About the role#
The CyberSOC Co-op joins our CyberSOC practice to support 24x7 operations. You will work with various tool sets and client organizations, gaining experience in security monitoring and incident response. This is a full-time, paid position.
What you'll do#
- Monitor and triage security alerts across endpoint, network, identity, and cloud telemetry.
- Investigate alerts to determine severity and scope, escalating findings per documented procedures.
- Support initial incident response activities, including evidence collection and timeline development.
- Use SIEM, EDR, NDR, and SOAR platforms to detect and respond to threats.
- Apply threat intelligence and frameworks like MITRE ATT&CK to enrich investigations.
- Document investigation steps, evidence, and recommendations in case management systems.
- Communicate status and findings to leadership and clients.
- Provide feedback for alert tuning and playbook updates to improve operations.
- Maintain proficiency through training and labs while protecting confidential information.
What you'll need#
- Current pursuit of a degree in Computer Science, Computer Engineering, or Cybersecurity.
- Coursework or experience in incident investigation, digital forensics, information security, or networking.
- Familiarity with common log sources and security concepts.
- Ability to work effectively as part of a team and handle independent responsibilities.
- Strong written and verbal communication skills with a professional demeanor.
- Attention to detail, creative problem solving, and information analysis skills.
- Interest in automation or scripting with PowerShell or Python.
- Preferred: Security certifications such as Security+ or Network+.
- Preferred: Residence in the Eastern time zone.
Location & details#
- Locations: Philadelphia, Pennsylvania, or Rochester, New York.
- Modality: This is an on-site role. You are expected to work in the office 4 days per week.
- Schedule: Full-time (40 hours per week). You may be assigned to morning, day, or night shifts, which will include either Saturday or Sunday. Schedules are consistent week to week.
- Term: Rolling.
About Security Risk Advisors
Security Risk Advisors operates as a cybersecurity consulting firm. Founded in 2010, the company provides 24/7 operations and software as a service solutions. It maintains a staff of 201 to 500 employees based in Philadelphia. The firm assists clients across the healthcare, financial services, technology, retail, and pharmaceutical sectors.
How to get in at Security Risk Advisors
Securing an internship at Security Risk Advisors requires speed and direct communication. Because roles fill quickly, Intern Insider sends an instant alert the moment a position matching your criteria is published. Applying early ensures your resume is reviewed before the applicant pile grows too large. You should focus on demonstrating technical competency in areas like penetration testing or threat hunting to stand out. Identifying the right people is the next step. Intern Insider surfaces the recruiters behind the company's roles, which allows you to reach out directly. Asking a specific question about the role or requesting a referral often improves your response rate compared to a standard application.



