An application made for this job — a tailored resume and cover letter that speak straight to the posting.
Johnson & Johnson is seeking a seasoned Professional, Compliance Lead in Cybersecurity to drive governance, risk, and regulatory compliance across DePuy Synthes. You will own policy frameworks, risk assessments, and executive reporting, interfacing with Internal Audit, Legal, Privacy, and regulators.
The role demands navigating complex standards and improving cyber risk maturity. Location flexibility includes multiple U.S.
At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at jnj.com .
As guided by Our Credo, Johnson & Johnson is responsible to our employees who work with us throughout the world. We provide an inclusive work environment where each person is considered as an individual. At Johnson & Johnson, we respect the diversity and dignity of our employees and recognize their merit.
Technology Enterprise Strategy & Security
Security & Controls
Scientific/Technology
New Brunswick, New Jersey, United States of America
DePuy Synthes is recruiting for a Professional, Compliance Lead , located in Raritan, New Jersey or West Chester, Pennsylvania or Palm Beach Gardens, Florida or Raynham, Massachusetts or Warsaw, Indiana.
Join our change journey at J&J-help shape what's next Step into a high-impact career opportunity with real visibilit y
The Professional , Compliance Lead is a seasoned individual contributor within the Cybersecurity function, GRC, IT Controls & Cyber Culture sub-function, accountable for leading the cybersecurity compliance and governance agenda across DePuy Synthes. This role owns the policy and standards framework, sets the enterprise cyber risk methodology , leads risk assessments and register governance, and drives the reporting cadence that informs executive and Board-level decision-making. The Compliance Lead directs third-party risk oversight, defines the metrics and KRI model that measures program health, and serves as the primary liaison to Internal Audit, Legal, Privacy, Quality, and external regulators. Applying advanced knowledge of GRC frameworks and regulatory obligations, this role establishes best-in-class policies, procedures, and plans for the area.
Required: 6 years of progressive experience in cybersecu