Haystack
← Back to Jobs
Full time
Other
BL

IT Regulatory Consulting Trainee

BDO LuxembourgLuxembourg🇱🇺LuxembourgPosted 1 Oct 2026

Quick Overview

Seniority
Entry Level
Employment type
Full Time
Work mode
Hybrid
Location
Luxembourg, Luxembourg
ComplianceRegulatory ComplianceRisk Management

Job Description

BDO Luxembourg is looking for an IT Regulatory Consulting Trainee.


Who are we?

BDO is present in over 169 countries and we offer an extensive range of services in the areas of Audit, Tax, Advisory, Accounting, Business Services and Outsourcing. At BDO Luxembourg, our mission is to provide our clients with the expertise of our global network tailored to the unique needs of the Luxembourgish market, delivering personalized services and building valued relationships. With over 700 employees representing more than 40 nationalities, we embrace diversity and encourage skills and people development among our employees. Our core values, honesty, integrity, quality, respect and responsibility, define our culture. Hence, our People can expect to grow in a stimulating work environment that supports professional development and fosters inclusivity.


What will you do?


As part of our IT Regulatory, Risk & Compliance (GRC) activities, you will join our Consulting team and contribute to projects supporting financial-sector clients in addressing ICT regulatory, cybersecurity and information security requirements.

Your responsibilities will include:

  • Join project teams and support the delivery and coordination of IT Regulatory, ICT Risk, Cybersecurity and GRC assignments;

  • Contribute to regulatory compliance and gap assessments, particularly in relation to DORA, CSSF requirements, NIS2 and other ICT-related regulatory frameworks;

  • Support ISO/IEC 27001 Information Security Management System (ISMS) implementation and assessment projects, including policies, procedures, risk assessments, controls and supporting documentation;

  • Assist with ICT risk assessments, third-party/ICT outsourcing risk management and control framework reviews;

  • Participate in the review and preparation of IT and information security policies, procedures, governance frameworks and regulatory documentation;

  • Support the preparation of client deliverables, presentations, workshops, proposals and training materials;

  • Attend and contribute to client meetings and workshops, progressively developing direct client exposure;

  • Conduct research on emerging ICT regulatory, cybersecurity and technology risk topics and contribute to internal knowledge development and market publications;

  • Support the development of our IT Regulatory and GRC methodologies, tools and service offerings.

Supervised by experienced consultants and managers, you will progressively develop your autonomy, technical knowledge and understanding of ICT governance and regulatory requirements within the financial sector.


This offer is for you if:

  • You are completing a Master's degree in Information Systems, Cybersecurity, IT Governance, Risk Management, Computer Science, Business/Management with an IT specialization, or a related field;

  • You are looking for an inspiring end-of-studies internship and are interested in developing a career in IT Regulatory, ICT Risk, Cybersecurity or GRC consulting;

  • You speak French and English fluently;

  • You have an interest in IT governance, information security, cybersecurity, ICT risk management and regulatory compliance;

  • You have an interest in, or initial knowledge of, frameworks and regulations such as ISO/IEC 27001, DORA, NIS2, COBIT or related standards;

  • You are interested in understanding how technology and cybersecurity requirements apply to banks, investment firms, asset managers and other regulated financial institutions;

  • You have strong analytical and problem-solving skills and are comfortable working with both technical and regulatory topics;

  • You distinguish yourself through your organizational skills, autonomy, curiosity, attention to detail, flexibility and team spirit;

  • You have strong written and verbal communication skills and are fluent in English; French is considered a strong asset;

  • You have a good command of MS Office, particularly Excel, PowerPoint and Word;

  • Previous academic or professional exposure to IT audit, cybersecurity, information security, risk management or regulatory compliance is considered an advantage but is not mandatory;

  • You are eager to learn and want to start your career within a dynamic consulting environment with opportunities to develop your expertise.

then this offer is probably made for you!


What is waiting for you:

  • Lunch vouchers

  • Flexible working hours and homeworking options upon approval

  • On-site employee restaurant with preferential prices

  • Free access to our fitness room

  • Sports sessions for small additional charge

  • Internal sports groups (e.g. running, cycling and football)

  • Career development opportunities through a wide range of trainings (e.g. technical and soft skills)

Our main office is ideally located in the modern and rapidly expanding Cloche d'Or area. This dynamic area offers easy access to public transport, stores and park-and-ride facilities.

Are you willing to grow your career in a multicultural, pleasant and dynamic environment? Then, take your chance!

In accordance with the provisions of the Luxembourg law of 23 July 2016 amending the law of 29 March 2013, candidates may be required to provide an extract from their criminal record. This document, issued by the authorities, must not be older than three months. Such a document will be requested with the aim of carrying out a character check on candidates, bearing in mind the area of activity of our establishment and, more particularly, the tasks described in the job description.

Similar jobs