Demo

Product Security Senior Manager

Johnson & Johnson
Irvine, CA Full Time
POSTED ON 1/16/2025
AVAILABLE BEFORE 4/11/2025

DescriptionJohnson & Johnson’s MedTech Product Security team is recruiting for an experienced Product Security Senior Manager role to be based in Milpitas or Irvine, CA. Remote work options may be considered on a case-by-case basis and if approved by the Company. This may require up to 10% travel.At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at https : / / www.jnj.com / .For more than 130 years, diversity, equity & inclusion (DEI) has been a part of our cultural fabric at Johnson & Johnson and woven into how we do business every day. Rooted in Our Credo, the values of DEI fuel our pursuit to create a healthier, more equitable world. Our diverse workforce and culture of belonging accelerate innovation to solve the world’s most pressing healthcare challenges.We know that the success of our business – and our ability to deliver meaningful solutions – depends on how well we understand and meet the diverse needs of the communities we serve. Which is why we foster a culture of inclusion and belonging where all perspectives, abilities and experiences are valued and our people can reach their potential.At Johnson & Johnson, we all belong.The Product Security Senior Manager will be responsible for implementation of J&J’s enterprise Product Security strategy and framework throughout Johnson & Johnson Surgical Vision (JJSV) medical device portfolio. This includes identifying key strategy and goals, collaborating with internal organizations on existing process and policy enhancements, creating and communicating metrics to senior management, identifying communications plans and raising overall awareness of the capability. Specific responsibilities include supporting JJSV throughout a new product’s development phases, review product security requirements and recommend security design solutions, help complete Quality documentation, threat modelling, penetration testing, software architecture review and design recommendations, code analysis and other security testing or work as needed. Additionally, post market responsibilities for JJSV marketed devices include monitoring for new vulnerabilities, assisting with patching and remediation plans, as well as responding to all customer security questionnaires and reviewing security language within contractual agreements.Drive adherence to J&J Product Security’s overarching framework : Champion Product Security strategy and objectives within JJSVPartner with internal organizations to enhance existing processes and policiesCreate and present Product Security metrics to managementResponsible and accountable to implement and enforce Product Security governance model for JJSV pre and post market medical devices.Perform automated code scanning and coordinate formal security testing.Respond to customer cybersecurity questionnaires and contractual language for all post-market medical devices.  Other MedTech cybersecurity related duties as neededQualificationsRequired : Bachelor’s degree or equivalentA minimum of 10 years of progressive experience in leadership roles within information technology or cybersecurity functionsThreat modeling experienceData privacy experience, including GDPR and CCPAUnderstanding of HIPAA / HITRUST & ISO 27001Understanding of penetration testing, vulnerability scanning, CVSS and / or other general security testing principlesAbility to work autonomously and proactively seek out security opportunities within JJSVKnowledge of traditional and real-time operating systems (i.e. QNX, Windows Embedded) hardening techniquesAbility to create and deliver cybersecurity awareness campaigns and other communicationsAbility to translate technical security requirements into solutionsAbility to provide secure coding recommendationsAbility to lead large projects and proven ability to track to project plan timelines from a security perspectiveAbility to write technical security requirements for embedded systems and web platformsCreative problem-solving skillsCustomer focus (internal & external)Excellent communication and collaboration skills, able to network, interface and influence at all levels of the organization, cross sector, cross-functionally and globallyStrong leadership skillsPreferred : Experience leading or participating in formal security audits (i.e. HITRUST, SOC2, FedRAMP)Familiarity with FDA and / or other global regulatory cybersecurity guidance requirements and submission processExperience with web applications and server hardening (i.e. AWS, Azure) including knowledge of OWASP Top 10 and blue teaming techniquesExperience in cybersecurity pre-salesSoftware development experienceCISSP or other security certificationMS and / or advanced degree The anticipated base pay range for this position is $120,000 to $207,000.California Bay Area - The anticipated base pay range for this position is $138,000 to $238,050.The Company maintains highly competitive, performance-based compensation programs. Under current guidelines, this position is eligible for an annual performance bonus in accordance with the terms of the applicable plan. The annual performance bonus is a cash bonus intended to provide an incentive to achieve annual targeted results by rewarding for individual and the corporation’s performance over a calendar / performance year. Bonuses are awarded at the Company’s discretion on an individual basis.Employees and / or eligible dependents may be eligible to participate in the following Company sponsored employee benefit programs : medical, dental, vision, life insurance, short- and long-term disability, business accident insurance, and group legal insurance.Employees may be eligible to participate in the Company’s consolidated retirement plan (pension) and savings plan (401(k)).Employees are eligible for the following time off benefits : Vacation – up to 120 hours per calendar yearSick time - up to 40 hours per calendar year; for employees who reside in the State of Washington – up to 56 hours per calendar yearHoliday pay, including Floating Holidays – up to 13 days per calendar year of Work, Personal and Family Time - up to 40 hours per calendar yearAdditional information can be found through the link below. https : / / www.careers.jnj.com / employee-benefitsJohnson & Johnson is an Affirmative Action and Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, or protected veteran status and will not be discriminated against on the basis of disability.Job Field : Solution ArchitectureOrganization : AMO Development, LLC (6242)

Salary : $138,000 - $238,050

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Product Security Senior Manager?

Sign up to receive alerts about other jobs on the Product Security Senior Manager career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$123,272 - $153,570
Income Estimation: 
$150,776 - $185,671
Income Estimation: 
$152,549 - $188,894
Income Estimation: 
$194,072 - $240,547
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$194,072 - $240,547
Income Estimation: 
$220,784 - $286,649
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Johnson & Johnson

Johnson & Johnson
Hired Organization Address Alaska, AK Full Time
Description: Johnson & Johnson is currently seeking an Area Vice President, Spine (West Region) to join our team. Region...
Johnson & Johnson
Hired Organization Address Wilmington, DE Full Time
Johnson & Johnson is recruiting for Sales Associate for Depuy located in Delaware Valley (Philadelphia, PA/ Camden, NJ, ...
Johnson & Johnson
Hired Organization Address Washington, DC Full Time
Description: Johnson & Johnson is recruiting for Account Executive (Advance Hemostasis and Healing) for Ethicon US LLC. ...
Johnson & Johnson
Hired Organization Address Oklahoma, OK Full Time
Job Description Job Description Description : As a Claims Assistant for a Third-Party Administrator (TPA), you will prov...

Not the job you're looking for? Here are some other Product Security Senior Manager jobs in the Irvine, CA area that may be a better fit.

Senior Platform Product Manager

Obsidian Security, Newport, CA

Senior Product Designer

Obsidian Security, Newport, CA

AI Assistant is available now!

Feel free to start your new journey!