mfs

Information Security Co-op Spring 2027 (January - June)

mfs

Boston · Posted Sep 23

$21–$25/hr Cybersecurity Onsite
Apply now

Location: Boston

At MFS, you will find a culture that supports you in doing what you do best. Our employees work together to reach better outcomes, favoring the strongest idea over the strongest individual. We put people first and demonstrate care and compassion for our community and each other. Because what we do matters – to us as valued professionals and to the millions of people and institutions who rely on us to help them build more secure and prosperous futures.

MFS is a global investment management firm focused on creating long-term value responsibly by doing what’s right for our clients every day. Our rich history dates to 1924, when our founders invented the mutual fund. Since then, collaboration and innovation have fueled our success. Our unwavering commitment to finding the best, most durable investment opportunities is what sets us apart – and our success is grounded in our unique approach, disciplined philosophy and collaborative culture.

THE ROLE

The Information Security team is responsible for protecting MFS information assets, supporting regulatory and client expectations, strengthening cyber resilience, and enabling secure business operations. As a Security Co-op, you will gain hands-on experience across multiple cybersecurity disciplines while working alongside experienced security professionals.

This role provides exposure to the operational, technical, governance, and risk management functions of an enterprise security program. The co-op will contribute to meaningful projects and day-to-day security activities while developing practical cybersecurity skills in a highly regulated financial services environment.

MFS co-op positions are a 6-month commitment, working Monday – Friday (beginning on Wednesday, January 13th through Friday June 25th, 2027), and work between 35-40 hours.  Our program is designed for undergraduate students who are currently enrolled in a co-op program through their college or university and can meet our requirements.

JOB SUMMARY

The Security Co-op will support the Information Security team across operational, governance, engineering, risk management, and compliance activities. The role includes assisting with security monitoring, threat and vulnerability management, security technologies, risk assessments, control documentation, audit support, security awareness, and innovative uses of artificial intelligence in cybersecurity.

The co-op will work closely with security analysts, engineers, architects, and risk professionals while developing a broad understanding of enterprise cybersecurity practices and controls.

WHAT YOU WILL DO

Support security operations activities including monitoring, investigations, incident response, and threat analysis.

Assist with vulnerability management efforts, including data analysis, reporting, remediation tracking, and validation activities.

Participate in security assessments, control reviews, and risk management initiatives.

Support internal and external audit activities through evidence gathering, documentation reviews, and control validation.

Assist with client due diligence requests, security questionnaires, and security program documentation.

Contribute to the maintenance of security policies, standards, procedures, and control documentation.

Help develop metrics, dashboards, and reports used to measure security program effectiveness.

Research emerging threats, attack techniques, vulnerabilities, and cybersecurity best practices.

Participate in security engineering initiatives involving cloud security, identity and access management, endpoint security, data protection, and security monitoring technologies.

Assist with security awareness and training activities, communications, and employee engagement campaigns.

Identify opportunities to automate repetitive security tasks and improve operational efficiency through scripting and process improvement.

Explore emerging artificial intelligence technologies and help develop creative, practical use cases for real-world cybersecurity challenges using approved tools and use cases in accordance with MFS AI policy, governance requirements, and data-handling standards.

Experiment with approved generative AI, automation, and data-driven techniques to enhance threat research, security analysis, detection, reporting, and other day-to-day security activities, with appropriate human review and oversight.

Help research and defend against AI-enabled threats, including sophisticated phishing and social engineering, malicious or unauthorized AI use, prompt injection, data leakage, model manipulation, and risks introduced by AI agents and third-party AI services.

Collaborate with technology teams and business partners to support enterprise security initiatives and projects.

WHAT WE ARE LOOKING FOR

Undergraduate student pursuing a degree in Cybersecurity, Information Security, Computer Science, Information Systems, Engineering, or a related discipline.

Strong interest in cybersecurity and information security practices.

Demonstrated analytical and problem-solving abilities.

Strong verbal and written communication skills.

Ability to work independently and collaboratively in a team environment.

Excellent organizational skills and attention to detail.

Curiosity and willingness to learn new technologies, tools, and security concepts.

HELPFUL EXPOSURE Security Operations Center concepts

Vulnerability management

Cloud technologies such as Azure, AWS, and SaaS

Networking fundamentals

Active Directory and identity management

Windows and Linux operating systems

Scripting languages such as PowerShell or Python

Artificial intelligence, approved generative AI tools, machine learning, prompt engineering, AI governance, or an interest in applying emerging technologies to cybersecurity

Security frameworks such as NIST, CIS Controls, or ISO 27001

WHAT YOU WILL GAIN

Practical experience supporting an enterprise Information Security program.

Exposure to Se

What they are looking for

Python Powershell Azure Aws Vulnerability management

Details

Work type
Onsite
Compensation
Paid

Get new Cybersecurity internships by email

Free daily digest, matched to what you pick. Unsubscribe anytime.