Associate Cybersecurity Analyst, Intern - GRC, Summer 2026
Visa.com
70k - 80k USD/year
Office
Austin, TX, United States
Internship
Company Description
Visa is a world leader in payments and technology, with over 259 billion payments transactions flowing safely between consumers, merchants, financial institutions, and government entities in more than 200 countries and territories each year. Our mission is to connect the world through the most innovative, convenient, reliable, and secure payments network, enabling individuals, businesses, and economies to thrive while driven by a common purpose – to uplift everyone, everywhere by being the best way to pay and be paid.
Make an impact with a purpose-driven industry leader. Join us today and experience Life at Visa.
Job Description
Visa’s Internship Program provides an immersive, 12-week journey where you’ll work on impactful projects that drive Visa’s mission forward. As a Visa intern, you’ll build valuable connections across the organization, sharpen your communication and business acumen, and gain hands-on experience in a dynamic, global environment.
Throughout the program, you’ll have exclusive access to interactive workshops and learning sessions designed to deepen your expertise, expand your industry knowledge, and elevate your professional skillset. You won’t just be learning, you’ll be contributing, collaborating, and innovating every step of the way. In addition to professional development, you’ll enjoy a variety of intern social events that foster community, connection, and fun throughout the summer
The experience culminates in an exciting final presentation, where you’ll showcase your project achievements, share key insights, and present your recommendations to Visa’s leaders and stakeholders. This is your chance to demonstrate your business impact, highlight your personal growth, and align your work with Visa’s vision for the future.
Visa is looking for an Associate Cybersecurity Analyst, Intern candidate to join our Cybersecurity Governance Risk and Compliance (GRC) team, which works with several stakeholders to ensure appropriate processes, procedures, and controls are adequately designed and implemented to meet Visa security requirements and mitigate any risks that are associated with engagement of third parties. Also, oversight, coordination, and delivering the activities that support successful internal audits, external audits and compliance, regulatory activities, and external customer/client requests while effectively balancing the individual elements of these activities.
Some job duties and projects could include:
- Assist with oversight, coordination, and delivering the activities that support successful internal audits, external audits and compliance, regulatory activities, and external customer/client requests.
- Assist with validating the ongoing effectiveness of Cybersecurity controls across Visa (both automated and manual), working with a variety of control owners within the Cybersecurity organization, and evaluating control design and standards in a variety of program areas. You will be assessing the security on various platforms and technologies from attacks like:
- Payment processing platforms, Payment Wallet solutions, Consumer facing applications, COTS products deployed in house,
- SaaS, PaaS, and IaaS public cloud offerings
- Mainframe, Linux, Windows, and virtual machines
- IDS, SIEM, WAF, Firewalls
- HSMs, Tokenization systems, data encryption solutions
- APIs, Web technologies,
- Relational and noSQL databases
- Access Management solutions
- Assist with data points into Information Security risk management reporting activities, including dashboards, metrics, and executive reporting content
- Assist with automation, tool, and AI projects to perform risk/security assessments, enhance the efficiency and effectiveness of data collection, and control testing.
- Assist with risk/security assessments of Suppliers and Third-Party relationships to identify, validate and remediate risks Cybersecurity Risks. This may include performing interviews, document design assessments and walkthroughs of cybersecurity controls.
- Assist with ongoing monitoring of Suppliers and Third Party to review compliance against compliance and regulatory requirements.
- Participate and conduct onsite assessments of Third Parties against Visa’s security framework and industry security standards. Support risk/security assessments for special projects involving Third Parties.
- Support PCI-related activities relevant to third parties to ensure compliance with PCI requirements.
- Update Cybersecurity leadership on the status of technology risk and compliance issues based on assessment results and information from various monitoring and control systems.
- Payment processing platforms, Payment Wallet solutions, Consumer facing applications, COTS products deployed in house,
- SaaS, PaaS, and IaaS public cloud offerings
- Mainframe, Linux, Windows, and virtual machines
- IDS, SIEM, WAF, Firewalls
- HSMs, Tokenization systems, data encryption solutions
- APIs, Web technologies,
- Relational and noSQL databases
- Access Management solutions
Qualifications
Basic Qualifications
- Students pursuing a Bachelor's or Master’s Degree in Computer Science, Computer Engineering, CIS/MIS, Cybersecurity, Business or a related field with a graduation date in December 2026-August 2027
- Strong communications skills, specifically, the absence of repeated grammatical or typographical errors, clear and concise written and spoken communications that demonstrate professional judgment.
Preferred Qualifications
- University or internship experience in cybersecurity, IT audit, or IT risk management.
- Experience in cybersecurity, IT audit, risk management, compliance, or related fields.
- Knowledge of cybersecurity frameworks and standards such as NIST, ISO, PCI, etc.
- Experience working with multiple individuals on internal and external delivery
- Ability to synthesize a variety of data points, problem solve and formulate comprehensive and effective execution and risk mitigation plans
- Excellent Data Analysis skills using Microsoft Excel, SQL, or other scripting languages
- Review and provide feedback on development code, test designs and test cases
- Experience in Audit/Compliance/Regulatory discussions and proactive readiness activities in a large global financial institution or a matrix organization
- Experience in Risk and Control Self-Assessment activities related to Cybersecurity function.
- Strong ability to collaborate
- Highly driven, resourceful and results oriented
- Good team player and excellent interpersonal skills
- Good analytical and problem-solving skills
- Demonstrated ability to lead and navigate through ambiguity
Additional Information
U.S. APPLICANTS ONLY: The estimated hourly range for a new hire into this position is $35/hr to $40/hr which may include potential sales incentive payments (if applicable). Salary may vary depending on job-related factors which may include knowledge, skills, experience, and location.
Work Hours: Varies upon the needs of the department.
Work Authorization: Visa will not sponsor applicants for work visas in connection with this position. Future sponsorship will not be considered.
This is a hybrid position. Expectation of days in office will be confirmed by your hiring manager.
Travel Requirements: This position requires travel 5-10% of the time.
Mental/Physical Requirements: This position will be performed in an office setting. The position will require the incumbent to sit and stand at a desk, communicate in person and by telephone, frequently operate standard office equipment, such as telephones and computers.
Visa is an EEO Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status. Visa will also consider for employment qualified applicants with criminal histories in a manner consistent with EEOC guidelines and applicable local law.
Visa will consider for employment qualified applicants with criminal histories in a manner consistent with applicable local law, including the requirements of Article 49 of the San Francisco Police Code.
