Cyber Governance & Policy Analyst

Antler Co

Warsaw (IN)

On-site

USD 79,000 - 142,000

Full time

5 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Travel up to 15% domestically

Job summary

Johnson & Johnson, a global leader in healthcare, seeks a Governance & Policy Analyst for DePuy Synthes. The role owns the cyber policy library, risk register, and governance reporting, partnering with IT, Legal, Privacy, Quality, and Procurement to strengthen risk-informed decisions.

Requires 4+ years in cybersecurity governance, policy development, and familiarity with NIST/ISO frameworks. Travel up to 15% domestically is expected.

Qualifications

  • Bachelor's degree in Information Technology, Cybersecurity, Information Systems, Risk Management, Business, or related discipline.
  • Master's degree in Cybersecurity, Information Systems, or Business Administration preferred.

Responsibilities

  • Own the cybersecurity policy and standards library — authoring, reviewing, and maintaining policies, standards, procedures, and guidelines.
  • Maintain and improve the cyber risk management framework and methodology, including risk taxonomy and scoring criteria.
  • Facilitate and document cyber risk assessments across applications, infrastructure, business processes, and change initiatives; capture outcomes in the enterprise risk register.
  • Administer the risk register as the single source of truth; ensure completeness, ownership, aging analysis, and escalation of risks.
  • Coordinate cybersecurity governance forums, including agenda development and action item follow‑through.
  • Develop and publish executive and operational reporting packages translating risk data into business impact narratives.

Skills

GRC experience
Policy drafting
Risk assessment
Stakeholder communication
Cybersecurity governance

Education

Bachelor's degree in IT/Cybersecurity/Info Systems/Risk Management/Business
Master's degree preferred

Tools

GRC platforms (ServiceNow IRM, Archer, OneTrust, AuditBoard)
Power BI
Tableau

Job description

Johnson & Johnson, a global leader in healthcare, seeks a Governance & Policy Analyst for DePuy Synthes. The role owns the cyber policy library, risk register, and governance reporting, partnering with IT, Legal, Privacy, Quality, and Procurement to strengthen risk-informed decisions.

Requires 4+ years in cybersecurity governance, policy development, and familiarity with NIST/ISO frameworks. Travel up to 15% domestically is expected.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Governance & Policy Analyst
Cyber Governance & Policy Analyst

Johnson & Johnson MedTech • Raynham (MA)

On-site
USD 79,000 - 142,000
Cyber Governance & Policy Strategist
Cyber Governance & Policy Strategist

Johnson & Johnson MedTech • New Brunswick (NJ)

On-site
USD 79,000 - 142,000
Cyber Governance & Policy Analyst
Cyber Governance & Policy Analyst

Johnson & Johnson MedTech • Warsaw (IN)

On-site
USD 79,000 - 142,000
Senior Cyber GRC Policy Analyst
Senior Cyber GRC Policy Analyst

Antler Co • Raynham (MA)

On-site
USD 79,000 - 142,000
Cyber GRC Policy Analyst: Risk, Policy & Reporting
Cyber GRC Policy Analyst: Risk, Policy & Reporting

Antler Co • Town of Florida (NY)

On-site
USD 79,000 - 142,000
Cyber GRC Policy & Risk Analyst
Cyber GRC Policy & Risk Analyst

Antler Co • New Brunswick (NJ)

On-site
USD 79,000 - 142,000
Travel up to 15% domestic travel
Cyber Governance & Policy Analyst
Cyber Governance & Policy Analyst

Johnson & Johnson MedTech • Town of Florida (NY)

On-site
USD 79,000 - 142,000
Cyber GRC Policy Analyst — Drive Risk & Compliance
Cyber GRC Policy Analyst — Drive Risk & Compliance

Johnson & Johnson MedTech • West Chester

On-site
USD 79,000 - 142,000
Cyber GRC Policy Strategist & Risk Lead
Cyber GRC Policy Strategist & Risk Lead

Johnson & Johnson MedTech • Raritan (NJ)

On-site
USD 79,000 - 142,000
Strategic Cyber GRC Analyst
Strategic Cyber GRC Analyst

6090-Johnson & Johnson Services Inc. Legal Entity • New Brunswick (NJ)

Hybrid
USD 79,000 - 142,000