Search suggestions:

praca zdalna
praca
praca od zaraz
sprzedawca
urząd pracy
it
dam pracę
logistyka
zdalna
księgowa
hr
praca biurowa
pracownik biurowy
województwo śląskie
województwo dolnośląskie
województwo mazowieckie
Wrocław
Warsaw
powiat lubelski
Szczecin
Opole
województwo opolskie
Poznan
województwo warmińsko-mazurskie
powiat pruszkowski

Sr. Cyber Security GRC Specialist

Bayer
Warsaw, województwo mazowieckie
2 dni temu

At Bayer we’re visionaries, driven to solve the world’s toughest challenges and striving for a world where ,Health for all, Hunger for none’ is no longer a dream, but a real possibility. We’re doing it with energy, curiosity and sheer dedication, always learning from unique perspectives of those around us, expanding our thinking, growing our capabilities and redefining ‘impossible’. There are so many reasons to join us. If you’re hungry to build a varied and meaningful career in a community of brilliant and diverse minds to make a real difference, there’s only one choice.


Sr. Cyber Security GRC Specialist


For Digital Hub Warsaw, we are looking for:


Sr. Cyber Security GRC Specialist

Responsible for developing, implementing, and managing cyber security Governance, Risk, and Compliance (GRC) initiatives within Bayer, measuring adherence to Bayer policies and procedures which are based on industry standards. Assessing compliance of Bayer processes, monitoring critical IT security deliverables, and providing audit support for cybersecurity teams. Also, managing IT security exceptions and recommending controls to address gaps through data and security risk assessments. Support preparation of alignment meetings with German workers councils to ensure that cybersecurity tools and processes are implemented in accordance with co-determination laws.


Key Tasks & Responsibilities:


  • Perform risk management activities to identify, assess, and mitigate cyber security risks for Bayer. These include owning and management of the cybersecurity framework (in particular based on ISO/IEC 27001), measuring the effectiveness of this framework and driving for the maturity and to support business needs
  • Develop and maintain key performance indicators (KPIs) and metrics to measure the effectiveness of GRC initiatives.
  • Prepare regular reports for senior management on the status of GRC activities.
  • Collaborate with cross-functional teams to integrate GRC principles into business processes and systems
  • Provide consulting across the organization on matters of cybersecurity GRC
  • Monitor regulatory changes and industry trends to ensure the organization remains compliant and proactive in addressing emerging risks
  • Act as a liaison with external auditors, and stakeholders on GRC-related matters
  • Work closely together with other cybersecurity teams to ensure that in case of process changes data privacy and workers council requirements are met and new approvals are obtained, if necessary

Focus on Governance topics:


  • Develop and implement GRC strategies, policies, and procedures to ensure compliance with regulatory standards and industry best practices
  • Ensure that the board and senior management receive accurate and timely information for decision-making.
  • Establish and maintain policies and procedures to promote ethical behavior and accountability
  • Develop and enforce GRC policies and strategies for IT Security compliance
  • Report GRC status to management and liaise with stakeholders

Qualifications & Competencies (education, skills, experience):


  • Educational Background: A Bachelor’s or Master’s degree in law, information technology, cybersecurity, computer science, or a related field is essential, though relevant working experience may be considered an equivalent.
  • [3+] years of experience in cyber security, previous experience in a GRC role highly desired
  • Proficiency in various cybersecurity tools and software, understanding of network infrastructure and security protocols, and knowledge of threat modeling and risk assessment techniques are helpful
  • Profound knowledge of EU and German cybersecurity and data privacy legislation, such as NIS-2, KRITIS, DORA, GDPR, etc.
  • Experience with policy writing
  • Practical experience information security in a corporate or government setting is valuable, along with familiarity with information security standards and frameworks such as ISO/IEC 27001 and NIST
  • Experience with risk management frameworks such as NIST Cybersecurity Framework or ISO 27001
  • Certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified in Risk and Information Systems Control (CRISC) are desirable
  • Dealing with high complexity and ability to think and act in a goal- and result-oriented manner
  • English, fluent in written and spoken. German language skills would be a plus

What do We offer:


