yoinka

Data Security Manager - Information Security & Risk Management

Johnson & Johnson

Raritan, New Jersey, United States of AmericaMidH-1B sponsor company
Sign in to applyVerified 2h ago
Location
Raritan, New Jersey, United States of America
Work model
On-Site
Level
Mid
H-1B history
2 approvals (FY2023)
Posted
Sep 3, 2026

Skills

Cybersecurity

About this role

At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at jnj.com As guided by Our Credo, Johnson & Johnson is responsible to our employees who work with us throughout the world.  We provide an inclusive work environment where each person is considered as an individual.  At Johnson & Johnson, we respect the diversity and dignity of our employees and recognize their merit. Job Function: Technology Enterprise Strategy & Security Job Sub Function: Multi-Family Technology Enterprise Strategy & Security Job Category: People Leader All Job Posting Locations: Raritan, New Jersey, United States of America Job Description: Johnson and Johnson is recruiting a Data Security Manager - Information Security & Risk Management (ISRM). This position may be based in J&J office in Raritan, NJ or remote in the U.S. with the capability to periodically travel into the Raritan, NJ office.

Key Responsibilities

Lead the enterprise Data Protection Program, including governance, operating processes, service oversight, metrics, reporting, and continuous improvement. Own Data Protection exception management processes, including USB, webmail, file-sharing, Trusted Computing, Secure Data Transfer and other approved service exceptions. Assess exception requests and coordinate risk reviews, approvals, remediation actions, and lifecycle management. Reduce exception volume through secure alternatives, enhanced controls, user education, process optimization, and automation. Partner with EUS, ISRM teams, Compliance, Privacy, Legal, HR, and business partners to design and implement risk-based data protection controls. Define, monitor, and report program performance metrics, exception trends, risk themes, and executive-level insights. Maintain data protection policies, standards, procedures, governance documentation, and accountability frameworks. Develop and implement data security strategies to safeguard critical information assets and support enterprise data governance initiatives. Lead initiatives to identify, classify, inventory, and protect critical information assets. Conduct assessments of data security controls, processes, and capabilities to identify gaps, risks, and improvement opportunities. Serve as a domain authority on emerging data security threats, technologies, and standard processes, providing recommendations for proactive risk mitigation. Lead data security awareness, communications, change control, and training programs to drive adoption of security capabilities. Support the implementation of new data security capabilities and collaborate across J&J teams to deliver a coordinated approach to data protection.

Qualifications

Education: A BA/BS degree or equivalent is required for this position. Graduate degree or equivalent experience preferred. Experience and Skills: Required: A minimum of 6 years of dynamic experience in roles within IT Security management and/or IT is preferred. A minimum of 2 years experience in one of more aspects of data security (governance, deployment of data security measures, data labeling, etc.). Advanced knowledge of information security processes and principles is preferred in explaining the business value of cybersecurity. Experience in assessing current security threats, mitigation measures and security vendors/technologies is required. Previous experience developing effective and strong partnerships along with relationship building skills with IT and business partners is required. Results Orientation – ability to aim to timelines is required. Superb

Listing verified 2h ago. Applications go through the company's official careers site.

← Back to Yoinka

Data Security Manager - Information Security & Risk Management at Johnson & Johnson, Raritan, New Jersey, United States of America | Yoinka