At Bayer we’re visionaries, driven to solve the world’s toughest challenges and striving for a world where ,Health for all, Hunger for none’ is no longer a dream, but a real possibility. We’re doing it with energy, curiosity and sheer dedication, always learning from unique perspectives of those around us, expanding our thinking, growing our capabilities and redefining ‘impossible’. There are so many reasons to join us. If you’re hungry to build a varied and meaningful career in a community of brilliant and diverse minds to make a real difference, there’s only one choice.
Sr Cyber Security Analyst
Sr Cyber Security Analyst
For Digital Hub Warsaw, we are looking for:
Sr Cyber Security Analyst
We are seeking a highly skilled Sr. Cyber Security Analyst responsible for our efforts in investigating vulnerabilities and assessing their impact on our systems. In this senior position, the analyst will conduct vulnerability investigations and assessments about the Bayer business impact, communicate findings with asset owners and service providers, and provide actionable insights for risk mitigation. Additionally, the analyst will evaluate and prioritize vulnerabilities based on their potential exploitability and impact, ensuring effective mitigation and documentation of findings.
Key Tasks & Responsibilities:
- Perform in-depth investigations of vulnerabilities and zero days to determine their impact on systems and business operations
- Vulnerability assessment, threat modeling, understanding of attack vectors, knowledge of security tools and technologies, and the ability to assess the potential impact on business operations.
- Analyzing the nature and severity of vulnerabilities discovered through various security tools and methods.
- Determining the potential exploitability of each vulnerability by assessing how easily it can be exploited by attackers, considering factors such as attack vectors, required skill level, and available exploits.
- Communicate effectively with asset owners and service providers to discuss findings and recommend remediation strategies.
- Evaluate the criticality of vulnerabilities in relation to company assets and prioritize remediation efforts accordingly.
- Collaborate with cross-functional teams to enhance vulnerability management processes and strengthen the organization’s security posture.
- Significant experience in cybersecurity analysis, exceptional investigative skills, and a clear understanding of vulnerabilities and their implications for organizational security.
Qualifications & Competencies (education, skills, experience):
- Bachelor’s or Master’s degree in Computer Science, Information Security, Cybersecurity, or a related field; relevant work experience may be accepted as an equivalent.
- Extensive experience in IT auditing, vulnerability management, and penetration testing activities across IT, OT, application, and cloud environments (AWS, GCP, Azure).
- Strong familiarity with regulatory compliance and information security management frameworks, such as ISO 27000, COBIT, and NIST 800 series, with the ability to implement and enforce compliance measures.
- Proficient in using vulnerability scanning tools and technologies to identify and assess vulnerabilities across diverse environments, including cloud platforms, workstations and servers.
- Advanced knowledge of configuring and utilizing various vulnerability assessment technologies, with the ability to tailor assessments based on specific organizational needs and risk profiles.
- Experience in monitoring networks and systems, identifying vulnerabilities, and implementing effective response strategies, including developing and optimizing incident response plans.
- Strong understanding of security principles and common vulnerabilities across Cloud, Applications, IT and OT environments, with the ability to mentor junior analysts on risk assessment and mitigation strategies.
- Proven ability to evaluate and prioritize vulnerabilities based on their potential exploitability and impact, ensuring effective mitigation and documentation of findings.
- Expertise in vulnerability assessment and threat modeling, with a deep understanding of attack vectors and scenarios.
- Excellent communication skills to effectively convey complex security findings and recommendations to diverse audiences, including executive leadership.
What do We offer:
- A flexible, hybrid work model
- Great workplace in a new modern office in Warsaw
- Career development, 360° Feedback & Mentoring programme
- Wide access to professional development tools, trainings, & conferences
- Company Bonus & Reward Structure
- VIP Medical Care Package (including Dental & Mental health)
- Holiday allowance (“Wczasy pod gruszą”)
- Life & Travel Insurance
- Pension plan
- Co-financed sport card - FitProfit
- Meals Subsidy in Office
- Additional days off
- Budget for Home Office Setup & Maintenance
- Dedicated working Zone with state-of-the art Lab available only for Cyber Security Team
- Access to Company Game Room equipped with table tennis, soccer table, Sony PlayStation 5 and Xbox Series X consoles setup with premium game passes, and massage chairs
- Tailored-made support in relocation to Warsaw when needed
- Please send your CV in English
You feel you do not meet all criteria we are looking for? That doesn’t mean you aren’t the right fit for the role. Apply with confidence, we value potential over perfection
WORK LOCATION: WARSAW AL.JEROZOLIMSKIE 158
Location:
Poland : Mazowieckie : Warszawa
Division:
CSF
Reference Code:
839543
Job Segment:
Cyber Security, Game Designer, Compliance, Information Security, Security, Technology, Legal