  • A flexible, hybrid work model
  • Great workplace in a new modern office in Warsaw
  • Career development, 360° Feedback & Mentoring programme
  • Wide access to professional development tools, trainings, & conferences
  • Company Bonus & Reward Structure
  • VIP Medical Care Package (including Dental & Mental health)
  • Holiday allowance ("Wczasy pod gruszą")
  • Life & Travel Insurance
  • Pension plan
  • Co-financed sport card - FitProfit
  • Meals Subsidy in Office
  • Additional days off
  • Budget for Home Office Setup & Maintenance
  • Dedicated working Zone with state-of-the art Lab available only for Cyber Security Team
  • Access to Company Game Room equipped with table tennis, soccer table, Sony PlayStation 5 and Xbox Series X consoles setup with premium game passes, and massage chairs
  • Tailored-made support in relocation to Warsaw when needed
  • Please send your CV in English

You feel you do not meet all criteria we are looking for? That doesn't mean you aren't the right fit for the role. Apply with confidence, we value potential over perfection.


WORK LOCATION: WARSAW AL.JEROZOLIMSKIE 158



YOUR APPLICATION



Bayer welcomes applications from all individuals, regardless of race, national origin, gender, age, physical characteristics, social origin, disability, union membership, religion, family status, pregnancy, sexual orientation, gender identity, gender expression or any unlawful criterion under applicable law. We are committed to treating all applicants fairly and avoiding discrimination.

Bayer is committed to providing access and reasonable accommodations in its application process for individuals with disabilities and encourages applicants with disabilities to request any needed accommodation(s) using the contact information below.

Bayer offers the possibility of working in a hybrid model. We know how important work-life balance is, so our employees can work from home, from the office or combine both work environments. The possibilities of using the hybrid model are each time discussed with the manager.
Bayer respects and applies the Whistleblower Act in Poland.




Location:
Poland : Mazowieckie : Warszawa

Division:
CSF

Reference Code:
851380


Location:

Poland : Mazowieckie : Warszawa


Division:
CSF


Reference Code:

851380

Save Apply
Report job
Other Job Recommendations:

DevOps Engineer - Cloud Security

Dabster Pvt Ltd
Warsaw, województwo mazowieckie
17 000 zł - 18 000 zł
DevOps Engineer - Cloud Security Responsibilities: - Deploy, manage and improve internal container registry - Build automations...
2 tygodnie temu

Security & QA Technology Specialist

HEINEKEN
Krakow, województwo małopolskie
  • supporting Supply Chain Connected Brewery Product Teams,...
  • supporting Global Functions with the selection, design and...
1 tydzień temu

Security Engineer

SoftSwiss
Warsaw, województwo mazowieckie
  • Support and develop the current IAM solution (Keycloak) as...
  • Support and develop the PAM solution (Teleport) as the main...
1 tydzień temu

Technical Security Manager

DP World
województwo łódzkie
  • Provide Technical Security expertise and support in region...
  • Manage all aspects of project management for the assigned...
1 tydzień temu

Chief Information Security Officer

Volue
Gdańsk, województwo pomorskie
  • Foster a culture of information security awareness across...
  • Collaborate with the CTO to ensure secure software...
1 tydzień temu

Senior Software Engineer, ChromeOS, Security

Google
Krakow, województwo małopolskie
Google's software engineers develop the next-generation technologies that change how billions of users connect, explore, and...
1 tydzień temu

Sr Info Security Risk Analyst I - (Hiring Across Multiple Regions)

Syneos Health
Warsaw, województwo mazowieckie
  • We are continuously building the company we all want to...
  • Prepares security exception risk profile and reports to...
4 tygodnie temu

Lead Cyber Security Architect (Product Security)

Honeywell
Gdańsk, województwo pomorskie
  • Provide technical guidance and mentorship to support project...
  • Oversee the execution of cybersecurity initiatives and...
3 tygodnie temu

Security Engineer / DevSecOps

LotusFlare
powiat lubelski, województwo lubelskie
  • Actively managing the security of our cloud-native runtime...
  • Implement continuous monitoring systems and tools to...
3 tygodnie temu

AWS Security Specialist

Visa
Warsaw, województwo mazowieckie
  • Collaborate with DevOps and software development teams to...
  • Provide technical guidance and training to internal teams...
3 tygodnie temu