Johnson & Johnson is recruiting for a Sr. Manager Cybersecurity, J&J Innovative Medicine Commercial to be located in Titusville, NJ or Raritan, NJ with travel between sites expected.
At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at https://www.jnj.com/.
Want more jobs like this?
Get jobs delivered to your inbox every week.
For more than 130 years, diversity, equity & inclusion (DEI) has been a part of our cultural fabric at Johnson & Johnson and woven into how we do business every day. Rooted in Our Credo, the values of DEI fuel our pursuit to create a healthier, more equitable world. Our diverse workforce and culture of belonging accelerate innovation to solve the world's most pressing healthcare challenges.
We know that the success of our business - and our ability to deliver meaningful solutions - depends on how well we understand and meet the diverse needs of the communities we serve. Which is why we foster a culture of inclusion and belonging where all perspectives, abilities and experiences are valued, and our people can reach their potential.
At Johnson & Johnson, we all belong.
Position Overview:
Johnson & Johnson is seeking a dedicated cybersecurity professional with a background in HIPAA security rules to join our team as the Sr. Manager Cybersecurity, Information Security & Risk Management (ISRM), J&J Innovative Medicine (J&JIM) Commercial. The complete candidate is a self-starter who thrives in a fast-paced environment and is eager to inspire change within an established organization. This position is tasked to identify and handle security risks serving as the domain authority for all security matters.
Key Responsibilities:
- Engagement: Build relationships and collaborate with J&J Innovative Medicine Patient Service Center IT and business partners to ensure security is integrated into all solutions and vendor relationships.
- Project Leadership: Lead and drive key projects in alignment with the ISRM security strategy to improve cyber capabilities and maturity.
- Security Assurance: Ensure controls are appropriately implemented, perform security testing (e.g., vulnerability scans), and ensure proper remediation.
- Regulatory Expertise: Demonstrated experience in implementing and managing security controls, conducting risk assessments, and responding to incidents, specifically within the context of the HIPAA Security Rule.
- Consulting: Provide security consulting by crafting controls related to confidentiality, integrity, and availability, and assess risks against these requirements.
- Compliance: Ensure compliance with cybersecurity regulatory mandates and internal policies.
- Standardization: Drive consistency and use of common security products, practices, and standards across the organization.
- Capability Adoption: Ensure the adoption of ISRM security capabilities across the business.
- Threat Intelligence: Deploy threat intelligence capabilities to monitor for new threats, vulnerabilities, and assess their potential impact.
- Risk Posture Assurance: Provide assurance leadership on the cybersecurity risk posture of J&J IM Patient Service Center capabilities, including design reviews, risk assessments, and consultation on remediation.
- Education and Training: Illuminate cybersecurity procedures and controls for internal partners awareness and understanding.
- Metrics Communication: Share valuable metrics with senior leadership, including visibility of security incidents, vulnerabilities, and issues.
- Business Planning: Participate in business planning to ensure information security and risk management capabilities are included.
Qualifications
Qualifications:
- Education: BA/BS in Computer Science, Engineering, or IT Security required; MS/advanced degree preferred.
- Experience: 8+ years of experience in Information Security, IT Risk Management, or IT with growing technical responsibilities required.
- Expertise: Shown capabilities in information security with a solid understanding of traditional and emerging threats, especially in protecting critical data required.
- HIPAA: Previous experience assessing and implementing HIPAA security rule controls is required.
- Communication: Superb communication and collaboration skills with the ability to network and influence at all levels is required.
- Collaboration: Experience working with virtual, global teams including diverse groups with multifaceted backgrounds and cultural experiences is highly preferred.
- Team Experience: Experience working as part of a high-performing team is helpful.
- Business Knowledge: Knowledge of key business processes preferred.
- Problem-Solving: Creative problem-solving skills and understanding of complex environments (data, application, middleware, network) preferred.
- Certifications: Security certifications such as CISSP, CCSP, CRISC, CISM, are preferred.
The anticipated base pay range for this position is $120,000- $207,000.
The Company maintains highly competitive, performance-based compensation programs. Under current guidelines, this position is eligible for an annual performance bonus in accordance with the terms of the applicable plan. The annual performance bonus is a cash bonus intended to provide an incentive to achieve annual targeted results by rewarding for individual and the corporation's performance over a calendar/performance year. Bonuses are awarded at the Company's discretion on an individual basis.
- Employees and/or eligible dependents may be eligible to participate in the following Company sponsored employee benefit programs: medical, dental, vision, life insurance, short- and long-term disability, business accident insurance, and group legal insurance.
- Employees may be eligible to participate in the Company's consolidated retirement plan (pension) and savings plan (401(k)).
- Employees are eligible for the following time off benefits:
- Vacation - up to 120 hours per calendar year
- Sick time - up to 40 hours per calendar year; for employees who reside in the State of Washington - up to 56 hours per calendar year
- Holiday pay, including Floating Holidays - up to 13 days per calendar year of Work, Personal and Family Time - up to 40 hours per calendar year
- Additional information can be found through the link below. https://www.careers.jnj.com/employee-benefits
Johnson & Johnson is an Affirmative Action and Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
For more information on how we support the whole health of our employees throughout their wellness, career and life journey, please visit www.careers.jnj.com.