GRC Team Intern (Fall 2026)

CloudflareSan Francisco, CA
Hybrid

About The Position

This internship is designed for candidates who are interested in the intersection of privacy, security, AI governance, and regulatory compliance. The ideal intern is not only curious about controls and audit readiness, but also interested in how organizations operationalize privacy and responsible AI at scale. You will work alongside experienced GRC, privacy, and security stakeholders to support Cloudflare’s preparation and coordination for privacy and AI-related framework audits, including work across standards such as ISO 27701, ISO 27018, EU Cloud Code of Conduct, Global CBPR / PRP, and ISO 42001. This is a strong fit for students in law, public policy, privacy, data protection, AI governance, technology policy, or adjacent disciplines who want practical experience inside a fast-moving technology company.

Requirements

  • Interest in privacy, personal data protection, AI governance, technology regulation, or security compliance through coursework, research, internships, or independent study.
  • Familiarity with privacy and security concepts such as personal data, data lifecycle, purpose limitation, access controls, vendor risk, incident response, or accountability.
  • Exposure to privacy, AI, or security standards and frameworks such as ISO 27701, ISO 27018, Global CBPR, PRP, ISO 42001, ISO 27001, SOC 2, NIST, or similar frameworks.
  • Ability to explain legal, policy, or technical concepts clearly to both expert and non-expert stakeholders.
  • Strong documentation, note-taking, and technical writing skills.
  • Ability to organize information into a durable and navigable repository, tracker, or knowledge base.
  • Comfort engaging internal stakeholders, asking clear follow-up questions, and reconciling incomplete or conflicting information.
  • Analytical thinking and attention to detail when reviewing evidence, controls, and process descriptions.
  • Experience with spreadsheets, dashboards, workflow tooling, or basic automation.
  • Interest in using AI-assisted tools, low-code/no-code platforms, or light scripting to improve workflows and reporting.
  • Demonstrated critical thinking skills and the ability to learn new topics quickly.
  • Curiosity, empathy, discretion, and ability to get things done.
  • Ability to commit to a minimum 12-week fall internship.
  • Ability to work in the office 3–5 days a week in the location of the internship.

Nice To Haves

  • Coursework or project work in privacy law, data protection, AI policy, cyber law, technology governance, or related fields.
  • Experience conducting research, policy analysis, compliance mapping, or process documentation.
  • Experience building simple dashboards, internal tools, or prototypes using spreadsheets, scripts, or AI-assisted coding.
  • Demonstrated interest in responsible AI, privacy engineering, or governance operations.
  • Familiarity with Cloudflare products such as Workers, Workers AI, R2, or D1.
  • You’ve built something with our developer platform using Cloudflare for Students

Responsibilities

  • Support preparation and coordination for privacy and AI-related framework audits, including ISO 27701, ISO 27018, Global CBPR / PRP, and ISO 42001.
  • Help build and maintain a comprehensive knowledge base of privacy, personal data protection, AI governance, and related internal processes to support current and future audits.
  • Organize audit-ready documentation, evidence, ownership records, and process maps so that requirements can be located, understood, and presented efficiently.
  • Work with internal stakeholders across Legal, Security, Product, Engineering, People, Procurement, and other teams to gather information required for audit readiness and control validation.
  • Help translate complex privacy, AI, and compliance topics into clear summaries for internal audiences, including support for presenting material to auditors.
  • Track gaps, dependencies, action items, and review cycles across multiple frameworks and workstreams.
  • Contribute to process improvements that make privacy and AI governance work more durable, scalable, and easier to navigate over time.
  • Where useful, prototype lightweight dashboards, trackers, or workflow tools using spreadsheets, low-code/no-code tools, or AI-assisted coding to improve visibility into audit status and evidence readiness.
  • Work closely with a mentor who will provide guidance in GRC, privacy, and audit operations.
  • Present your internship project and recommendations at the end of the program.

Benefits

  • Project Galileo
  • Athenian Project
  • 1.1.1.1
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service