Lead Cyber Security GRC Specialist @ Bayer
1 day ago
Educational Background: A Bachelor’s or Master’s degree in law, information technology, cybersecurity, computer science, or a related field is essential, though relevant working experience may be considered an equivalent. [3+] years of experience in cyber security, previous experience in a GRC role highly desired Proficiency in various cybersecurity tools and software, understanding of network infrastructure and security protocols, and knowledge of threat modeling and risk assessment techniques are helpful Profound knowledge of EU and German cybersecurity and data privacy legislation, such as NIS-2, KRITIS, DORA, GDPR, etc. Experience with policy writing Practical experience information security in a corporate or government setting is valuable, along with familiarity with information security standards and frameworks such as ISO/IEC 27001 and NIST Experience with risk management frameworks such as NIST Cybersecurity Framework or ISO 27001 Certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified in Risk and Information Systems Control (CRISC) are desirable Dealing with high complexity and ability to think and act in a goal- and result-oriented manner English, fluent in written and spoken. German language skills would be a plus For Digital Hub Warsaw, we are looking for: Lead Cyber Security GRC Specialist Responsible for developing, implementing, and managing cyber security Governance, Risk, and Compliance (GRC) initiatives within Bayer, measuring adherence to Bayer policies and procedures which are based on industry standards. Assessing compliance of Bayer processes, monitoring critical IT security deliverables, and providing audit support for cybersecurity teams. Also, managing IT security exceptions and recommending controls to address gaps through data and security risk assessments. Support preparation of alignment meetings with German workers councils to ensure that cybersecurity tools and processes are implemented in accordance with co-determination laws. ,[Perform risk management activities to identify, assess, and mitigate cyber security risks for Bayer. These include owning and management of the cybersecurity framework (in particular based on ISO/IEC 27001), measuring the effectiveness of this framework and driving for the maturity and to support business needs, Develop and maintain key performance indicators (KPIs) and metrics to measure the effectiveness of GRC initiatives., Prepare regular reports for senior management on the status of GRC activities., Collaborate with cross-functional teams to integrate GRC principles into business processes and systems, Provide consulting across the organization on matters of cybersecurity GRC, Monitor regulatory changes and industry trends to ensure the organization remains compliant and proactive in addressing emerging risks, Act as a liaison with external auditors, and stakeholders on GRC-related matters, Work closely together with other cybersecurity teams to ensure that in case of process changes data privacy and workers council requirements are met and new approvals are obtained, if necessary, Develop and implement GRC strategies, policies, and procedures to ensure compliance with regulatory standards and industry best practices, Ensure that the board and senior management receive accurate and timely information for decision-making., Establish and maintain policies and procedures to promote ethical behavior and accountability, Develop and enforce GRC policies and strategies for IT Security compliance, Report GRC status to management and liaise with stakeholders] Requirements: Security Additionally: Sport subscription, Private healthcare, International projects, Playroom, Modern office.
-
Lead Solution Architect
2 weeks ago
Warsaw, Czech Republic Bayer Full timeUniversity degree in science or information technology, preferably Masters's degree Certified Veeva Vault Platform Administrator with more than 5 years of experience in a Vault Architect role Proven experience with at least 3 Veeva Vault applications and track record of managing Vault Domain settings Preferable business domain knowledge in the pharmaceutical...
-
Senior Data Governance Specialist @ Bayer
2 weeks ago
Warsaw, Czech Republic Bayer Full timeBachelor’s degree in Computer Science, Information Systems, Data Science, or a related field. 5+ years in data management, including 2+ years with enterprise data cataloging or metadata platforms at scale in complex environments. Expert in solutions like Collibra; proven success integrating catalog standards (datasets, pipelines, metrics, lineage,...
-
Lead DevOps Engineer @ Bayer
5 days ago
Warsaw, Czech Republic Bayer Full timeBachelor’s degree in computer science, Software Engineering, Information Technology or a related field 7+ years experience as a DevOps engineer. Excellent experience with Composable Architecture principles, especially on an API first strategy. Excellent proficiency with the AWS cloud platform with focus on infrastructure as code using Hashicorp Terraform....
-
Lead AI Solutions Architect @ Bayer
2 weeks ago
Warsaw, Czech Republic Bayer Full timeBachelor's Degree or Master's Degree or Ph. D in Computer Science, Data Science, Artificial Intelligence, or a related field. AI & Machine Learning Expertise: Deep understanding of AI concepts, including machine learning algorithms, natural language processing, and deep learning frameworks (e.g., TensorFlow, PyTorch). System Architecture: Proficiency in...
-
Senior Software Engineer @ Bayer
7 days ago
Warsaw, Czech Republic Bayer Full timeBachelor’s degree in Computer Science, Software Engineering, IT, or related field. 5+ years as a software engineer. Proficiency in full-stack application development with Java, JavaScript and React Deep understanding of SDLC and methodologies (Agile, Scrum). Proficiency in software design and architecture. Experience with version control systems (Git)....
-
Senior Software Engineer @ Bayer
2 weeks ago
Warsaw, Czech Republic Bayer Full timeWHO YOU ARE: Bachelor’s degree in computer science, Software Engineering, Information Technology or a related field. 5+ years experience as a software engineer. Good experience with Composable Architecture principals, especially on an API first strategy. Good experience in working in an agile team using Scrum or Kanban. Excellent experience in one or more...
-
Senior Data Analyst @ Bayer
2 weeks ago
Warsaw, Czech Republic Bayer Full time5+ years in analytics/BI roles, with a track record of delivering business impact in commercial or lifecycle environments. Expert in data wrangling and analysis skills; comfort with ambiguous questions and iterative problem framing. Good proficiency in Python, SQL, visualization tools such as PowerBI, Tableau, or ThoughtSpot, and data platforms such as...
-
Senior Data Engineer @ Bayer
2 weeks ago
Warsaw, Czech Republic Bayer Full timeBachelor’s degree in Computer Science, Data Science, Information Technology, or a related field. 5+ years of experience in data engineering, data operations, or a similar role, delivering production-grade data pipelines and services. Familiarity with data product lifecycle management across disciplines: Demonstrated expertise designing, implementing, and...
-
Python (ML) Developer @ Fudo Security
2 weeks ago
Remote, Warsaw, Kraków, Gdańsk, Wrocław, Poznań, Czech Republic Fudo Security Full timeproficiency in Python programming (5 years of experience), practical knowledge of building regression and classification models, good knowledge about neural networks, decision trees, forests etc., being familiar with techniques like deep learning, transfer learning, proficiency in ml frameworks like scikit-learn, tensorflow, good understanding of...
-
Staff Security Engineer
3 days ago
Warsaw, Czech Republic Box Inc. Full timeWho you are: Experienced security engineer with 5+ years in application security, DevSecOps, or security tooling, ideally with exposure to AI/ML security challenges. Deep understanding of AI agent architectures, generative AI models, and associated security risks such as prompt injection, adversarial attacks, and autonomous decision-making vulnerabilities....