Manager Cybersecurity - Supply Chain

Johnson & Johnson

4.2

(92)

Multiple Locations

Why you should apply for a job to Johnson & Johnson:

  • Ranked as one of the Best Companies for Women in 2020
  • 4.2/5 in overall job satisfaction
  • 4.2/5 in supportive management
  • 71% say women are treated fairly and equally to men
  • 88% would recommend this company to other women
  • 85% say the CEO supports gender diversity
  • Ratings are based on anonymous reviews by Fairygodboss members.
  • Global parental leave for all new parents (maternal, paternal, adoptive or surrogacy-assisted).
  • Global exercise reimbursement.
  • Two weeks off (one of them fully paid) for volunteer work.
  • #R-011533

    Position summary

    personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at https://https://www.jnj.com

    Job Function:
    Technology Enterprise Strategy & Security
    Job Sub Function:
    Multi-Family Technology Enterprise Strategy & Security
    Job Category:
    People Leader
    All Job Posting Locations:
    Anasco, Puerto Rico, United States of America, Jacksonville, Florida, United States of America, Raritan, New Jersey, United States of America
    Job Description:

    Johnson & Johnson is currently seeking a Manager for Vision Supply Chain business units' part of Information Security & Risk Management (ISRM) organization. This position can be based in Jacksonville, Florida; Raritan, New Jersey; Limerick, Ireland; Anasco, Puerto Rico, or any J&J MedTech site in North America.

    The requisition ID for candidates in Ireland is: R-012220

    This candidate will have a diverse background with strong business acumen, technology, and security expertise. He/she will be a strategic thinker who leads with impact inclusively, driving intentional change proactively, and be driven to keep up with industry trends in cybersecurity. This role will embed directly with our J&J Technology and MedTech Supply Chain teams providing the security posture and the end-to-end security portfolio/capability roadmap to improve, identify, and remediate cyber security vulnerabilities.

    You will work across ISRM demonstrating authentic leadership, driving results, and showing dedication to our Credo. Your scope includes global cyber security responsibility for Vision internal Manufacturing & Distribution sites (IT/OT), external contract manufacture sites, and Application Security inclusive of Sarbanes-Oxley.

    Responsibilities:

    • Provide early/proactive engagement with project teams to drive business understanding and execution of the security capabilities and services needed for the project; End to end support for large programs.

    • Drive the OT capability and drive Cyber Security Risk Index (CSRI) security adoption across sites to secure IT/OT assets and enable safe & secure innovation.

    • Provide tailored security guidance (based on risk and complexity) - Interpret & apply the IAPP requirements and standards for unique IT/OT (Operational Technology) initiatives and innovative or OT Specific technologies.

    • Lead the cyber operational portfolio from identification > consulting remediation plan > completion partnering across ISRM, business, and technology teams.

    • Establish data analytics to provide security posture across business platforms, functions, and sites.

    • Proactively promotes the importance of cybersecurity across the sector and sites.

    • Assist the Security Operations Center (SOC) with security incident investigation activities; work closely with business teams to support affected users and provide liaison with central investigation team.

    • Drive business understanding of critical cybersecurity regulations and ensuring solutions are compliant (NIST, NIS2, Safe Data, etc.).

    • Support the global deployment of security initiatives with awareness sessions, identify alternative ways of working to avoid business disruptions, and review exception requests

    • Provide audit support as the liaison between corporate audit functions from pre-work to consulting remediation plans.

    Qualifications:

    • 6+ years of related experience in leadership and execution roles within Cybersecurity or Risk Management with background in Supply Chain required.

    • Bachelor's degree in computer science, information technology, business administration, or another rigorous discipline is required. MBA preferred.

    • 5+ years of hands-on experience in delivering technology; and cybersecurity design and capabilities required.

    • Certifications in cybersecurity (CISM, CISSP, ISA-62443), audit (CISA), manufacturing or risk management (CRISC) are preferred.

    • Excellent communication and collaboration skills, able to network, interface and influence at all levels of the organization, cross-functionally and globally.

    • Strategic mindset to develop capability roadmaps that will enable proactive reliability through data & automation.

    • Experience in working/securing various levels of enterprise architecture (data, application, host, middleware, network, Infrastructure).

    • Solid understanding of current security threats, mitigation measures, and security vendors/technologies.

    • Strong understanding of security data protection and capabilities in a manufacturing and/or distribution site is highly preferred.

    • Direct working and/or supporting experience of Supply Chain applications and Sarbanes-Oxley compliance is required**.**

    • Understanding of IEC 62443, NIST 800-53 and 800-82 required.

    • Leading diverse team members with varying cybersecurity experience and proficient in resource allocation and planning to meet business needs.

    • Big picture perspective and attention to detail focus to align strategic and tactical security aspects.

    • Ability to collaborate, network and influence all levels of the organization, cross sector, cross-function and global and establish oneself as an inspiring leader with expertise in space.

    Johnson & Johnson is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, protected veteran status or other characteristics protected by federal, state or local law. We actively seek qualified candidates who are protected veterans and individuals with disabilities as defined under VEVRAA and Section 503 of the Rehabilitation Act.

    Johnson and Johnson is committed to providing an interview process that is inclusive of our applicants' needs. If you are an individual with a disability and would like to request an accommodation, please email the Employee Health Support Center ([email protected]) or contact AskGS to be directed to your accommodation resource.

    #JNJTech

    #LI-Hybrid

    Why you should apply for a job to Johnson & Johnson:

  • Ranked as one of the Best Companies for Women in 2020
  • 4.2/5 in overall job satisfaction
  • 4.2/5 in supportive management
  • 71% say women are treated fairly and equally to men
  • 88% would recommend this company to other women
  • 85% say the CEO supports gender diversity
  • Ratings are based on anonymous reviews by Fairygodboss members.
  • Global parental leave for all new parents (maternal, paternal, adoptive or surrogacy-assisted).
  • Global exercise reimbursement.
  • Two weeks off (one of them fully paid) for volunteer work.