Epicareer Might not Working Properly
Learn More

Manager, Business Information Security - TO&R

Salary undisclosed

Apply on


Original
Simplified
Description

Johnson & Johnson is currently seeking a Manager, Business Information Security - TO&R to be located onsite in NJ, PA or EMEA J&J location.

At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at

For more than 130 years, diversity, equity & inclusion (DEI) has been a part of our cultural fabric at Johnson & Johnson and woven into how we do business every day. Rooted in Our Credo, the values of DEI fuel our pursuit to create a healthier, more equitable world. Our diverse workforce and culture of belonging accelerate innovation to solve the world's most pressing healthcare challenges.

We know that the success of our business - and our ability to deliver meaningful solutions - depends on how well we understand and meet the diverse needs of the communities we serve. Which is why we foster a culture of inclusion and belonging where all perspectives, abilities and experiences are valued, and our people can reach their potential.

At Johnson & Johnson, we all belong.

Summary

The Manager will drive Cyber Trust and Security by Design through consulting, engagement and assurance. Support the strategy for embedding cyber security into business initiatives, improving risk posture, secure critical intellectual property, protect sensitive assets, improve site security and enhance business resiliency. Provide assurance over the cybersecurity of the Technology Operations and Risk organization with a focus on Data Science and Supply chain services. The role will be responsible for providing security consulting services for the TO&R organization.

Responsibilities
  • Drive the adoption of security industry best-practices, J&J security standards and capabilities with a focus on Quality, Site and Supply Chain services including Data Science to ensure that critical information and assets are protected from cyber threats.
  • Provide assurance leadership on the cybersecurity risk posture of business capabilities, including, security consulting, design reviews, ranking risks, consulting and assurance on remediation.
  • Business Engagement on large program, providing overall consulting on business, security by design
  • Support vulnerability management, third party risk remediation and cyber incidents investigations as needed.
  • Enable ISRM capabilities for the business including awareness, business impact, exceptions handling (e.g., Safe Data, Entra)
  • Support for cybersecurity, and internal control readiness for Internal Audit and External regulatory audits
  • Provide training and awareness to business teams on key cybersecurity concepts
  • Provide metrics and reporting to ISRM and Business leadership on status of compliance to cybersecurity IAPP requirements and risks

Qualifications

Required:
  • Bachelor's degree required, preferably in Cybersecurity, Engineering, Computer Science or other relevant life science degree.
  • At least 5 years of experience in technology/cybersecurity
  • Deep understanding of cybersecurity controls and concepts
  • Solid grasp of current security threats, mitigation measures and security vendors/technologies
  • Ability to influence and drive Adoption of Enterprise Secure Software Development Processes and Tools
  • Ability to prioritize activities to deliver Security by Design and Comprehensive, Effective Risk Management
  • Experience working in fast-paced environments
  • Creative problem-solving skills and understanding of complex environments (data, application, middleware, network) is preferred
  • Previous experience developing effective and strong partnerships
  • Strong communication and collaboration skills, ability to network and influence all levels


Preferred:
  • MS in Cybersecurity/MBA
  • Experience in managing cybersecurity in life sciences environments
  • Security certifications such as CRISC, CISSP, CCSP, ISSAP, CISM, etc.


The compensation and benefits information set forth in this posting applies to candidates hired in the United States. Candidates hired outside the United States will be eligible for compensation and benefits in accordance with their local market.

The anticipated base pay range for this position is $99,000- $170,200.

The Company maintains highly competitive, performance-based compensation programs. Under current guidelines, this position is eligible for an annual performance bonus in accordance with the terms of the applicable plan. The annual performance bonus is a cash bonus intended to provide an incentive to achieve annual targeted results by rewarding for individual and the corporation's performance over a calendar/performance year. Bonuses are awarded at the Company's discretion on an individual basis.
  • Employees and/or eligible dependents may be eligible to participate in the following Company sponsored employee benefit programs: medical, dental, vision, life insurance, short- and long-term disability, business accident insurance, and group legal insurance.
  • Employees may be eligible to participate in the Company's consolidated retirement plan (pension) and savings plan (401(k)).
  • Employees are eligible for the following time off benefits:

o Vacation - up to 120 hours per calendar year

o Sick time - up to 40 hours per calendar year; for employees who reside in the State of Washington - up to 56 hours per calendar year

o Holiday pay, including Floating Holidays - up to 13 days per calendar year of Work, Personal and Family Time - up to 40 hours per calendar year
  • Additional information can be found through the link below.


Johnson & Johnson is an Affirmative Action and Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, or protected veteran status and will not be discriminated against on the basis of disability.

For more information on how we support the whole health of our employees throughout their wellness, career and life journey, please visit
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
Report this job