Senior Cloud Security Engineer
Company: Johnson & Johnson
Location: Edison
Posted on: July 4, 2025
|
|
Job Description:
At Johnson & Johnson, we believe health is everything. Our
strength in healthcare innovation empowers us to build a world
where complex diseases are prevented, treated, and cured, where
treatments are smarter and less invasive, and solutions are
personal. Through our expertise in Innovative Medicine and MedTech,
we are uniquely positioned to innovate across the full spectrum of
healthcare solutions today to deliver the breakthroughs of
tomorrow, and profoundly impact health for humanity. Learn more at
https://www.jnj.com Job Function: Technology Enterprise Strategy &
Security Job Sub Function: Solution Architecture Job Category:
Scientific/Technology All Job Posting Locations: Albuquerque, New
Mexico, United States of America, Albuquerque, New Mexico, United
States of America, Atlanta, Georgia, United States, Austin, Texas,
United States, Baltimore, Maryland, United States, Billings,
Montana, United States, Birmingham, Alabama, United States, Boise,
Idaho, United States, Burlington, Vermont, United States,
Charleston, West Virginia, United States, Charlotte, North
Carolina, United States, Chicago, Illinois, United States,
Columbia, Maryland, United States, Columbus, Ohio, United States,
Concord, New Hampshire, United States, Danvers, Massachusetts,
United States of America, Denver, Colorado, United States, Des
Moines, Iowa, United States, Detroit, Michigan, United States,
Dover, Delaware, United States, Fargo, North Dakota, United States,
Hartford, Connecticut, United States, Indianapolis, Indiana, United
States, Irvine, California, United States of America, Jackson,
Mississippi, United States { 22 more} Job Description: We are
seeking the best talent for a Senior Cloud Security Engineer to
join our MedTech Product Security team. The role can be based in
Raritan, NJ or Danvers, MA. Remote work options may be considered
on a case-by-case basis and if approved by the Company . Are you
passionate about security and interested in joining a community of
collaborative colleagues working in a Patient First! culture? If
that’s you, we have an immediate opportunity for a Senior Cloud
Security Engineer to join the newly formed Product Security team to
help ensure security is implemented by design for this
top-performing medical device company. This is an exciting
opportunity to impact development initiatives that will shape
future product development and industry standards. You will own the
Product Security process that includes both pre-market and
post-market processes engineering teams leverage throughout the
product development lifecycle. If you are eager to leverage your
security risk and compliance skills to make a difference and
directly impact patient lives, this could be perfect for you.
Primary Duties and Responsibilities Being at the office in Danvers
MA for a minimum of 3 days per week (for candidates within
commutable distance to site). Partner with engineering teams
(cloud, console) to drive successful adherence to Abiomed’s product
security policies, processes, program objectives. Create, update,
and improve product security processes. Act as an SME on cyber
security matters and provide guidance to development teams.
Advocate for proactive inclusion of cyber security input into all
phases of the product life cycle, process improvements, strategic
product road map planning. Deliver documentation for pre-market
product development activities including security plans, threat
models, security requirements, SBOM, and risk management
documentation. Drive and monitor post-market vulnerability
management activities, with adherence to strict timelines. Perform
security risk assessment on Cloud infrastructure and applications.
Collaborate with the development team to integrate security
measures into the CI/CD pipeline and the DevSecOps processes.
Continuous improvement of Defender Score. Support compliance
certification activities, such as SOC2, FedRAMP, ISO 27001, etc.
Identify, research, evaluate, and integrate new compliance
requirements, industry standards, and best practices into the
product security programs. Maintain relationships with Abiomed’s
Information Sharing and Analysis Organizations. Guide teams to make
decisions that balance business needs with medical device security
objectives. Work across organizational boundaries and exhibit
empathy with customers, both internal and external. Perform other
related duties and responsibilities, as assigned. Qualifications
Required: Bachelor’s degree 5 years industry experience in
Information Security. Experience working in a Cloud Scrum/Agile
Azure DevOps environment. Familiarity with some or all of these
tools: Snyk, Veracode, Wiz, JIRA, Confluence. Experience with
Containerization technologies such as Docker and Kubernetes.
Working knowledge of regulatory standards and compliance frameworks
(e.g., NIST Cybersecurity Framework, ISO27001, SOC2, HIPAA, GDPR).
Experience with security risk management techniques. Demonstrated
organizational skills, attention to detail, the ability to handle
multiple assignments simultaneously in a timely manner and be able
to meet assigned deadlines. Committed to working with a sense of
urgency and embracing new challenges. Strong communication and
interpersonal skills. Preferred: Experience working in an
FDA-regulated environment. Johnson & Johnson is an Equal
Opportunity Employer. All qualified applicants will receive
consideration for employment without regard to race, color,
religion, sex, sexual orientation, gender identity, age, national
origin, disability, protected veteran status or other
characteristics protected by federal, state or local law. We
actively seek qualified candidates who are protected veterans and
individuals with disabilities as defined under VEVRAA and Section
503 of the Rehabilitation Act. Johnson and Johnson is committed to
providing an interview process that is inclusive of our applicants’
needs. If you are an individual with a disability and would like to
request an accommodation, please email the Employee Health Support
Center (ra-employeehealthsup@its.jnj.com) or contact AskGS to be
directed to your accommodation resource. The anticipated base pay
range for this position is: $100,000 - $172,500 Additional
Description for Pay Transparency: The Company maintains highly
competitive, performance-based compensation programs. Under current
guidelines, this position is eligible for an annual performance
bonus in accordance with the terms of the applicable plan. The
annual performance bonus is a cash bonus intended to provide an
incentive to achieve annual targeted results by rewarding for
individual and the corporation’s performance over a
calendar/performance year. Bonuses are awarded at the Company’s
discretion on an individual basis. Employees and/or eligible
dependents may be eligible to participate in the following Company
sponsored employee benefit programs: medical, dental, vision, life
insurance, short- and long-term disability, business accident
insurance, and group legal insurance. Employees may be eligible to
participate in the Company’s consolidated retirement plan (pension)
and savings plan (401(k)). Employees are eligible for the following
time off benefits: Vacation – up to 120 hours per calendar year
Sick time - up to 40 hours per calendar year; for employees who
reside in the State of Washington – up to 56 hours per calendar
year Holiday pay, including Floating Holidays – up to 13 days per
calendar year of Work, Personal and Family Time - up to 40 hours
per calendar year Additional information can be found through the
link below. http://www.careers.jnj.com/employee-benefits The
compensation and benefits information set forth in this posting
applies to candidates hired in the United States. Candidates hired
outside the United States will be eligible for compensation and
benefits in accordance with their local market.
Keywords: Johnson & Johnson, Levittown , Senior Cloud Security Engineer, IT / Software / Systems , Edison, New York