SOC Security Internship- Summer 2027

Wipfli Advisory LLC•Minneapolis, MN
•Hybrid

About The Position

This internship offers hands-on experience within Wipfli's CyberTech division, with a primary focus on Security Operations Center (SOC) services. Interns will work alongside cybersecurity professionals to monitor security activity, investigate alerts, support incident response activities, and help clients strengthen their threat detection and response capabilities. The experience is designed to build practical knowledge of SOC processes, security technologies, and professional client service.

Requirements

  • Pursuing a Bachelor's degree in Cybersecurity, Information Systems, Computer Science, Information Technology, or a related discipline.
  • Above-average class performance as demonstrated by college GPA; a 3.0 GPA or higher is preferred.
  • General understanding of networking concepts, common protocols, operating systems, and foundational cybersecurity principles.
  • Interest in security monitoring, threat detection, incident response, digital investigations, or security operations.
  • Strong analytical and problem-solving skills with the ability to review information, identify patterns, and document conclusions.
  • Strong organizational skills with the ability to coordinate multiple projects or tasks and meet deadlines.
  • Excellent written and verbal communication skills and the ability to collaborate with technical and nontechnical stakeholders.
  • Detail-oriented approach and a commitment to accurate, high-quality work.
  • Ability to work independently while contributing effectively as part of a team.
  • Must be legally authorized to work in the United States on a full-time basis upon hire. Wipfli will not consider candidates for this position who require sponsorship for employment visa status now or in the future (for example, H-1B status).

Responsibilities

  • Monitor and review security alerts from Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), and other security platforms.
  • Assist with alert triage by gathering relevant details, validating activity, documenting findings, and escalating potential incidents.
  • Support investigations involving phishing, malware, suspicious account activity, endpoint events, network activity, and other security threats.
  • Analyze security logs and telemetry from endpoints, identity systems, networks, cloud environments, email platforms, and business applications.
  • Contribute to incident response activities, including evidence collection, case documentation, timeline development, and post-incident follow-up.
  • Assist with phishing analysis by reviewing message indicators, links, attachments, sender information, and related security events.
  • Support vulnerability and threat management activities through research of indicators of compromise, emerging threats, and potential client impacts.
  • Maintain and enhance SOC documentation, including playbooks, standard operating procedures, escalation paths, investigation notes, and knowledge articles.
  • Contribute to client-facing deliverables and gain exposure to SOC operations through collaboration with cybersecurity professionals, peer advisors, and performance coaches.
  • Shadow cybersecurity professionals during client engagements and collaborate with peer advisors and performance coaches to gain exposure to SOC operations.

Benefits

  • paid sick leave
  • access to free, confidential counseling through our Employee Assistance Program
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service