Job Closed

This listing is no longer active.

Cybersecurity Lead – MedTech R&D

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 10,001+Since 1886H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

10 days ago

Salary

$94K - $151.8K / year

Seniority

Senior

Bachelor Degree5 yrs expEnglishAWSAzureCloudCyber SecurityTableau

Job Description

Cybersecurity Lead – MedTech R&D

Johnson & Johnson

• Provide early/proactive engagement with project teams to drive business understanding and execution of the security capabilities and services needed for innovative technology solutions; End to end support for large programs. • Provide tailored security guidance (based on risk and complexity) - Interpret & apply the IAPP requirements and standards for unique technology and business initiatives. • Drive cybersecurity adoption across R&D labs and sites (Electrophysiology) to secure IT/OT assets and enable safe & secure innovation. • Lead the cyber operational portfolio from identification > consulting remediation plan > completion partnering across ISRM, business, and technology teams. • Establish data analytics to provide security posture across the business units, functions, and sites. • Assist the Security Operations Center (SOC) with security incident investigation activities; work closely with business teams to support affected users and provide liaison with central investigation team. • Drive business understanding of critical cybersecurity regulations and ensuring solutions are compliant (NIST, NIS2, Safe Data, etc.). • Support the global deployment of security initiatives with awareness sessions, identify alternative ways of working to avoid business disruptions, and review exception requests • Drive and manage security gap assessments/remediation efforts and support integration activities for the R&D portfolio for key acquisitions.

Job Requirements

  • Bachelor’s degree in computer science, information technology, cybersecurity, business administration, or another rigorous discipline is required.
  • 5+ years of working in IT, OT, and/or Engineering with a security focus is required, including hands-on implementation level understanding of key security technologies and controls (e.g., access control, IDP/IDR, anti-malware, patch management, encryption technologies, forensics etc.)
  • Direct working and/or supporting experience for Research and Development functions is required.
  • Experience in leading/performing security assessments and providing security assurance across various levels of the enterprise architecture (data, application, host, middleware, network, Infrastructure) to ensure data protection
  • Solid understanding of current security threats, mitigation measures, and security vendors/technologies.
  • Experience with cloud security (e.g., AWS, Azure, Salesforce)
  • Experience with security standards (e.g., ISO27001, HiTrust, NIST, etc.) is required.
  • Certifications in cybersecurity (CISM, CISSP, ISA-62443), audit (CISA), or risk management (CRISC) are preferred.
  • Awareness of security trends in process, tooling, and threats
  • Good understanding and exposure to data visualization tools such as PowerBI, Tableau etc.
  • Big picture perspective and attention to detail focus to align strategic and tactical security aspects.
  • Ability to collaborate, network and influence all levels of the organization, cross sector, cross-function and global and establish oneself as an inspiring leader with expertise in space.
  • Excellent communication and collaboration skills, able to network, interface and influence at all levels of the organization, cross sector, cross-functionally and globally.
  • Experience leading and influencing security audits (e.g., SOC Type 2 reporting, PCI, ISO 27001) is preferred

Benefits

  • Subject to the terms of their respective plans, employees are eligible to participate in the Company’s consolidated retirement plan (pension) and savings plan (401(k)).
  • Subject to the terms of their respective policies and date of hire, employees are eligible for the following time off benefits: Vacation –120 hours per calendar year
  • Sick time - 40 hours per calendar year; for employees who reside in the State of Colorado –48 hours per calendar year; for employees who reside in the State of Washington –56 hours per calendar year
  • Holiday pay, including Floating Holidays –13 days per calendar year
  • Work, Personal and Family Time - up to 40 hours per calendar year
  • Parental Leave – 480 hours within one year of the birth/adoption/foster care of a child
  • Bereavement Leave – 240 hours for an immediate family member: 40 hours for an extended family member per calendar year
  • Caregiver Leave – 80 hours in a 52-week rolling period
  • Volunteer Leave – 32 hours per calendar year
  • Military Spouse Time-Off – 80 hours per calendar year

Related Categories

Related Job Pages

More Security Engineer Jobs

Aledade, Inc. logo

Senior Network Security Engineer II

Aledade, Inc.

With Primary Care. For Primary Care.

