Job Closed

This listing is no longer active.

Cybersecurity Lead – MedTech R&D

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 10,001+H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

75 days ago

Salary

$94K - $151.8K / year

Seniority

Senior

Bachelor Degree5 yrs expEnglishAWSAzureCloudCyber SecurityTableau

Job Description

Cybersecurity Lead – MedTech R&D

Johnson & Johnson

• Provide early/proactive engagement with project teams to drive business understanding and execution of the security capabilities and services needed for innovative technology solutions; End to end support for large programs. • Provide tailored security guidance (based on risk and complexity) - Interpret & apply the IAPP requirements and standards for unique technology and business initiatives. • Drive cybersecurity adoption across R&D labs and sites (Electrophysiology) to secure IT/OT assets and enable safe & secure innovation. • Lead the cyber operational portfolio from identification > consulting remediation plan > completion partnering across ISRM, business, and technology teams. • Establish data analytics to provide security posture across the business units, functions, and sites. • Assist the Security Operations Center (SOC) with security incident investigation activities; work closely with business teams to support affected users and provide liaison with central investigation team. • Drive business understanding of critical cybersecurity regulations and ensuring solutions are compliant (NIST, NIS2, Safe Data, etc.). • Support the global deployment of security initiatives with awareness sessions, identify alternative ways of working to avoid business disruptions, and review exception requests • Drive and manage security gap assessments/remediation efforts and support integration activities for the R&D portfolio for key acquisitions.

Job Requirements

  • Bachelor’s degree in computer science, information technology, cybersecurity, business administration, or another rigorous discipline is required.
  • 5+ years of working in IT, OT, and/or Engineering with a security focus is required, including hands-on implementation level understanding of key security technologies and controls (e.g., access control, IDP/IDR, anti-malware, patch management, encryption technologies, forensics etc.)
  • Direct working and/or supporting experience for Research and Development functions is required.
  • Experience in leading/performing security assessments and providing security assurance across various levels of the enterprise architecture (data, application, host, middleware, network, Infrastructure) to ensure data protection
  • Solid understanding of current security threats, mitigation measures, and security vendors/technologies.
  • Experience with cloud security (e.g., AWS, Azure, Salesforce)
  • Experience with security standards (e.g., ISO27001, HiTrust, NIST, etc.) is required.
  • Certifications in cybersecurity (CISM, CISSP, ISA-62443), audit (CISA), or risk management (CRISC) are preferred.
  • Awareness of security trends in process, tooling, and threats
  • Good understanding and exposure to data visualization tools such as PowerBI, Tableau etc.
  • Big picture perspective and attention to detail focus to align strategic and tactical security aspects.
  • Ability to collaborate, network and influence all levels of the organization, cross sector, cross-function and global and establish oneself as an inspiring leader with expertise in space.
  • Excellent communication and collaboration skills, able to network, interface and influence at all levels of the organization, cross sector, cross-functionally and globally.
  • Experience leading and influencing security audits (e.g., SOC Type 2 reporting, PCI, ISO 27001) is preferred

Benefits

  • Subject to the terms of their respective plans, employees are eligible to participate in the Company’s consolidated retirement plan (pension) and savings plan (401(k)).
  • Subject to the terms of their respective policies and date of hire, employees are eligible for the following time off benefits: Vacation –120 hours per calendar year
  • Sick time - 40 hours per calendar year; for employees who reside in the State of Colorado –48 hours per calendar year; for employees who reside in the State of Washington –56 hours per calendar year
  • Holiday pay, including Floating Holidays –13 days per calendar year
  • Work, Personal and Family Time - up to 40 hours per calendar year
  • Parental Leave – 480 hours within one year of the birth/adoption/foster care of a child
  • Bereavement Leave – 240 hours for an immediate family member: 40 hours for an extended family member per calendar year
  • Caregiver Leave – 80 hours in a 52-week rolling period
  • Volunteer Leave – 32 hours per calendar year
  • Military Spouse Time-Off – 80 hours per calendar year

Related Categories

Related Job Pages

More Security Engineer Jobs

Aledade, Inc. logo

Senior Network Security Engineer II

Aledade, Inc.

With Primary Care. For Primary Care.

Full TimeRemoteTeam 501-1,000Since 2014H1B No Sponsor

• Lead the design, implementation, and maintenance of network security infrastructure • Build secure systems and manage engineering teams • Ensure compliance with security standards and alignment with company objectives • Support architecture, design, implementation, and operations of network and cloud infrastructure • Manage critical incidents and ensure reliable network operations including DDI, Firewall, VPN and load balancing • Provide technical leadership and coach junior members of the team

Washington
Job Closed
Allied Technology Services logo

Cloud Security Engineer

Allied Technology Services

This is an exciting opportunity to work on modern cloud security initiatives, protect enterprise-level infrastructure, and collaborate with global teams in a fast-paced and security-focused environment.

