasks, such as interacting with APIs or data cleaning.
  • Workflow Logic & Orchestration - experience with "if-this-then-that" logic in automation platforms.
  • Understanding how to "instruct" AI models effectively and leverage them to perform day-to-day tasks.