Senior Manager Third Party Cyber Risk Assessment

Johnson and Johnson
Raritan, NJ

At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at

Job Function:

Technology Enterprise Strategy & Security

Job Sub Function:

Security & Controls

Job Category:

People Leader

All Job Posting Locations:

Alabama (Any City), Alabama (Any City), Alaska (Any City), Arizona (Any City), Arkansas (Any City), California (Any City), Colorado (Any City), Connecticut (Any City), Delaware (Any City), Florida (Any City), Hawaii (Any City), Idaho (Any City), Illinois (Any City), Indiana (Any City), Kansas (Any City), Kentucky (Any City), Louisiana (Any City), Maine (Any City), Maryland (Any City), Massachusetts (Any City), Michigan (Any City), Minnesota (Any City), Mississippi (Any City), Missouri (Any City), Montana (Any City) {+ 24 more}

Job Description:

Johnson & Johnson is recruiting for a Senior Manager, Third-Party Cyber Risk Assessment to join the Information Security & Risk Management (ISRM) team. This role can be based anywhere in the United States.

Are you ready to use your technical knowledge to change the trajectory of health for humanity? We have a position for you!

Caring for the world, one person at a time inspired and united the people of Johnson & Johnson for over 130 years. We embrace research and science -- bringing innovative ideas, products, and services to advance the health and well-being of people.

At Johnson & Johnson, we believe good health is the foundation of vibrant lives, thriving communities and forward progress. That’s why for more than 130 years, we have aimed to keep people well at every age and every stage of life. Today, as the world’s largest and most broadly-based healthcare company, we are committed to using our reach and size for good. We strive to improve access and affordability, create healthier communities, and put a healthy mind, body and environment within reach of everyone, everywhere. Every day, our more than 130,000 employees across the world are blending heart, science and ingenuity to profoundly change the trajectory of health for humanity.

Thriving on a diverse company culture, celebrating the uniqueness of our employees, and committed to inclusion. Proud to be an equal opportunity employer!

As an integral member of the ISRM Risk Assessment Center of Excellence team, you will own the identification and assessment of cyber risks within the Third-Party Risk Assessment (TPRA) service. In this role, you will work with multiple senior security team members as well as senior Information Technology leaders.

Key Responsibilities:

  • Lead the company’s operations for cybersecurity Third-Party Risk Assessment (TPRA) and collaborate with key stakeholders on defining the TPRA strategy.
  • Drive critical initiatives and lead a team of technical third-party cyber risk assessment professionals.
  • Perform and lead third-party risk assessments, risk rankings, and collaboration on remediation strategies as needed.
  • Drive automation and process improvements as identified and through relevant projects and/or operations.
  • Implement a coordinated approach to third-party risk assessment by collaborating with the risk management and cybersecurity teams.
  • Communicate cybersecurity third-party risk assessment results to senior leaders and provide input on remediation plans.
  • Enhance third-party cyber risk assessment processes and define metrics including KPIs, trend analysis, and reporting.
  • Offer consulting support to the larger cybersecurity team on third-party risk assessment understanding and remediation.
  • Lead and develop the team, ensuring ongoing learning and support special projects as needed.

Qualifications

Education:

  • A bachelor’s degree in Computer Science, Engineering or Information Security/Cybersecurity or equivalent degree is required.
  • An advanced degree is preferred.
  • Security certifications such as CRISC, CISSP, CISM, CTPRA, CTPRM, etc. are preferred.

Experience and Skills:

Required:

  • 8+ years of Information Security/IT risk assessment/management experience with growing responsibilities.
  • 5+ years of direct people management experience.
  • 5+ years of direct third-party cybersecurity risk assessment/management experience, including application of third-party risk assessment/management concepts and internal controls.
  • 5+ years running and/or using a GRC tool to support security risk objectives.
  • Proficiency in conducting and leading third-party risk assessments, including data classification, risk scoring, and mitigation planning.
  • Ability to translate technical findings into business impact for key partners.
  • Strong analytical and problem-solving skills.
  • Strong interpersonal skills to build and maintain relationships with internal partners.

Preferred:

  • Foundational knowledge of regulatory requirements (e.g., SOX404, Privacy, HIPAA, GxP, cyber regulations) is preferred.
  • Experience managing/assessing third-party risk in a large, dynamic, multinational organization.
  • Experience in identifying key security risks, security controls, and providing consulting services to customers throughout the third-party vendor lifecycle.
  • Experience with security standards and control frameworks (e.g. FAIR, HITRUST, ISO27001, NIST, SOC 2, etc.).
  • Demonstrable record of effectively collaborating with virtual, global teams, including diverse groups of people with varied backgrounds and cultural experiences.