Full TimeRemoteTeam 501-1,000Since 2014H1B No Sponsor

• Lead the design, implementation, and maintenance of network security infrastructure • Build secure systems and manage engineering teams • Ensure compliance with security standards and alignment with company objectives • Support architecture, design, implementation, and operations of network and cloud infrastructure • Manage critical incidents and ensure reliable network operations including DDI, Firewall, VPN and load balancing • Provide technical leadership and coach junior members of the team

Washington
Allied Technology Services logo

Cloud Security Engineer

Allied Technology Services

This is an exciting opportunity to work on modern cloud security initiatives, protect enterprise-level infrastructure, and collaborate with global teams in a fast-paced and security-focused environment.

Role Description We are seeking a highly motivated and detail-oriented Cloud Security Engineer to help secure and strengthen our cloud infrastructure across multiple environments and platforms. This role is ideal for professionals passionate about cybersecurity, cloud architecture, risk mitigation, and implementing modern cloud security best practices. You will work closely with infrastructure, development, and IT teams to identify vulnerabilities, improve security posture, and ensure compliance with industry standards and cloud security frameworks. Key Responsibilities - Analyze, recommend, and implement security controls for cloud infrastructure - Strengthen security across cloud-based systems and services - Apply industry best practices and security standards in cloud environments - Review and validate network protocols, communication security, and existing security controls - Perform vulnerability assessments and identify security gaps across cloud infrastructure - Support remediation efforts for vulnerabilities, findings, and security risks - Implement secure configurations and hardening practices for cloud systems - Participate actively in cloud security initiatives and infrastructure projects - Evaluate and improve the organization's cloud security posture - Generate security reports, vulnerability assessments, and compliance documentation - Support external clients with cloud security recommendations and implementations Qualifications - Bachelor’s Degree in: Information Technology, Systems Engineering, Information Systems Administration, Related technical field - 3+ years of experience in: - Cloud Security - Cloud Infrastructure Administration - Cloud Platform Engineering - Strong knowledge of: - AWS, Azure, Google Cloud Platform (GCP) - Linux and Microsoft Operating Systems - Networking, Switching & Routing - Vulnerability Management - Security Hardening - Risk Analysis & Security Controls - Encryption Technologies - PCI, NIST, CIS Standards - Basic to intermediate programming knowledge - English proficiency: 80–95% Nice to Have - Cloud Security Certifications - AWS / Azure / GCP Certifications - Experience supporting enterprise cloud environments - Knowledge of DevSecOps practices - Experience with database security and infrastructure design Benefits - 100% Remote Contractor Position - US Holidays - 15 PTO Days - Annual Pluralsight Membership - Company-Provided Computer - Monthly Payments via Deel Company Description This is an exciting opportunity to work on modern cloud security initiatives, protect enterprise-level infrastructure, and collaborate with global teams in a fast-paced and security-focused environment.

Worldwide
Packetlabs logo

Ethical Hacker

Packetlabs

Ready to strengthen your security posture?

Full TimeRemoteTeam 51-200Since 2011H1B No Sponsor

• Your primary role is to perform penetration testing of web applications, mobile applications, thick clients, and APIs. • Source code review and whitebox penetration testing to prove the impact of application flaws. • Reverse engineering of mobile and thick client applications. • You sometimes chain application flaws to other areas, such as cloud and on-prem AD infrastructure. • Opportunities for lateral movement into the infrastructure teams are limited and given at the manager's discretion. • Develop detailed reports on findings and remediations for impactful findings. • You will learn to debrief these findings at both a technical and executive level. • Perform SAST and DAST on enterprise, SaaS, and custom in-house applications. • Experience in using scanners and knowledge of validation and elimination of false positives. • A strong understanding of OWASP in Web, API, Mobile, and AI/LLM is necessary, but you will be asked to go beyond.

Texas
Excellus BlueCross BlueShield logo

IT Cloud Engineer Security III

Excellus BlueCross BlueShield

UPSTARS – продуктова IT-компанія, з якою злітають і люди, і бренди. Наш основний фокус – технологічні рішення та B2B-послуги для міжнародних клієнтів.

