Transforma esta função numa entrevista — um currículo e uma carta de apresentação criados à volta do que este empregador procura.
Johnson Controls is seeking an Information Security Engineer to join our Global Information Security team. You will design and implement robust security architectures and controls that protect our systems and data, while guiding secure technology deployments across the enterprise.
You will collaborate with cybersecurity, IT, and business units to assess security posture, ensure regulatory compliance (PCI-DSS, HIPAA, FISMA, SOX), and partner with stakeholders to drive secure outcomes through
At Johnson Controls, we’re seeking a skilledInformation Security Engineer to join our Global Information Security team. In this role, you’ll collaborate with cybersecurity, IT, and business teams to design and implement robust security architectures, standards, and controls that protect our systems and data. You’ll play a key role in ensuring compliance, assessing security posture, and guiding secure technology deployments across the enterprise.
Develop and implement enterprise-wide security reference architectures.
Ensure alignment with global security standards and policies.
Approve final designs and validate builds for compliance.
Follow the Security Posture Assessment process, which involves research, validation, and evaluation of all new initiatives, with phase gates reviews presented to all stakeholders during the process
Conduct security posture assessments for new initiatives.
Identify and mitigate risks in third-party solutions.
Ensure adherence to regulatory and internal security requirements.
Partner with service management and stakeholders to gather requirements.
Act as a trusted advisor to business units and IT teams.
Provide expert input on security standards, roadmaps, and infrastructure.
Create high-quality technical documentation, white papers, and presentations.
Communicate complex security concepts clearly to technical and non-technical audiences.
Stay current on emerging threats, vulnerabilities, and technologies.
Recommend improvements in network, identity, and infrastructure security.
3+ years of experience in information security, including deploying security solutions, security of application in corporate environment.
Strong understanding of attacker techniques, threat landscapes, vulnerability management, and security monitoring.
Broad technical expertise in:
Excellent communication skills—both written and verbal.
Ability to work independently and collaboratively in a global team.
High integrity and discretion in handling confidential matters.
Bachelor’s degree in Computer Science, Engineering, or a related field (or equivalent experience).
Familiarity with compliance frameworks (PCI-DSS, HIPAA, FISMA, SOX).
Overview of NIST standards and security architecture frameworks (e.g., SABSA, TOGAF).
Experience in security operations or incident analysis.
Certifications
Johnson Controls, a global leader in thermal management, mission-critical building systems, energy efficiency, and decarbonization, helps customers use energy more productively, reduce carbon emissions, and operate with the precision and resilience required in rapidly expanding industries such as data centers, healthcare, pharmaceuticals, advanced manufacturing, and higher education.
For more than 140 years, Johnson Controls has delivered performance where it really matters. Backed by advanced technology, lifecycle services and an industry-leading field organization, we elevate customer performance, turn goals into real-world results and help move society forward.
#LI-BB1
#LI-Hybrid