IS Governance, Risk & Compliance Intern

Blaze Credit Union

Northern (KY)

Hybrid

USD 24,000 - 34,000

Part time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Blaze Credit Union is offering a part-time, on-site Information Security/GRC internship at our St. Paul, MN office. The role supports the Information Security Director and the GRC function, gaining hands-on exposure to vendor risk management, policy governance, audit support, and business continuity.

You will help maintain risk registers and artifacts, assist with control testing, and learn regulatory requirements (NIST CSF, GLBA, FFIEC) while supporting routine GRC operations.

Qualifications

  • Familiarity with basic information security, risk, and compliance concepts.
  • Awareness of data privacy regulations (GLBA, GDPR, CCPA/CPRA) is a plus.
  • Proficiency with Word/Excel/PowerPoint; basic GRC tools experience a plus.

Responsibilities

  • Assist with vendor risk management activities and due diligence.
  • Support policy governance, standards, and version control.
  • Gather audit artifacts for internal audits, NCUA exams, and third‑party assessments.
  • Maintain risk registers and compliance trackers to keep records current.
  • Support business continuity management activities and BCM data entry.
  • Assist with control testing and evidence collection.
  • Research regulatory requirements (NIST CSF, GLBA, FFIEC) and summarize findings.
  • Track open risk and remediation items and follow up with owners.
  • Support routine GRC operations such as security awareness metrics.

Skills

Attention to detail
Proactive learner
Communication skills

Education

Bachelor's in information security or related field

Tools

Microsoft Office

Job description

Description

Role: This role supports the Information Security Director and the Governance, Risk and Compliance (GRC) function in maintaining a strong control environment, advancing risk and compliance activities, and building foundational security skills. The intern gains hands‑on exposure to vendor risk management, policy governance, audit and exam support, and business continuity while helping the team operate efficiently.

Job Type: Part time, on‑site at our administrative office in St. Paul, MN. Interns will work 15-20 hours per week during the academic year. Weekly hours are determined by departmental needs, with flexibility provided to accommodate academic schedules.

Major Duties and Responsibilities
  • Assist with vendor risk management activities, including intake, due diligence, collection of SOC 2 reports, and tracking of vendor tier classifications
  • Support the review and organization of security policies, standards, and procedures, including formatting, version control, and redline preparation
  • Help gather and organize audit and examiner artifacts for internal audits, NCUA exams, and third‑party assessments
  • Maintain risk registers, control libraries, and compliance trackers to keep records current and accurate
  • Support business continuity management (BCM) activities, including department intake, business impact analysis data entry, and plan documentation
  • Assist with control testing and evidence collection to validate that security controls are operating as intended
  • Research regulatory requirements and industry frameworks (e.g., NIST CSF, GLBA, FFIEC) and summarize findings for the team
  • Track open risk and remediation items and follow up with owners on status
  • Support routine GRC operations such as tracking security awareness metrics and maintaining shared documentation
Other Duties
  • Participate in business continuity, incident management, and recovery planning and exercise efforts
  • Comply with applicable laws and regulations, including but not limited to the Bank Secrecy Act, the Patriot Act, and the Office of Foreign Assets Control
  • Exhibit Blaze's Core Values: Better Lives, Thoughtfully Compassionate, Minnesota's Best, and Give Back
  • Perform other duties as assigned to support effective department operation
Requirements
Job Requirements
Experience/Education/Certifications/Licenses
  • Minimum High School degree or equivalent
  • Currently pursuing an Associate's or Bachelor's degree in Information Security, Information Technology, Business, Risk Management, or a related field; recent graduates also considered
  • Coursework, projects, or prior experience related to information security, risk, compliance, or IT is preferred
  • Interest in pursuing security or compliance certifications (e.g., CompTIA Security+, ISACA CRISC, or similar) is a plus
Demonstrated Knowledge
  • Familiarity with basic information security, risk, and compliance concepts
  • General awareness of data privacy and financial regulations such as GLBA, GDPR, CCPA and CPRA is a plus
  • Proficiency with Microsoft Office (Word, Excel, PowerPoint, Outlook); exposure to collaboration and GRC tools is a plus
  • Strong attention to detail; high level of honesty and integrity
  • Ability to handle multiple tasks simultaneously, take initiative and be proactive
  • Willingness to learn, ask questions, and follow documented processes
Communication Skills

Ability to communicate clearly and professionally with staff across the organization; willingness to document processes and develop written materials that draw from information in the field, whether working independently or as part of a team

Physical Requirements

Ability to sit and stand; answer calls; operate a computer; interact with internal staff and the public on the phone; travel to designated offices; lift up to 20 lbs.

Diversity creates a healthier atmosphere, and we encourage diverse applicant depth and breadth. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, national origin, protected veteran status, disability status, sexual orientation, gender identity or expression, marital status, genetic information, or any other characteristic protected by law.

We are committed to providing salary information for all open positions. Compensation for this position is $21.00/hour.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IS Governance, Risk & Compliance Intern
IS Governance, Risk & Compliance Intern

Minnesota League of Credit Unions • Northern (KY)

Hybrid
USD 25,000 - 33,000
GRC Intern: Risk, Policy & Audit Support
GRC Intern: Risk, Policy & Audit Support

Blaze Credit Union • Northern (KY)

Hybrid
USD 24,000 - 34,000
GRC & InfoSec Intern: Risk, Policy & Audit
GRC & InfoSec Intern: Risk, Policy & Audit

Minnesota League of Credit Unions • Northern (KY)

Hybrid
USD 25,000 - 33,000
Senior Risk & Compliance Analyst
Senior Risk & Compliance Analyst

Ecmc Group • Minneapolis (MN)

Hybrid
USD 115,000 - 125,000
Health & wellness benefits: medical, d
Life & disability insurance
401(k) with company match
+1
Sr. IS Systems Engineer
Sr. IS Systems Engineer

Blaze Credit Union • Saint Paul (MN)

On-site
USD 78,490 - 117,735
GRC Analyst Internship (remote)
GRC Analyst Internship (remote)

Ruleset Security • Arlington (VA)

Hybrid
USD 40,000 - 60,000
Governance, Risk & Compliance Analyst I
Governance, Risk & Compliance Analyst I

GEOGRAPHIC SOLUTIONS INC • Palm Harbor (FL)

Hybrid
USD 65,000 - 90,000
Governance, Risk & Compliance (GRC) Analyst
Governance, Risk & Compliance (GRC) Analyst

Delta Dental of Missouri • Missouri

Hybrid
USD 80,000 - 100,000
Governance, Risk & Compliance Analyst I
Governance, Risk & Compliance Analyst I

ID Projetos Educacionais • Palm Harbor (FL)

Hybrid
USD 65,000 - 90,000
Governance, Risk & Compliance Analyst I
Governance, Risk & Compliance Analyst I

Geographic Solutions, Inc. • Palm Harbor (FL)

Hybrid
USD 65,000 - 85,000