Full TimeRemoteTeam 2-10H1B No Sponsor

Role Description The IT Cloud Engineer - Security provides the vision, strategy, functionality, and technology solutions for creating and maintaining security systems and solutions for both public and private cloud infrastructure-based solutions. This position collaborates with the Information Technology teams to lead the organization toward the deployment of technologies which focus on the trust, risk, and security management of the company environment. - Enforces and integrates security solutions, tools, and appropriate controls to align to security policies, standards, and procedures. - Stays current with leading security technologies, standards, and best practices as well as cyber threat landscape and evolving mitigation approaches and techniques. - Acts as a high-level escalation tier for operational support in assigned technical areas. - Conducts proof-of-concept testing in a lab environment. - Creates, updates, and maintains supporting documentation for technology standards. - Designs and deploys security solutions to support and ensure alignment with business requirements. - Works with technology vendors and technical subject matter experts (SME) to produce corporate standards with regards to assigned technology areas. - Collaborates and/or leads engineering solutions, integrating multiple systems and/or technologies. - Consistently demonstrates high standards of integrity by supporting the Lifetime Healthcare Companies’ mission and values. - Maintains high regard for member privacy in accordance with the corporate privacy policies and procedures. - Regular and reliable attendance is expected and required. - Performs other functions as assigned by management. Qualifications - Level I: Four (4) years of related experience. - Associates degree in Computer Science, Information Technology, or related field. In lieu of degree, three (3) years of related work experience required. Bachelor’s degree preferred. - Intermediate knowledge of security, compliance, and audit policies/procedures. - Basic experience with research, design, and implementation in assigned technologies. - Basic infrastructure operations and infrastructure project delivery experience essential. - Basic scripting and automation experience. - Advanced communication skills. - Intermediate understanding of cloud computing infrastructure and concepts. - Intermediate knowledge of securing cloud and/or on-premises systems. - Intermediate ability to engineer and integrate new security designs. - Demonstrates intermediate knowledge of a minimum of two (2) concepts and/or tools listed below: - Encryption, PKI, Network and application security, and related firewalls (Palo Alto Networks, Imperva, Azure, AWS, etc.) - Identity management (AD, Entra ID, conditional access, MFA, SSO, etc.) - Virus detection and endpoint security (Defender preferred) - Vulnerability scanner and pen testing tools (e.g., Rapid 7, Nessus, Nexpose, Metasploit, Appscan, Burp suite, Ida Pro etc.) - IDS/IPS and related tools - Comprehensive Cloud security platform (Palo Alto Prisma) - Security logging and monitoring (SIEM e.g., ArcSight, Splunk, SolarWinds LEM, Azure Sentinel, AWS Guard Duty, etc.) - Common web application security vulnerabilities (e.g., OWASP) - Application security - Security architecture principles/concepts (i.e., Zero Trust) Requirements - Level II (in addition to Level I responsibilities): - Acts as a primary engineer for assigned technology areas maintaining highly performant and optimized infrastructure environment. - Researches technologies and performs analysis that significantly contributes to budget and expenditures for assigned technology areas. - Collaborates and participates in the development and execution of enterprise strategy in the assigned technology area. - Assists in the RFI/RFP process. - Level III (in addition to Level II responsibilities): - Research and recommend solution designs. - Establishes business justifications for purchases made within assigned technology areas. - Significant contributor to automation workflows and focuses on automation for job-related tasks. - Performs system analysis and capacity planning of security assets. - Assists with mentoring of Level I and II Engineers. - Level IV (in addition to Level III responsibilities): - Acts as trusted advisor to the management team. - Emphasizes technology cost optimization when designing new solutions. - Leads business critical projects efforts for IT infrastructure. - Leads internal strategic efforts, collaborates, and mentors peers. Benefits - Participation in group health and/or dental insurance. - Retirement plan. - Wellness program. - Paid time away from work. - Paid holidays. Compensation Range(s) - Level I - Min 79,068 Max 142,322 - Level II - Min 87,766 Max 157,978 - Level III - Min 98,297 Max 176,935 - Level IV - Min 110,093 Max 198,168 Physical Requirements - Ability to travel across the Health Plan service region for meetings and/or trainings as needed. - Ability to work in a home office for continuous periods of time for business continuity. - Ability to provide on-call rotation support.

United States
$98.3K - $176.9K / year