Sr. Cyber Security GRC Specialist @

2 weeks ago


Warszawa, Mazovia, Czech Republic Bayer Full time
  • Educational Background: A Bachelor's or Master's degree in law, information technology, cybersecurity, computer science, or a related field is essential, though relevant working experience may be considered an equivalent.
  • [3+] years of experience in cyber security, previous experience in a GRC role highly desired
  • Proficiency in various cybersecurity tools and software, understanding of network infrastructure and security protocols, and knowledge of threat modeling and risk assessment techniques are helpful
  • Profound knowledge of EU and German cybersecurity and data privacy legislation, such as NIS-2, KRITIS, DORA, GDPR, etc.
  • Experience with policy writing
  • Practical experience information security in a corporate or government setting is valuable, along with familiarity with information security standards and frameworks such as ISO/IEC 27001 and NIST
  • Experience with risk management frameworks such as NIST Cybersecurity Framework or ISO 27001
  • Certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified in Risk and Information Systems Control (CRISC) are desirable
  • Dealing with high complexity and ability to think and act in a goal- and result-oriented manner
  • English, fluent in written and spoken. German language skills would be a plus

Sr. Cyber Security GRC Specialist

Responsible for developing, implementing, and managing cyber security Governance, Risk, and Compliance (GRC) initiatives within Bayer, measuring adherence to Bayer policies and procedures which are based on industry standards. Assessing compliance of Bayer processes, monitoring critical IT security deliverables, and providing audit support for cybersecurity teams. Also, managing IT security exceptions and recommending controls to address gaps through data and security risk assessments. Support preparation of alignment meetings with German workers councils to ensure that cybersecurity tools and processes are implemented in accordance with co-determination laws.

,[Perform risk management activities to identify, assess, and mitigate cyber security risks for Bayer. These include owning and management of the cybersecurity framework (in particular based on ISO/IEC 27001), measuring the effectiveness of this framework and driving for the maturity and to support business needs, Develop and maintain key performance indicators (KPIs) and metrics to measure the effectiveness of GRC initiatives., Prepare regular reports for senior management on the status of GRC activities., Collaborate with cross-functional teams to integrate GRC principles into business processes and systems, Provide consulting across the organization on matters of cybersecurity GRC, Monitor regulatory changes and industry trends to ensure the organization remains compliant and proactive in addressing emerging risks, Act as a liaison with external auditors, and stakeholders on GRC-related matters, Work closely together with other cybersecurity teams to ensure that in case of process changes data privacy and workers council requirements are met and new approvals are obtained, if necessary, Develop and implement GRC strategies, policies, and procedures to ensure compliance with regulatory standards and industry best practices, Ensure that the board and senior management receive accurate and timely information for decision-making., Establish and maintain policies and procedures to promote ethical behavior and accountability, Develop and enforce GRC policies and strategies for IT Security compliance, Report GRC status to management and liaise with stakeholders] Requirements: ServiceNow Additionally: Sport subscription, Private healthcare, Playroom, Free parking, Modern office.

  • Warszawa, Mazovia, Czech Republic Bayer Full time

    Qualifications & Competencies (education, skills, experience):Educational Background: A Bachelor's or Master's degree in information technology, cybersecurity, computer science, or a related field is essential, though relevant working experience may be considered an equivalent3+ years of experience in cyber security, previous experience in a GRC role highly...


  • Warszawa, Mazovia, Czech Republic beBeeCybersecurity Full time €89,445 - €105,400

    Senior Cyber Security GRC Specialist Job DescriptionWe are seeking a highly skilled Senior Cyber Security GRC Specialist to join our team. The ideal candidate will have extensive experience in developing and implementing cyber security Governance, Risk, and Compliance (GRC) initiatives.Key Responsibilities:Cyber Security Governance: Develop and implement...


  • Warszawa, Mazovia, Czech Republic beBeeCybersecurity Full time 4,200,000 - 8,700,000

    Lead Cyber Security Governance SpecialistThis is a senior-level position responsible for developing, implementing and managing cyber security governance initiatives within an organization. The ideal candidate will have experience in risk management, threat modeling and risk assessment techniques.Main Responsibilities:Develop and implement governance...


  • Warszawa, Mazovia, Czech Republic Bayer Full time

    Expert level knowledge of at least one data-pipeline, logging, and analytic platformExperience in IT infrastructure, SIEM, IT Security, or related fieldStrong understanding of IT and enterprise systems incl. business processes and dataStrong knowledge of Azure and AWS infrastructure.Strong knowledge of Linux and Windows Operating Systems.Experience guiding a...


  • Warszawa, Mazovia, Czech Republic beBeeSecurity Full time €60,000 - €85,000

    Job Title: Cloud Security SpecialistWe are seeking a skilled Cloud Security Specialist to enhance our cloud security posture and ensure compliance across multiple cloud environments.About the Role:This is an exciting opportunity to work on implementing and integrating security and compliance tools across various cloud platforms and internal systems.Key...


  • Warszawa, Mazovia, Czech Republic beBeeIdentity Full time 800,000 - 1,500,000

    Job Title: Identity Security SpecialistThis position focuses on ensuring secure operations of IAM platforms, maintaining compliance with internal and external regulations.Operate IAM solution Microsoft Entra IDMaintain IAM solutions and proprietary servicesCreate and maintain documentationSupport standardization of service operation and handover of tasks to...


  • Warszawa, Mazovia, Czech Republic beBeeSecurity Full time 900,000 - 1,200,000

    Job OpportunityWe are seeking a seasoned security professional to join our specialized mobile device protection team.The ideal candidate will have extensive experience in security analysis of Android systems, strong programming skills in C/C++ and Java, and hands-on knowledge of Android system architecture and low-level OS behavior.You will conduct thorough...


  • Warszawa, Mazovia, Czech Republic Falck Digital Technology Poland Sp. z o.o. Full time

    Currently enrolled as student in a related field. We expect you to be very good at English as well as being capable of assisting with the maintenance and improvement of Falck ISMS.Experience in efficient usage of the communication capabilities with the Microsoft Office platform.Knowledge of Power BI and Power Apps.We work to automate further operational...


  • Warszawa, Mazovia, Czech Republic beBeeCloudInfrastructure Full time 4,500,000 - 7,500,000

    Job Opportunity: Cloud Infrastructure SpecialistKey Responsibilities:Develop and implement cloud-based infrastructure solutions for big data and operational workflowsMonitor and maintain infrastructure health, performance, and security, resolving issues promptly to ensure business continuityImplement and enforce robust security protocols and compliance...


  • Warszawa, Mazovia, Czech Republic Devire Full time

    RequirementsProfessional experience in a independently processing Polish payrollExcellent knowledge of social security and ZUS and Płatnik as well as Polish payroll, labor law and tax regulationsUniversity degree (preferably in HR, Finance, or a related field)Strong analytical and very good organizational skills, close attention to detailWorking knowledge...