Lead Cybersecurity Analyst
Johnson & Johnson
- Location
- Alajuela, Costa Rica
- Work model
- On-Site
- Level
- Senior
- H-1B history
- 2 approvals (FY2023)
- Posted
- Aug 28, 2026
Skills
About this role
At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at jnj.com . As guided by Our Credo, Johnson & Johnson is responsible to our employees who work with us throughout the world. We provide an inclusive work environment where each person is considered as an individual. At Johnson & Johnson, we respect the diversity and dignity of our employees and recognize their merit. Job Function: Technology Enterprise Strategy & Security Job Sub Function: Security & Controls Job Category: Scientific/Technology All Job Posting Locations: Alajuela, Costa Rica Job Description: Johnson & Johnson is hiring for a Lead Cybersecurity Analyst to join our team located in Coyol, Alajuela, Costa Rica.
Position
Overview This role will focus on Supply Chain cybersecurity for Circulatory Restoration and other business functions as needed, partnering closely with Information Technology, Supply Chain & Operations, and ISRM partners to strengthen the cybersecurity posture of critical manufacturing, distribution, logistics, and operational technology environments. This role will bring a strong foundation in cybersecurity operations, risk management, and security governance, combined with the ability to lead across global, matrixed teams. This individual will drive the identification, assessment, prioritization, and remediation of cybersecurity risks that impact Supply Chain operations while delivering strategic security initiatives, regulatory alignment, and operational resilience. As a trusted cybersecurity partner, you will lead security-by-design practices, drive cyber resilience efforts, and execute risk-based protection strategies across enterprise, cloud, application, and operational technology (OT) environments supporting Supply Chain. Essential Job Functions Lead cybersecurity risk assessments across Supply Chain applications, infrastructure, cloud environments, and operational technology (OT) assets. Drive the identification, prioritization, and remediation of cybersecurity vulnerabilities and control gaps impacting Supply Chain operations. Partner with business and technology teams to embed security-by-design principles throughout Supply Chain project lifecycles. Deliver cybersecurity metrics, reports, and dashboards that measure security posture, risk trends, and remediation progress. Coordinate with Security Operations Center (SOC) teams on incident investigation, containment, and remediation activities impacting Supply Chain environments. Execute vulnerability management activities, including remediation tracking, risk-based prioritization, and stakeholder follow-through. Lead third-party cybersecurity risk reviews and supplier security assessments relevant to Supply Chain operations. Interpret and apply cybersecurity policies, standards, and regulatory requirements across Supply Chain business initiatives. Drive audit readiness activities, including evidence collection, remediation planning, and stakeholder communications. Advance cybersecurity awareness and shared responsibility through targeted training, communications, and engagement initiatives. Drive deployment and adoption of enterprise security capabilities and controls across Supply Chain environments. Partner with cross-functional teams to improve cybersecurity resilience through process optimization and automation. Deliver cloud security and application security initiatives across AWS, Azure, and SaaS platforms supporting Supply Chain.
Requirements
Bachelor's degree in Cybersecurity, Information Technology, Computer Science,