Role Description We are seeking a highly motivated and detail-oriented Cloud Security Engineer to help secure and strengthen our cloud infrastructure across multiple environments and platforms. This role is ideal for professionals passionate about cybersecurity, cloud architecture, risk mitigation, and implementing modern cloud security best practices. You will work closely with infrastructure, development, and IT teams to identify vulnerabilities, improve security posture, and ensure compliance with industry standards and cloud security frameworks. Key Responsibilities - Analyze, recommend, and implement security controls for cloud infrastructure - Strengthen security across cloud-based systems and services - Apply industry best practices and security standards in cloud environments - Review and validate network protocols, communication security, and existing security controls - Perform vulnerability assessments and identify security gaps across cloud infrastructure - Support remediation efforts for vulnerabilities, findings, and security risks - Implement secure configurations and hardening practices for cloud systems - Participate actively in cloud security initiatives and infrastructure projects - Evaluate and improve the organization's cloud security posture - Generate security reports, vulnerability assessments, and compliance documentation - Support external clients with cloud security recommendations and implementations Qualifications - Bachelor’s Degree in: Information Technology, Systems Engineering, Information Systems Administration, Related technical field - 3+ years of experience in: - Cloud Security - Cloud Infrastructure Administration - Cloud Platform Engineering - Strong knowledge of: - AWS, Azure, Google Cloud Platform (GCP) - Linux and Microsoft Operating Systems - Networking, Switching & Routing - Vulnerability Management - Security Hardening - Risk Analysis & Security Controls - Encryption Technologies - PCI, NIST, CIS Standards - Basic to intermediate programming knowledge - English proficiency: 80–95% Nice to Have - Cloud Security Certifications - AWS / Azure / GCP Certifications - Experience supporting enterprise cloud environments - Knowledge of DevSecOps practices - Experience with database security and infrastructure design Benefits - 100% Remote Contractor Position - US Holidays - 15 PTO Days - Annual Pluralsight Membership - Company-Provided Computer - Monthly Payments via Deel Company Description This is an exciting opportunity to work on modern cloud security initiatives, protect enterprise-level infrastructure, and collaborate with global teams in a fast-paced and security-focused environment.

Worldwide
Job Closed
Amcor logo

Senior Cybersecurity Engineer

Amcor

Producing responsible packaging for food, beverage, pharmaceutical, medical, home and personal-care, and other products.

Full TimeRemoteTeam 10,001+Since AmcorH1B Sponsor

• Ensure Amcor has the proper visibility, detection, and protection to secure the organization. • Provide strategic input on the IT security roadmap and delivery of our comprehensive security strategy. • Responsible for global information security design and integration to ensure technology implementations are configured securely and appropriately. • Implement, manage, and maintain our information security tools and technologies. • Work at the direction of IT Security Manager. • Key contributor in global IT security strategy including metrics, program improvements, and innovative ways to mitigate business risk while improving security. • Play a key role in the identification, assessment, prioritization and remediation processes of cyber security risks and vulnerabilities. • Participate in the construction of strategic roadmaps to harden systems and close vulnerabilities. • Drive policy improvements and own technical recommendations for policy adjustments. • Evaluate current or emerging technologies to ensure proper alignment with global security strategy. • Support response to security incidents which may include on-call and availability outside of standard business hours.

Poland
Packetlabs logo

Ethical Hacker

Packetlabs

Ready to strengthen your security posture?

Full TimeRemoteTeam 51-200Since 2011H1B No Sponsor

• Your primary role is to perform penetration testing of web applications, mobile applications, thick clients, and APIs. • Source code review and whitebox penetration testing to prove the impact of application flaws. • Reverse engineering of mobile and thick client applications. • You sometimes chain application flaws to other areas, such as cloud and on-prem AD infrastructure. • Opportunities for lateral movement into the infrastructure teams are limited and given at the manager's discretion. • Develop detailed reports on findings and remediations for impactful findings. • You will learn to debrief these findings at both a technical and executive level. • Perform SAST and DAST on enterprise, SaaS, and custom in-house applications. • Experience in using scanners and knowledge of validation and elimination of false positives. • A strong understanding of OWASP in Web, API, Mobile, and AI/LLM is necessary, but you will be asked to go beyond.

Texas