



A Privacy Engineer Intern is needed to support the following functions within Trust: Governance Risk and Compliance (GRC) 60% Allocation of time * The intern’s work is to help maintain compliance with security policies and regulations by reviewing Roku’s current internal repositories * Support the security governance documentation across the intranet ensuring it is accurate and up to date via the maintenance of cohesive and organised libraries * Support the implementation of wider compliance policies and guidelines across Roku by aligning to a standardised process * Assist with security awareness training programs assisting the current SME * Contribute to compliance research and reporting Security Operations (SecOps), which monitors activity for threats using SIEM tools, and helps highlight improvements to security controls. 40% Allocation of time * The Intern’s work on vulnerability assessments, malware analysis, and script development (e.g., Python) to automate security tasks while assisting senior engineers. * Support Vulnerability management efforts & remediation across Corporate endpoints & Cloud systems (Azure, AWS, GCP etc...) * Assist in Threat Hunting & Investigations by querying systems & logs ( XQL, KQL, SQL etc...) * Support Security Compliance Audit checks & Highlight Policy Gaps using technical assessments & evidence working alongside GRC & other functions. What you’ll be doing * You will be tasked at the end of the 12 week program with creating an ISM deliverable to include an assessment of the internal documentation which is aligned to industry specific standards such as ISO and NIST. * The ISM will clearly set out the business justification and rationale for the internal re-organisation of the policies, process and procedures within the artefact environment at Roku. * Identification of workflows/ diagrams detailing baseline standards including RACIs to demonstrate a catalogue of the internal documentation belonging to Roku.