{"id":1142291,"url":"https://alion.io/job/mfs-investment-management-information-security-co-op-spring-2027-january-june","title":"Information Security Co-op Spring 2027 (January - June)","company":{"id":704277,"name":"MFS Investment Management","domain":"mfs.com","url":"https://alion.io/company/mfs-investment-management","size_band":"501-1000","is_staffing_agency":false,"is_intermediary":false,"ats_vendor":"Workday","truth_index":null},"role":"Security","role_family":"Security","seniority":null,"employment_type":"full_time","work_mode":"hybrid","remote_scope":null,"hiring_geo_confidence":"structured","locations":["Boston, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":84000,"max_usd":191000,"period":"year","method":"role_country_seniority_unknown","sample_n":1647},"experience_years_min":null,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Active Directory","optional":false},{"name":"AI Agents","optional":false},{"name":"AWS","optional":false},{"name":"Azure","optional":false},{"name":"ISO 27001","optional":false},{"name":"Linux","optional":false},{"name":"Machine Learning","optional":false},{"name":"PowerShell","optional":false},{"name":"Prompt Engineering","optional":false},{"name":"Python","optional":false},{"name":"Windows","optional":false}],"status":"live","first_seen_at":"2026-09-23T12:49:49Z","employer_posted_date":"2026-09-23","last_verified_at":"2026-09-23T16:40:37Z","board_verified":true,"closed_at":null,"days_open":0,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":0},"description":"At MFS, you will find a culture that supports you in doing what you do best. Our employees work together to reach better outcomes, favoring the strongest idea over the strongest individual. We put people first and demonstrate care and compassion for our community and each other. Because what we do matters - to us as valued professionals and to the millions of people and institutions who rely on us to help them build more secure and prosperous futures.\nMFS is a global investment management firm focused on creating long-term value responsibly by doing what’s right for our clients every day. Our rich history dates to 1924, when our founders invented the mutual fund. Since then, collaboration and innovation have fueled our success. Our unwavering commitment to finding the best, most durable investment opportunities is what sets us apart - and our success is grounded in our unique approach, disciplined philosophy and collaborative culture.\nTHE ROLE\nThe Information Security team is responsible for protecting MFS information assets, supporting regulatory and client expectations, strengthening cyber resilience, and enabling secure business operations. As a Security Co-op, you will gain hands-on experience across multiple cybersecurity disciplines while working alongside experienced security professionals.\nThis role provides exposure to the operational, technical, governance, and risk management functions of an enterprise security program. The co-op will contribute to meaningful projects and day-to-day security activities while developing practical cybersecurity skills in a highly regulated financial services environment.\nMFS co-op positions are a 6-month commitment, working Monday - Friday (beginning on Wednesday, January 13th through Friday June 25th, 2027), and work between 35-40 hours. Our program is designed for undergraduate students who are currently enrolled in a co-op program through their college or university and can meet our requirements.\nJOB SUMMARY\nThe Security Co-op will support the Information Security team across operational, governance, engineering, risk management, and compliance activities. The role includes assisting with security monitoring, threat and vulnerability management, security technologies, risk assessments, control documentation, audit support, security awareness, and innovative uses of artificial intelligence in cybersecurity.\nThe co-op will work closely with security analysts, engineers, architects, and risk professionals while developing a broad understanding of enterprise cybersecurity practices and controls.\nWHAT YOU WILL DO\nSupport security operations activities including monitoring, investigations, incident response, and threat analysis.\nAssist with vulnerability management efforts, including data analysis, reporting, remediation tracking, and validation activities.\nParticipate in security assessments, control reviews, and risk management initiatives.\nSupport internal and external audit activities through evidence gathering, documentation reviews, and control validation.\nAssist with client due diligence requests, security questionnaires, and security program documentation.\nContribute to the maintenance of security policies, standards, procedures, and control documentation.\nHelp develop metrics, dashboards, and reports used to measure security program effectiveness.\nResearch emerging threats, attack techniques, vulnerabilities, and cybersecurity best practices.\nParticipate in security engineering initiatives involving cloud security, identity and access management, endpoint security, data protection, and security monitoring technologies.\nAssist with security awareness and training activities, communications, and employee engagement campaigns.\nIdentify opportunities to automate repetitive security tasks and improve operational efficiency through scripting and process improvement.\nExplore emerging artificial intelligence technologies and help develop creative, practical use cases for real-world cybersecurity challenges using approved tools and use cases in accordance with MFS AI policy, governance requirements, and data-handling standards.