A&D Cybersecurity Manager
Johnson & JohnsonAbout the role
At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at https://www.jnj.com
Job Function:
Technology Enterprise Strategy & SecurityJob Sub Function:
Security & ControlsJob Category:
Scientific/TechnologyAll Job Posting Locations:
Alexandria, Virginia, United States, Alexandria, Virginia, United States, Anchorage, Alaska, United States, Annapolis, Maryland, United States, Atlanta, Georgia, United States, Austin, Texas, United States, Bangor, Maine, United States, Bellingham, Washington, United States, Billings, Montana, United States, Birmingham, Alabama, United States, Boise, Idaho, United States, Boston, Massachusetts, United States of America, Burlington, Vermont, United States, Charleston, South Carolina, United States, Charleston, West Virginia, United States, Chattanooga, Tennessee, United States, Columbus, Ohio, United States, Concord, New Hampshire, United States, Denver, Colorado, United States, Detroit, Michigan, United States, Dover, Delaware, United States, Fargo, North Dakota, United States, Fayetteville, Arkansas, United States, Hartford, Connecticut, United States, Honolulu, Hawaii, United States {+ 25 more}Job Description:
At Johnson & Johnson, the A&D Security manager role is a cornerstone of our acquisition and divestiture strategy, driving the implementation of cutting-edge security measures to protect our business. This position supports cybersecurity assessments to pinpoint vulnerabilities in potential targets and partners with cross-functional teams to embed robust security controls. By aligning with Johnson & Johnson’s security framework, this role safeguards critical data and assets throughout the A&D process, directly fueling the success of our strategic goals.
This position is eligible to work anywhere in the United States, but is required to work a hybrid schedule and report to a J&J office.
Key Responsibilities:
- Implementation: Execute security strategies that support A&D objectives, driving effective delivery of initiatives across the lifecycle of an integration or divesture.
- Manage Daily Operations: Lead all aspects of workflows to maintain consistent ties with security standards and business objectives
- Identify Risks and Impacts: Detect vulnerabilities and assess their financial implications to inform remediation plans and deal terms.
- Conduct Assessments: Assist in initial evaluations and cybersecurity due diligence on A&D targets to identify risks early
- Secure our acquisitions/divestures: Implement and maintain monitoring and reporting processes and technologies (hands on) to ensure A&D activities risks are managed
Qualifications
Education:
- BA/BS or equivalent work experience, Prefered in Computer Sciences / Information Security
Experience and Skills:
Required:
- Cybersecurity Expertise: Proficiency in frameworks, regulations, and standard methodologies, including NIST CSF, ISO 27001, and GDPR.
- Threat Management: In-depth knowledge of cybersecurity controls, current threats, and effective mitigation techniques.
- Analytical Acumen: Solid skills in analyzing complex data and solving problems to support informed, strategic decisions.
- Communication Mastery: Exceptional written and verbal skills to collaborate effectively with diverse partners
- Technical Proficiency: Hands-on experience with risk assessment tools and security monitoring technologies with 3 years of demonstrated ability
- Vendor Oversight: Validated ability to lead vendor relationships and conduct third-party risk assessments.
- Adaptability: Agility in responding to evolving cybersecurity technologies and threats.
Preferred:
- Possession of relevant certifications such as CRISC, CISSP, CCSP, ISSAP, CISM, or CASP+.
- Hands-on experience with cybersecurity technologies, including firewalls, intrusion detection/prevention systems (IDS/IPS), and encryption solutions.
- Experience in the cybersecurity aspects of mergers and acquisitions, including due diligence, integration planning, and compliance with data privacy regulations suc
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s