Internship Highlights
Duration
8 Weeks
Mode
Remote & Flexible
Workload
20 Hours/Week
Projects
30+
Certificate
Signed & Verifiable
What You'll Learn
CTI Lifecycle (Collection to Dissemination)
Master the complete threat intelligence lifecycle from data collection to actionable intelligence
Threat Actor Profiling
Learn to profile and track threat actors, understanding their TTPs and motivations
MITRE ATT&CK & APT Group Mapping
Map threat actor techniques to the MITRE ATT&CK framework and analyze APT campaigns
IOC Hunting & Threat Feed Analysis
Develop skills in hunting for indicators of compromise and analyzing threat intelligence feeds
OSINT Tools (Recon-ng, Spiderfoot)
Master open-source intelligence gathering using industry-standard OSINT tools
PDF & Document Metadata Analysis
Analyze document metadata and extract intelligence from various file formats
Geopolitical Threat Landscape Analysis
Understand geopolitical factors influencing cyber threats and nation-state activities
Threat Intelligence Report Writing
Develop clear and concise intelligence reports for stakeholders and decision-makers
Internship Structure
Week 1: Introduction to Cyber Threat Intelligence
CTI fundamentals, intelligence cycle, and threat landscape overview
Week 2: OSINT Fundamentals & Tool Mastery
Hands-on training with Maltego, Spiderfoot, and advanced OSINT techniques
Week 3: Threat Actor Profiling & Attribution
Learning to profile threat actors and understand attribution methodologies
Week 4: MITRE ATT&CK Framework & APT Mapping
Deep dive into ATT&CK framework and mapping APT group techniques
Week 5: IOC Analysis & Threat Feed Integration
Working with indicators of compromise and integrating threat intelligence feeds
Week 6: Advanced OSINT & Digital Forensics
Advanced OSINT techniques and document metadata analysis
Week 7: Geopolitical Analysis & Campaign Tracking
Understanding geopolitical context and tracking long-term threat campaigns
Week 8: Capstone: Nation-State APT Threat Report
Complete comprehensive threat intelligence report on a nation-state APT group
Eligibility & Prerequisites
Eligibility
- Currently enrolled in or graduated from Cybersecurity, International Relations, Intelligence Studies, or a related field.
- Strong analytical and research skills with an interest in threat actor behavior and tactics.
- Curiosity about global cyber conflicts, APT groups, and geopolitical threats.
- Committed to completing the 8-week internship with high-quality research deliverables.
- Ability to synthesize large volumes of data into actionable intelligence.
- Interest in cybersecurity journalism, cybercrime tracking, or national security.
- Capable of working independently while engaging in team-based intelligence collaboration.
- Access to a computer with a reliable internet connection and basic OSINT tools.
Prerequisites
- Basic understanding of cybersecurity principles, threat actors, and attack vectors.
- Familiarity with open-source intelligence (OSINT) collection techniques.
- Strong written communication skills for creating professional intelligence reports.
- Critical thinking and attention to detail when analyzing data or news sources.
- Understanding of research methodologies (academic or investigative).
- Basic knowledge of tools like VirusTotal, Shodan, Maltego, or SpiderFoot (preferred but not required).
- Awareness of the MITRE ATT&CK framework and common adversary tactics (optional).
- Interest in cybercrime trends, malware campaigns, or global threat intelligence reports.
Internship Benefits
Remote Internship
Work from anywhere in the world with flexible hours that fit your schedule
Hands-on Tasks
Real-world cybersecurity challenges and practical assignments
Letter of Experience
Receive a signed experience letter outlining your contributions
LinkedIn Skill Endorsement
Boost your LinkedIn profile with verified endorsements
Letter of Recommendation
Earn personalized LORs based on performance and conduct
Internship Certificate
Receive official recognition upon completion of the program
Expert Mentorship
Guidance from experienced cybersecurity professionals
Placement Support
Access job/internship opportunities post-completion
Enterprise Tool Mastery
Hands-on with tools like Wazuh, ELK, Zeek, Suricata, Frida, Burp Suite, and more
Report-Based Evaluation
Professional feedback on your security reports and documentation
Resume-Ready Capstone
Complete a final project that showcases your technical ability
Practice with Realistic Scenarios
Engage with realistic simulations based on industry incidents
Forge Your Cyber Future
Threat Intelligence Analyst
Analyze cyber threats and produce actionable intelligence for organizational security
OSINT Specialist
Focus on open-source intelligence gathering and analysis for security operations
APT Research Analyst
Specialize in tracking and analyzing advanced persistent threat groups
Cyber Threat Researcher
Conduct in-depth research on emerging threats and attack methodologies
Geopolitical Cyber Analyst
Analyze the intersection of geopolitics and cyber warfare for strategic intelligence
CTI Program Manager
Lead threat intelligence programs and coordinate intelligence sharing initiatives
Frequently Asked Questions
About EncryptEdge Labs
EncryptEdge Labs is a cybersecurity-focused organization committed to bridging the skills gap through hands-on, real-world training and mentorship. With a mission to empower the next generation of cybersecurity professionals, EncryptEdge offers a range of remote internship programs designed around practical challenges, capstone projects, and industry tools. In addition to education, EncryptEdge Labs also provides professional cybersecurity services, helping organizations strengthen their digital defenses and stay ahead in an evolving threat landscape.
Success Stories

Elizabeth Akoth
Network Security Engineer Intern
"I chose EncryptEdge Lab for its strong focus on practical security and innovation. Conducting a social engineering test and realizing how easily people could be tricked was eye‑opening. I gained real-world exposure to security monitoring, incident response, vulnerability assessment, and honed my skills with tools like Wireshark, Nmap, and SIEM platforms."