\nExperiment with approved generative AI, automation, and data-driven techniques to enhance threat research, security analysis, detection, reporting, and other day-to-day security activities, with appropriate human review and oversight.\nHelp research and defend against AI-enabled threats, including sophisticated phishing and social engineering, malicious or unauthorized AI use, prompt injection, data leakage, model manipulation, and risks introduced by AI agents and third-party AI services.\nCollaborate with technology teams and business partners to support enterprise security initiatives and projects.\nWHAT WE ARE LOOKING FOR\nUndergraduate student pursuing a degree in Cybersecurity, Information Security, Computer Science, Information Systems, Engineering, or a related discipline.\nStrong interest in cybersecurity and information security practices.\nDemonstrated analytical and problem-solving abilities.\nStrong verbal and written communication skills.\nAbility to work independently and collaboratively in a team environment.\nExcellent organizational skills and attention to detail.\nCuriosity and willingness to learn new technologies, tools, and security concepts.\nHELPFUL EXPOSURE\nSecurity Operations Center concepts\nVulnerability management\nCloud technologies such as Azure, AWS, and SaaS\nNetworking fundamentals\nActive Directory and identity management\nWindows and Linux operating systems\nScripting languages such as PowerShell or Python\nArtificial intelligence, approved generative AI tools, machine learning, prompt engineering, AI governance, or an interest in applying emerging technologies to cybersecurity\nSecurity frameworks such as NIST, CIS Controls, or ISO 27001\nWHAT YOU WILL GAIN\nPractical experience supporting an enterprise Information Security program.\nExposure to Security Operations, Engineering, Governance, Risk Management, Compliance, and Audit functions.\nExperience working with security technologies and controls used within a global financial services firm.\nUnderstanding of security frameworks, regulatory requirements, and industry best practices.\nHands-on participation in security projects that directly support the firm’s cybersecurity strategy.\nProfessional experience collaborating with technical teams, auditors, clients, and business stakeholders.\nHands-on experience exploring how artificial intelligence can strengthen security capabilities, along with an understanding of applicable policy, governance, human oversight, security, privacy, and data protection requirements.\nA strong foundation for pursuing a career in cybersecurity, risk management, security engineering, or security operations.\nHourly Pay Rate: $21.00-$25.00\nIf any applicant is unable to complete an application or respond to a job opening because of a disability, please contact MFS at 617-954-5000 or email  for assistance.\nMFS is an Affirmative Action and Equal Opportunity Employer and it is our policy to not discriminate against any employee or applicant for employment because of race, color, religion, sex, national origin, age, marital status, sexual orientation, gender identity, genetic information, disability, veteran status, or any other status protected by federal, state or local laws. Employees and applicants of MFS will not be subject to harassment on the basis of their status. Additionally, retaliation, including intimidation, threats, or coercion, because an employee or applicant has objected to discrimination, engaged or may engage in filing a complaint, assisted in a review, investigation, or hearing or have otherwise sought to obtain their legal rights under any Federal, State, or local EEO law is prohibited.\nMFS is a hybrid work environment (remote/onsite) unless otherwise stated in the job posting.\nIf any applicant is unable to complete an application or respond to a job opening because of a disability, please contact MFS at 617-954-5000or email  for assistance.\nMFS is an Equal Opportunity Employer and it is our policy to not discriminate against any employee or applicant for employment because of race, color, religion, sex, national origin, age, marital status, sexual orientation, gender identity, genetic information, disability, veteran status, or any other status protected by federal, state or local laws. Employees and applicants of MFS will not be subject to harassment on the basis of their status. Additionally, retaliation, including intimidation, threats, or coercion, because an employee or applicant has objected to discrimination, engaged or may engage in filing a complaint, assisted in a review, investigation, or hearing or have otherwise sought to obtain their legal rights under any Federal, State, or local EEO law is prohibited. Please see the Know Your Rights: Workplace Discrimination is Illegal document, linked for your reference.","description_format":"text","description_chars":9009,"description_truncated":false,"requirements":{"experience_years_min":null,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":["Hybrid work"],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Financial Services","Asset Management","Information Security"],"lifecycle":[{"event":"open","at":"2026-09-23T12:49:49Z"}],"liveness":{"score":86,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.86,"p_room":1,"age_days":0,"expected_fill_days":13,"reasons":["conf:3","win:early"],"computed_at":"2026-09-23T19:54:07Z"},"pay":null,"html_url":"https://alion.io/job/mfs-investment-management-information-security-co-op-spring-2027-january-june","json_url":"https://alion.io/job/mfs-investment-management-information-security-co-op-spring-2027-january-june.json","meta":{"generated_at":"2026-09-23T19:54:07Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers"}}