Supporting the setup of our information security management framework based on ISO 27001 principles — drafting policies, control structures, and documentation
Assisting with the implementation of ABDO/ABRO security requirements applicable to our defence-oriented environment
Structuring and maintaining internal documentation: asset registers, risk registers, data classification schemes, and access control policies
Translating security and compliance requirements into clear, practical guidelines for our team
Supporting export control activities: conducting due diligence on potential customers, assisting with export license applications, and maintaining related administrative records
Identifying gaps between current practices and required standards, and proposing structured improvements
Working closely with leadership and interacting with engineering teams
not to build systems, but to understand them well enough to document, classify, and assess them from a compliance perspective.
Requirements
Currently studying Law, Public Administration, Security Studies, Business Administration, or a related field
or a technical study with a strong interest in governance and compliance over engineering
With a genuine interest in compliance frameworks, risk management, and policy work
Who can understand concepts like data classification, access control, or asset management at a conceptual level
you don't need to configure systems, but you need to understand why these controls exist
Who is structured, precise, and comfortable working independently with complex documentation
With strong written communication skills in English (Dutch is a plus)
Proactive and disciplined — you take ownership of your tasks and follow through
Strong plus: Familiarity with ISO 27001, ISO 37001, or similar management system standards
Exposure to export control regulations (EU Dual-Use Regulation, ITAR awareness)
Interest in the defence sector, regulated industries, or national security topics
Experience drafting or reviewing policy documents
Benefits
Internship compensation in line with Dutch market standards (HBO/WO level)
10 vacation days during the internship period
Hybrid working arrangement with flexible hours — onsite presence required on a regular basis
Direct exposure to a high-growth defence tech environment
Real responsibility: the frameworks and policies you build will be used in practice
A steep learning curve in one of the most regulated and strategically relevant sectors in Europe