About the job CyberTrust SOC Analyst Internship - Dec 2026 Cohort
SOC Analyst Intern
About CyberTrust
CyberTrust Massachusetts is a non-profit committed to growing and diversifying the cyber workforce, creating new and innovative opportunities for education and employment, and hardening the security posture of under-resourced local entities. CyberTrust enhances cyber education programs with hands-on, experiential learning, both through our state-of-the-art cyber range and by placing students in a live security operations center (SOC) that serves local governments, nonprofits and small businesses. CyberTrust SOC provides local governments with Advisory and Operational cybersecurity services, with student interns serving in key delivery roles. Advisory services include cyber assessments and scanning, program planning, and policy development. Operational services include real-time monitoring and response delivered from our four SOC locations across the Commonwealth.
About the Internship
We are seeking motivated and enthusiastic cybersecurity interns to join our team. This internship is a unique opportunity to gain practical cybersecurity experience while developing the technical, professional, and communication skills needed to kickstart your career in the industry.
As a SOC Analyst Intern, you'll gain hands-on experience monitoring, detecting, and responding to cyber threats while supporting our clients across the Commonwealth. This role is ideal for curious and motivated students who enjoy solving problems, embrace challenges, and are excited to learn. You'll have the opportunity to work with our real clients, receive mentorship from experienced professionals, and collaborate with peers who share your passion for cybersecurity.
What You Will Do
Managed EDR/XDR
- Using SentinelOne, monitor security alerts and logs to identify potential threats, vulnerabilities, or abnormal activity.
- React quickly to mitigate risks and escalate incidents as appropriate.
- Assist with incident response processes, including documentation and remediation steps.
Security Operations Support
- Participate in security assessments, penetration testing, and vulnerability scans.
- Support SOC staff with day-to-day operations, including log analysis, tool maintenance, and report generation.
- Assist in developing playbooks, threat intelligence reports, and risk assessments.
Professional Development & Training
- Stay up to date on emerging cybersecurity threats, tools, and best practices.
- Actively participate in exercises such as tabletop scenarios, Capture the Flag (CTF) events, and client-related engagements.
- Participate in weekly career development tasks to fine tune your resume, LinkedIn profile, interview preparation, and job search skills.
- Study for the CompTIA Sec+ exam (or comparable)
Advisory Services
- Gain exposure to our advisory services with proactive client health checks
- Technical testing to verify controls are performing as expected.
- Assist with stakeholder discussions, data analysis, and report writing.
What You Will Learn
- Alert analysis and incident response fundamentals.
- Security tool configuration and administration.
- Technical testing, including penetration testing and vulnerability analysis.
- Additional hands-on work and self-study with platforms such as Azure AD and Linux.
- Python skills: API development for data engineering and SOC task automation.
- PowerShell scripting: Azure AD analysis and reporting.
- Client engagement: communication and analysis with municipal leaders.
- Preparing quarterly business reviews for EDR clients (trend analysis & cyber posture).
- Research and prototyping of new security services (e.g., Attack Surface Monitoring).
- Cyber policy templates: documentation and cross-team collaboration.
Required Skills and Qualifications
Must Haves
- Enrolled at one of our consortium schools
- Majoring in Cybersecurity, Computer Science, IT, or a related field
- In the final year of your program, or, within 3 months of your graduation date
- US Citizen or Green Card holder
Nice To Haves
- Familiarity with SOC tools and concepts (e.g., SIEM, IDS/IPS, firewalls, log analysis).
- Motivated, self-sufficient, and able to work independently with minimal supervision.
- Strong interpersonal and communication skills (written and verbal).
- Ability to react quickly in high-pressure scenarios to mitigate risks.
- Strong analytical and problem-solving skills.
Logistics
- Time commitment: 20 hours per week, 6-month duration (Start dates: September, December, March, June)
- Location: Hybrid; work 1 – 2x per week from a SOC location (Bridgewater, Boston, Lowell, Springfield)
- Compensation: $20/hour
- Certification Support: Reimbursement for CompTIA Sec+ or comparable certification
- Application Window: Open from August 17 – September 18. We encourage you to apply as soon as possible; applying early gives you the best opportunity to be considered as we build our interview pipeline.