• Location

    Calle Bergara 13
    8002 Barcelona
  • Employment Area

    IT - Security
  • Level

    Internship / working student
  • Working Model

    Full-time / Part-time
  • Reference ID

    48324
Schwarz Digits creates the technological foundation for digital sovereignty in Europe. As the IT and digital division of the Schwarz Group, we develop and manage the IT infrastructures for the retail divisions Lidl and Kaufland, as well as Schwarz Production and PreZero. At the same time, we operate as an independent provider in the external market to support companies across Europe in their digital transformation. We bundle our core services in the areas of Cloud, Cyber Security, Data & AI, Communication, and Workspace.

Join us and contribute to digital sovereignty in Europe. With us, you will work at the intersection of agility and security: You will benefit from fast decision-making processes, enjoy genuine creative freedom in your projects, and be able to build upon the stable foundation of the Schwarz Group. 

Your Tasks

  • Training & Awareness Support:
  • Assist in organizing and tracking security training initiatives (e.g., Codebashing, annual refresher courses).
  • Support the delivery and onboarding of security awareness sessions for new joiners.
  • Risk Management Assistance:
  • Support core information security risk management workflows.
  • Track and coordinate penetration testing activities, follow up on vulnerability remediations, and monitor remediation timelines.
  • Products Governance & Compliance:
  • Assist with operational activities in our internal GRC platform (Service.schwarz).
  • Support the management of supplier contract reviews and software Asset Security Risk Assessments (ASRAs).
  • Annual Risk Assessment: Collaborate with the team in preparing, elaborating, and documenting the annual Information Security Risk Analysis.
  • Policy Maintenance: Support the drafting, continuous review, and maintenance of internal information security policies, guidelines, and standards.
  • Ad-Hoc GRC Support: Provide flexible administrative and operational support to the GRC team on day-to-day activities and emerging cybersecurity projects.

Your Profile

  • Educational Background: Currently pursuing or recently completed a Bachelor's or Master's degree in Cybersecurity, IT Management, Computer Engineering, or a related field.
  • Cybersecurity Knowledge: Foundational understanding of core information security principles, best practices, and general GRC frameworks (e.g., ISO 27001, NIST, or similar).
  • Techy mindset (Non-Coding): Familiarity with IT project management methodologies and Software Development Lifecycles (SDLC) without needing hands-on programming/coding skills.
  • Quick Learner & Proactive: Highly eager to learn, adaptable to new tools and processes, and comfortable working in a fast-paced environment.
  • Strong Communicator: Excellent interpersonal and communication skills, with the ability to translate technical security concepts into accessible language for non-technical stakeholders.
  • Cultural Competence & Team Player: Responsible, Empathetic, respectful, and open-minded collaboration skills when interacting with colleagues across diverse backgrounds, cultures, and seniority levels.

Our benefits