drjobs MedTech Product Security Manager

MedTech Product Security Manager

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Irvine - USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

At Johnson & Johnsonwe believe health is everything. Our strength in healthcare innovation empowers us to build aworld where complex diseases are prevented treated and curedwhere treatments are smarter and less invasive andsolutions are our expertise in Innovative Medicine and MedTech we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow and profoundly impact health for more at

Job Function:

R&D Product Development

Job Sub Function:

R&D Software/Systems Engineering

Job Category:

Scientific/Technology

All Job Posting Locations:

Albuquerque New Mexico United States of America Albuquerque New Mexico United States of America Alexandria Virginia United States Atlanta Georgia United States Aurora Illinois United States Austin Texas United States Baltimore Maryland United States Baton Rouge Louisiana United States Birmingham Alabama United States Boise Idaho United States Boston Massachusetts United States of America Burlington Vermont United States Charlotte North Carolina United States Cleveland Ohio United States Columbia South Carolina United States Eugene Oregon United States Fayetteville Arkansas United States Flagstaff Arizona United States Irvine California United States of America Jackson Tennessee United States Las Vegas Nevada United States Louisville Kentucky United States Milpitas California United States of America Minneapolis Minnesota United States of America New York New York United States 8 more

Job Description:

We are seeking the best talent for a Product Security Manager to join our MedTech Product Security team. The role is based in Milpitas or Irvine CA. Remote work options may be considered on a case-by-case basis and if approved by the Company. This may require up to 10% travel.

The Product Security Manager will be responsible for implementation of J&Js enterprise Product Security strategy and framework throughout Johnson & Johnson Vision (JJV) medical device portfolio. This includes identifying key strategy and goals collaborating with internal organizations on existing process and policy enhancements creating and communicating metrics to management identifying communications plans and raising overall awareness of the capability.

Specific responsibilities include:

  • Supporting JJV throughout a new products development phases
  • Review product security requirements and recommend security design solutions
  • Help complete Quality documentation threat modelling penetration testing software architecture review and design recommendations code analysis and other security testing or work as needed.
  • Post market responsibilities for JJV marketed devices include monitoring for new vulnerabilities assisting with patching and remediation plans as well as responding to all customer security questionnaires and reviewing security language within contractual agreements.
  • Drive adherence to J&J Product Securitys overarching framework:
  • Champion Product Security strategy and objectives within JJV
  • Partner with internal organizations to enhance existing processes and policies
  • Create and present Product Security metrics to management
  • Responsible and accountable to implement and enforce Product Security governance model for JJV pre and post market medical devices.
  • Perform automated code scanning and coordinate formal security testing.
  • Respond to customer cybersecurity questionnaires and contractual language for all post-market medical devices.
  • Other MedTech cybersecurity related duties as needed

Qualifications

Required:

  • 8 years IT or cybersecurity experience
  • Bachelors degree or equivalent
  • A minimum of 8 years of progressive experience in leadership roles within information technology or cybersecurity functions
  • Threat modeling experience
  • Data privacy experience including GDPR and CCPA
  • Understanding of HIPAA/HITRUST & ISO 27001
  • Understanding of penetration testing vulnerability scanning CVSS and/or other general security testing principles
  • Ability to work autonomously and proactively seek out security opportunities within JJV
  • Knowledge of traditional and real-time operating systems (i.e. QNX Windows Embedded) hardening techniques
  • Ability to create and deliver cybersecurity awareness campaigns and other communications
  • Ability to translate technical security requirements into solutions
  • Ability to provide secure coding recommendations
  • Ability to lead large projects and proven ability to track to project plan timelines from a security perspective
  • Ability to write technical security requirements for embedded systems and web platforms
  • Creative problem-solving skills
  • Customer focus (internal & external)
  • Excellent communication and collaboration skills able to network interface and influence at all levels of the organization cross sector cross-functionally and globally
  • Strong leadership skills

Preferred:

  • Experience leading or participating in formal security audits (i.e. HITRUST SOC2 FedRAMP)
  • Familiarity with FDA and/or other global regulatory cybersecurity guidance requirements and submission process
  • Experience with web applications and server hardening (i.e. AWS Azure) including knowledge of OWASP Top 10 and blue teaming techniques
  • Experience in cybersecurity pre-sales
  • Software development experience
  • CISSP or other security certification
  • MS and/or advanced degree

Johnson & Johnson is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race color religion sex sexual orientation gender identity age national origin disability protected veteran status or other characteristics protected by federal state or local law. We actively seek qualified candidates who are protected veterans and individuals with disabilities as defined under VEVRAA and Section 503 of the Rehabilitation Act.

Johnson and Johnson is committed to providing an interview process that is inclusive of our applicants needs. If you are an individual with a disability and would like to request an accommodation please email the Employee Health Support Center () or contact AskGS to be directed to your accommodation resource.

#JNJTECH

The anticipated base pay range for this position is :

$114000 - $197800 (Bay Area); $100000 - $172500 (all other areas)

Additional Description for Pay Transparency:

The Company maintains highly competitive performance-based compensation programs. Under current guidelines this position is eligible for an annual performance bonus in accordance with the terms of the applicable plan. The annual performance bonus is a cash bonus intended to provide an incentive to achieve annual targeted results by rewarding for individual and the corporations performance over a calendar/performance year. Bonuses are awarded at the Companys discretion on an individual basis. Employees and/or eligible dependents may be eligible to participate in the following Company sponsored employee benefit programs: medical dental vision life insurance short- and long-term disability business accident insurance and group legal insurance. Employees may be eligible to participate in the Companys consolidated retirement plan (pension) and savings plan (401(k)). Employees are eligible for the following time off benefits: Vacation up to 120 hours per calendar year Sick time - up to 40 hours per calendar year; for employees who reside in the State of Washington up to 56 hours per calendar year Holiday pay including Floating Holidays up to 13 days per calendar year of Work Personal and Family Time - up to 40 hours per calendar year Additional information can be found through the link below. The compensation and benefits information set forth in this posting applies to candidates hired in the United States. Candidates hired outside the United States will be eligible for compensation and benefits in accordance with their local market.

Required Experience:

Manager

Employment Type

Full-Time

Company Industry

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.