Jobs and Careers
BA

Sr. Cyber Security GRC Specialist

Bayer
Creve Coeur, United Statesfull_timeVerifiedPosted 15 Apr 2026
💰 $171,600/yr($114,400/yr$171,600/yr)

About the role

 

At Bayer we’re visionaries, driven to solve the world’s toughest challenges and striving for a world where 'Health for all Hunger for none’ is no longer a dream, but a real possibility. We’re doing it with energy, curiosity and sheer dedication, always learning from unique perspectives of those around us, expanding our thinking, growing our capabilities and redefining ‘impossible’. There are so many reasons to join us. If you’re hungry to build a varied and meaningful career in a community of brilliant and diverse minds to make a real difference, there’s only one choice.

 

Sr. Cyber Security GRC Specialist 

 

PURPOSE:

As a Sr. Cyber Security GRC Specialist, you will support the development, implementation, and ongoing operation of Cyber Security Governance, Risk, and Compliance (GRC) activities within Bayer. In this individual contributor role, you will partner with Cyber Security, IT, compliance, and business stakeholders to help measure adherence to Bayer policies and procedures aligned to industry standards; assess the effectiveness of security and compliance processes; track key IT security deliverables; and contribute to audit readiness. You will help manage IT security exceptions and support recommendations for risk treatment and control improvements through data-driven analysis and security risk assessments. You will also contribute to data security initiatives, with a focus on improving Data Classification, Crown Jewel Management, and Data Discovery & Inventory capabilities, helping safeguard sensitive information and support compliance with data protection regulations.

 

YOUR TASKS AND RESPONSIBILITIES:

  • Support Cyber Security risk management activities to identify, assess, and help mitigate risks, including contributing to the operation and continuous improvement of the Cyber Security framework;
  • Develop and maintain key performance indicators (KPIs), dashboards, and metrics to measure the effectiveness of initiatives;
  • Collaborate with cross-functional teams to help integrate Cyber Security assurance principles into business processes and systems;
  • Provide guidance and day-to-day support across the organization on Cyber Security assurance topics, following established standards and practices;
  • Monitor regulatory changes and industry trends and summarize impacts to policies, controls, and risk posture;
  • Coordinate evidence collection and respond to auditor inquiries in partnership with control owners and subject matter experts;
  • Contribute to strategic initiatives by supporting planning, tracking milestones, and producing high-quality deliverables;
  • Support continuous improvement of the data classification framework that categorizes data based on sensitivity and risk;
  • Partner with stakeholders at all levels of the organization to help ensure appropriate classification of data assets across the organization;
  • Assist with periodic reviews and updates to classification policies to align with regulatory changes and business needs;
  • Support identification and management of the organization’s critical data assets (“crown jewels”);
  • Help implement and maintain security requirements and protection measures for high-value data assets in partnership with relevant teams;
  • Participate in assessments and control reviews related to crown jewel data to support compliance with security standards;
  • Support data discovery and inventory activities to improve visibility of data assets across the organization;
  • Utilize data discovery tools and techniques to help identify sensitive data and its locations;
  • Maintain an up-to-date inventory of data assets, including classification and documented protection measures;
  • Work closely with IT, compliance, and legal teams to help ensure alignment on data protection requirements and implementation plans;
  • Serve as a point of contact for data security inquiries by triaging requests and connecting teams with the right standards, processes, and subject matter experts;
  • Promote strong collaboration and alignment with broader GRC capabilities and ways of working.
  • The primary location for this role will be Creve Coeur, MO (St. Louis, MO metro area). 

 

WHO YOU ARE:

Bayer seeks an incumbent who possesses the following: 

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Bayer

View company profile →