Senior Manager overseeing cybersecurity strategies in the MedTech Supply Chain for APAC region at Johnson & Johnson. Focus on enhancing security posture and compliance for manufacturing and distribution sites.
Responsibilities
Champion a Secure-by-Design approach with stakeholders to embed security capabilities and services within business initiatives.
Perform cybersecurity risk assessments of IT and OT assets within the manufacturing and distribution sites.
Drive the OT cybersecurity capability adoption across sites to secure IT and OT assets and enable safe & secure innovation.
Provide tailored security guidance (based on risk and complexity) by interpreting and applying the internal cybersecurity policy requirements and standards for innovative IT and OT initiatives.
Partner with security, business, and technology teams to identify, assist with the creation of mitigation and remediation plans, and track the closure of cybersecurity risks.
Provide regular cybersecurity posture updates to business, function, site leadership and regional teams.
Create site-specific cybersecurity roadmaps to provide input into the cybersecurity business planning process and improve the cybersecurity posture of the sites.
Promote the importance of cybersecurity across the region and sites.
Assist the Security Operations Center (SOC) with security incident investigation activities; work closely with business teams to support affected users and be the liaison with central investigation teams.
Drive business understanding of critical cybersecurity regulations and ensuring solutions are compliant (CPC, NIST, NIS2, Safe Data, Zero Trust, etc.).
Support the global deployment of security initiatives with awareness sessions, identify alternative ways of working to avoid business disruptions, and review exception requests.
Provide audit support as the liaison between corporate audit functions from pre-work to consulting remediation plans.
Interpret gaps identified by the Third-Party Risk Management team and collaborate with business and technology stakeholders to ensure vendors remediate the gaps identified.
Enhance Application Security used within the region by interpreting internal security and regulatory requirements such as Sarbanes–Oxley (SOX), Payment Card Industry (PCI), Health Insurance Portability and Accountability Act (HIPAA), European Union Network and Information Security 2 (NIS2), China's Cybersecurity Law (CSL), etc.
Requirements
8+ years of related experience in leadership and execution roles within Cybersecurity or Risk Management
Bachelor’s degree in computer science, information technology, business administration, or another rigorous discipline is required
MBA preferred
6+ years of hands-on experience in delivering technology; and cybersecurity design and capabilities required
Direct working and/or supporting experience of Supply Chain applications and China Cybersecurity Law compliance is required
Understanding of IEC 62443, NIST 800-53, and 800-82 required
Ability to independently complete tasks accurately and thoroughly is required
Strong understanding of security data protection and capabilities in a manufacturing and/or distribution site is required
Excellent communication and collaboration skills, able to network, interface and influence at all levels of the organization, cross-functionally and globally, establishing oneself as an inspiring leader with expertise in space
Certifications in cybersecurity (CISM, CISSP, GICSP, ISA-62443), audit (CISA), manufacturing, or risk management (CRISC) are preferred.
Strategic mindset to develop capability roadmaps that will enable proactive reliability through data & automation.
Benefits
Health insurance
Competitive salary
Professional development opportunities
Job title
Senior Manager, Supply Chain Cybersecurity – IT and OT
Security Supervisor providing comprehensive safety services across Nord Anglia International School campus. Leading security team to ensure operational and Health and Safety compliance while mitigating risks.
Security Officer ensuring safety and compliance at WarHorse Gaming in Lincoln, NE. Monitoring premises, responding to incidents, and assisting guests and team members.
Security Supervisor overseeing loss prevention and security operations at WarHorse Gaming Lincoln casino. Ensuring a safe environment for guests and team members while upholding regulatory requirements.
Consultor de Segurança do Trabalho na Votorantim Cimentos consolidando medidas de segurança e gestão de EPIs. Gestão de processos e compliance em segurança de trabalho com foco em excelência.
Coordination role for Health and Safety in Underground Mine at Atlantic Nickel in Itagibá/BA. Focus on strategies for safety and health systems in underground operations.
Entry - Level Software Security Engineer at Tektronix focusing on secure product development and automation scripting. Collaborating with engineers to maintain cybersecurity best practices and standards.
Senior Cybersecurity Engineer at GM Financial designing scalable security capabilities to mitigate threats. Collaborating across teams and leveraging automation for enhanced security measures.
Senior Security Implementation Consultant responsible for implementing security controls in HPC environments. Working with teams on PKI, PAM, IAM, and infrastructure security solutions.
Lead Security Architect at Synchrony focusing on Zero Trust networking across various environments. Partnering with teams to design and implement secure connectivity and policies.
Enterprise Account Specialist engaging with key clients to design customized solutions within sales. Conducting market research and driving contract renewals for mid - to - large accounts.