INTERNSHIP DETAILS
Internship - Interactive Gamified Session: ISMS Simulation
CompanyNVISO
LocationBrussels
Work ModeOn Site
PostedDecember 15, 2025

Internship Information
Core Responsibilities
The intern will design and develop an interactive gamified simulation of an ISMS project, allowing participants to experience building and operating an ISO 27001 information security management system. Responsibilities include creating game mechanics, drafting ISMS deliverables, and facilitating documentation.
Internship Type
intern
Company Size
322
Visa Sponsorship
No
Language
English
Working Hours
40 hours
Apply Now →
You'll be redirected to
the company's application page
About The Company
NVISO is a cyber security services firm composed of outstanding security professionals - each has a specific field of expertise, ranging from security research and risk management to incident response and security testing. This unique "skill blend" allows them to analyse and respond to complex client challenges and help those companies prevent, detect and respond to security challenges with a positive business outcome.
Built on values of Pride, Caring for our people, Breaking Barriers, and fostering a no-BS approach, our mission is to be an innovative, trusted and respected security partner for our clients.
About the Role
<p>NVISO is a pure-play cyber security consulting firm: our team is composed of security professionals who each have their specific field of expertise, ranging from Information Security Governance, Risk & Compliance to Incident Response, Penetration Testing, CSIRT/SOC, Software Security, and Training & Awareness. This fantastic blend of skills enables us to help organizations prevent, detect, and respond to complex security challenges.</p>
<h2 id="tasks">Tasks</h2>
<p>As a Cybersecurity Governance Intern, you will design and develop an interactive gamified simulation of an ISMS project, helping participants experience what it’s like to build and operate an ISO 27001 information security management system in a realistic environment.</p>
<p>The objective is to create a learning-by-doing experience where players take on roles (CISO, ISMS core team, legal, procurement, etc.), make governance and risk decisions, produce simplified deliverables (risk register, SoA, policies), and see the impact of their decisions through a simulated audit or scoring mechanism.</p>
<p>The audience the exercise is addressed too are both NVISO employees lacking specific expertise in the fields, but customers and their teams as well. </p>
<p>This project will combine content design, game mechanics, and cybersecurity governance knowledge, and will be used internally to train consultants or externally as a client awareness exercise.</p>
<p><strong>Responsibilities</strong></p>
<ul>
<li><p><strong>Design the fictional company scenario,</strong> including sector, size, IT landscape, assets, and organization chart</p>
</li>
<li><p><strong>Develop game mechanics and materials, such as:</strong></p>
</li>
<li><p>Decision or “game” cards (assets, risks, controls, policies)</p>
</li>
<li><p>Role cards for different players (CISO, Legal, Procurement, etc.)</p>
</li>
<li><p>Scoring system simulating audit performance and risk exposure.</p>
</li>
<li><p>Draft ISMS deliverables (risk register, SoA, policy templates) for use in the simulation.</p>
</li>
<li><p><strong>Create facilitator documentation:</strong></p>
</li>
<li><p>Game rules, timing, and facilitator script</p>
</li>
<li><p>Presentation slides and templates for each round</p>
</li>
<li><p>Evaluation sheet and debrief material</p>
</li>
<li><p><strong>Prototype and test the game, including:</strong></p>
</li>
<li><p>One internal pilot session to validate clarity and timing</p>
</li>
<li><p>Adjustment of content based on participant feedback</p>
</li>
<li><p><strong>Optionally:</strong> explore digitalization.</p>
</li>
</ul>
<h2 id="requirements">Requirements</h2>
<ul>
<li>Currently pursuing a degree or master degree in Cybersecurity, Governance, Computer Science, Data Analytics, or a related field;</li>
<li>Basic understanding of ISO 27001 and information security governance;</li>
<li>Strong analytical and synthesis skills, with attention to detail and consistency;</li>
<li>Interest in education, gamification, and innovation in training methods;</li>
<li>Creativity and problem-solving mindset;</li>
<li>Excellent written communication skills in English;</li>
<li>Curious, methodical, and comfortable working with documentation and regulatory content.</li>
</ul>
<h2 id="benefits">Benefits</h2>
<p> <strong>Output of Internship</strong><br>By the end of the internship, the student will have produced:</p>
<ul>
<li>A fully operational gamified ISMS simulation ready for use in internal training or client workshops.</li>
<li>A complete set of facilitator and player materials, including roles, scenarios, cards, slides, and evaluation templates.</li>
<li>A pilot report summarizing lessons learned and improvement ideas.</li>
<li>Valuable practical knowledge of ISO 27001 governance, ISMS implementation logic, and cybersecurity awareness design.</li>
</ul>
<p><strong>Learning Opportunities</strong></p>
<ul>
<li>Hands-on exposure to the structure of an ISMS project and ISO 27001 certification logic.</li>
<li>Experience in training design and gamification methodologies.</li>
<li>Collaboration with NVISO consultants to ensure alignment with real governance practices.</li>
<li>Insight into how to translate technical and governance concepts into engaging, interactive learning tools.</li>
</ul>
<p><strong>Disclaimer on the Use of AI Tools in the Application Process</strong></p>
<p>Please be aware that the creation and submission of application documents (e.g. CV, cover letter, case studies, etc.) using AI-powered tools is only permitted to a <strong>limited extent</strong>.</p>
<p><em>Our expectations:</em></p>
<p>Application documents must authentically reflect your own qualifications, personality, and motivation.</p>
<p>The use of AI for supportive purposes (e.g. spell-checking, improving wording) is acceptable.</p>
<p><strong>Fully generated application documents created by AI without personal adaptation or review are not permitted.</strong></p>
<p>Under no circumstances may <strong>NVISO information, data, or documents</strong> be uploaded to or processed by external AI tools.</p>
<p>We reserve the right to exclude applications from the selection and interview process that are clearly created primarily or exclusively by AI and show no recognizable personal input.</p>
<p>The purpose of this policy is to ensure a fair and transparent recruitment process and to obtain an authentic impression of our applicants.</p>
Key Skills
CybersecurityGovernanceComputer ScienceData AnalyticsISO 27001Analytical SkillsAttention to DetailEducationGamificationInnovationCreativityProblem-SolvingWritten CommunicationDocumentationRegulatory Content
Categories
ConsultingEducationSecurity & SafetyTechnology
Prep Tools
FREE
STAND OUT FROM THE CROWD
AI Cover Letter
Tailored for NVISO
Dear NVISO Hiring Team,
I am excited to apply for the Internship - Interactive Gamified Session: ISMS Simulation position. With my experience in Cybersecurity and Governance...
Continue with AI →
FREEYour ScoreTop Applicants
BOOST YOUR INTERVIEW CHANCES
?
»
8.5
Must-Have Skills for This Role
CybersecurityGovernanceComputer ScienceData AnalyticsISO 27001
FREE
STUCK ON A QUESTION? PRACTICE IT
Practice Any Question
Get instant AI feedback
"How would you design a scalable system for NVISO's use case?"
Record your answer & get scored