PRODUCT SECURITY SENIOR MANAGER
Descripción de la oferta de empleo
Remote work options may be considered on a case-by-case basis and if approved by the Company.
This may require up to 10% travel.
At Johnson & Johnson, we believe health is everything.
Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal.
Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity.
Learn more at https://www.
nj.
om/.
For more than 130 years, diversity, equity & inclusion (DEI) has been a part of our cultural fabric at Johnson & Johnson and woven into how we do business every day.
Rooted in Our Credo, the values of DEI fuel our pursuit to create a healthier, more equitable world.
Our diverse workforce and culture of belonging accelerate innovation to solve the world’s most pressing healthcare challenges.
We know that the success of our business – and our ability to deliver meaningful solutions – depends on how well we understand and meet the diverse needs of the communities we serve.
Which is why we foster a culture of inclusion and belonging where all perspectives, abilities and experiences are valued and our people can reach their potential.
At Johnson & Johnson, we all belong.
The Product Security Senior Manager will be responsible for implementation of J&J’s enterprise Product Security strategy and framework throughout Johnson & Johnson Surgical Vision (JJSV) medical device portfolio.
This includes identifying key strategy and goals, collaborating with internal organizations on existing process and policy enhancements, creating and communicating metrics to senior management, identifying communications plans and raising overall awareness of the capability.
Specific responsibilities include supporting JJSV throughout a new product’s development phases, review product security requirements and recommend security design solutions, help complete Quality documentation, threat modelling, penetration testing, software architecture review and design recommendations, code analysis and other security testing or work as needed.
Additionally, post market responsibilities for JJSV marketed devices include monitoring for new vulnerabilities, assisting with patching and remediation plans, as well as responding to all customer security questionnaires and reviewing security language within contractual agreements.
Drive adherence to J&J Product Security’s overarching framework.
Champion Product Security strategy and objectives within JJSV Partner with internal organizations to enhance existing processes and policies Create and present Product Security metrics to management Responsible and accountable to implement and enforce Product Security governance model for JJSV pre and post market medical devices.
Perform automated code scanning and coordinate formal security testing.
Respond to customer cybersecurity questionnaires and contractual language for all post-market medical devices.
Other MedTech cybersecurity related duties as needed Qualifications Required.
Bachelor’s degree or equivalent A minimum of 10 years of progressive experience in leadership roles within information technology or cybersecurity functions Threat modeling experience Data privacy experience, including GDPR and CCPA Understanding of HIPAA/HITRUST & ISO Understanding of penetration testing, vulnerability scanning, CVSS and/or other general security testing principles Ability to work autonomously and proactively seek out security opportunities within JJSV Knowledge of traditional and real-time operating systems (i.
.
QNX, Windows Embedded) hardening techniques Ability to create and deliver cybersecurity awareness campaigns and other communications Ability to translate technical security requirements into solutions Ability to provide secure coding recommendations Ability to lead large projects and proven ability to track to project plan timelines from a security perspective Ability to write technical security requirements for embedded systems and web platforms Creative problem-solving skills Customer focus (internal & external) Excellent communication and collaboration skills, able to network, interface and influence at all levels of the organization, cross sector, cross-functionally and globally Strong leadership skills Preferred.
Experience leading or participating in formal security audits (i.
.
HITRUST, SOC2, FedRAMP) Familiarity with FDA and/or other global regulatory cybersecurity guidance requirements and submission process Experience with web applications and server hardening (i.
.
AWS, Azure) including knowledge of OWASP Top 10 and blue teaming techniques Experience in cybersecurity pre-sales Software development experience CISSP or other security certification MS and/or advanced degree The anticipated base pay range for this position is $ to $.
California Bay Area - The anticipated base pay range for this position is $ to $.
The Company maintains highly competitive, performance-based compensation programs.
Under current guidelines, this position is eligible for an annual performance bonus in accordance with the terms of the applicable plan.
The annual performance bonus is a cash bonus intended to provide an incentive to achieve annual targeted results by rewarding for individual and the corporation’s performance over a calendar/performance year.
Bonuses are awarded at the Company’s discretion on an individual basis.
Employees and/or eligible dependents may be eligible to participate in the following Company sponsored employee benefit programs.
medical, dental, vision, life insurance, short- and long-term disability, business accident insurance, and group legal insurance.
Employees may be eligible to participate in the Company’s consolidated retirement plan (pension) and savings plan (401(k)).
Employees are eligible for the following time off benefits.
- Vacation – up to 120 hours per calendar year Sick time - up to 40 hours per calendar year; for employees who reside in the State of Washington – up to 56 hours per calendar year Holiday pay, including Floating Holidays – up to 13 days per calendar year of Work, Personal and Family Time - up to 40 hours per calendar year Additional information can be found through the link below.
https://www.
areers.
nj.
om/employee-benefits Johnson & Johnson is an Affirmative Action and Equal Opportunity Employer.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
Detalles de la oferta
- Sin especificar
- En toda España
- Sin especificar - Sin especificar
- 22/11/2024
- 20/02/2025
Requisitos del puesto completion of a master’s degree/mba or an equivalent qualification is required, coupled with practical work experience, preferably in hr tech, within roles such as customer success manager, account manager, or delivery manager... active participation in management meetings is essential......
Estamos buscando un asistente de atención médica senior para coordinar la prestación de atención médica... asistente de atención médica senior - coordinador de turnos - car home / asistencia domiciliaria - turnos de día y de noche - centro de atención continua y domiciliaria - cornwall reino unido reach......
Estamos buscando un asistente de atención médica senior para coordinar la prestación de atención médica... asistente de atención médica senior - coordinador de turnos - asistencia domiciliaria / asistencia domiciliaria - turnos de día y noche - centro de atención continua y domiciliaria - cornwall reino......
Stay up-to-date with the latest product developments, game features, and promotions to effectively communicate this information to vip players... gain an in-depth understanding of vip player preferences and proactively deliver personalized promotions, bonuses, and incentives to maximize player value......
Técnicos senior de radiología - reino unido - unidad de salud móvil de imágenes reach hr es una empresa especializada en la contratación de profesionales sanitarios... apoyo y colaboración en el proceso de reserva y asegurarse de que los sistemas de información del paciente se mantengan con información......
Descripción:empresa española de terapias alternativas y astrologia precisa incorporar una community manager para su proyecto en madrid... manejo de herramientas de monitorización en redes y otros(analitics, audiense, hootsuite, canva)edición de vídeo (final cut pro, movavi, etc)interés por lo alternativo......
Liu jo está buscando para su store en paseo de gracia, barcelona un (a) senior sales assistant... sus principales cometidos serán los siguientes: · transmitir al cliente pasión y conocimiento del producto; · desarrollar e impulsar las ventas; · recibir y acompañar a nuestra clientela de alta gama; ·......
Requisitos del puestocurrently, we are on the lookout for a visionary store manager who embodies the essence of our brand – someone who can seamlessly blend the art of salesmanship with the science of team motivation... we are the first luxury sports brand ever to surface the globe, and the name of the......
Confidencial cuenta con una posición como supply chain manager para optimizar la cadena de suministro para garantizar la eficiencia en la distribución de productos y la satisfacción del cliente... negociar con proveedores para obtener las mejores condiciones de compra... 000,00 € eur - 40......
Ciudad: madrid desde temporing buscamos perfiles para cubrir la posición de manager legal en una importante empresa de gestión inmobiliaria ubicada en la zona de chamartín en madrid... haber gestionado procedimientos judiciales con vistas a recuperar activos inmobiliarios... tramitación completa de procesos......