#JNJTech

#LI-Remote

Johnson & Johnson is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, protected veteran status or other characteristics protected by federal, state or local law. We actively seek qualified candidates who are protected veterans and individuals with disabilities as defined under VEVRAA and Section 503 of the Rehabilitation Act.

Johnson & Johnson is committed to providing an interview process that is inclusive of our applicants’ needs. If you are an individual with a disability and would like to request an accommodation, please contact us via or contact AskGS to be directed to your accommodation resource.

The anticipated base pay range for this position is :

$120,000-$207,000

Additional Description for Pay Transparency:

Subject to the terms of their respective plans, employees and/or eligible dependents are eligible to participate in the following Company sponsored employee benefit programs: medical, dental, vision, life insurance, short- and long-term disability, business accident insurance, and group legal insurance. Subject to the terms of their respective plans, employees are eligible to participate in the Company’s consolidated retirement plan (pension) and savings plan (401(k)). Subject to the terms of their respective policies and date of hire, Employees are eligible for the following time off benefits: Vacation –120 hours per calendar year Sick time - 40 hours per calendar year; for employees who reside in the State of Washington –56 hours per calendar year Holiday pay, including Floating Holidays –13 days per calendar year Work, Personal and Family Time - up to 40 hours per calendar year Parental Leave – 480 hours within one year of the birth/adoption/foster care of a child Condolence Leave – 30 days for an immediate family member: 5 days for an extended family member Caregiver Leave – 10 days Volunteer Leave – 4 days Military Spouse Time-Off – 80 hours Additional information can be found through the link below.
Posted 2025-09-27

Recommended Jobs

RN Medicine Specialty - FS

eTeam Inc
Somerset, NJ

Job Title: RN Medicine/Nephrology Location: Oklahoma City, OK Weekly Gross: $2,442 (includes $1,218 in stipends) Hourly Rate: $67.83 Duration: 13 weeks Shift: 12-hour shifts, 3…

View Details
Posted 2025-09-08

Customer Service Representative $23 - $25 per hour

Miller Staffing
Dayton, NJ

Job Description Job Description Customer Service Representative job opportunity available in the Dayton / South Brunswick, NJ 08810 market Bilingual English & Spanish is desired Temporary t…

View Details
Posted 2025-09-19

Speech Language Pathologist

NJ Expanding Capabilities Cent
Little Ferry, NJ

Job Description Job Description About us: The New Jersey Expanding Capabilities Center (NJECC) is a progressive day habilitation program, servicing adults 21+ with developmental disabilities…

View Details
Posted 2025-08-18

Drive your future forward, Become a Professional truck Driver

H&H Recruiting
Newark, NJ

Job Description Job Description Tired of the 9-to-5 grind? Ready to earn BIG while seeing the country? Join one of America's most essential and rewarding industries-TRUCKING. Why Choose Truc…

View Details
Posted 2025-08-05

Bartender

Sammy D's Bar, Wine & Spirits
Old Bridge, NJ

Job Description Job Description Responsibilities Prepare alcohol or non-alcohol beverages for bar and restaurant patrons Interact with customers, take orders and serve snacks and drinks …

View Details
Posted 2025-08-06

Facility Technician

INTERACTION 24 LLC
Vineland, NJ

Job Description Job Description Benefits: Dental insurance Health insurance Vision insurance Job title: Utility/Maintenance Technician Location: Vineland NJ (onsite) Shift: M…

View Details
Posted 2025-09-20

SLEEP TECHNOLOGIST

CoperUniversity Health Care
Voorhees, NJ

About us AtCooper University Health Care, our commitment to providing extraordinary health care begins with our team. Our extraordinary professionals are continuously discovering clinical innovati…

View Details
Posted 2025-08-06

SAP EWM Consultant

Trilyon, Inc.
Raritan, NJ

Job Description For over 16 years, Trilyon, Inc. has been a leader in global workforce solutions, specializing in Cloud Technology, AI/ML, Software Development, Technical Writing, and Digit…

View Details
Posted 2025-09-24

Toddler/Preschool Teacher

MOUNT PHOENIX INC
Plainfield, NJ

Job Description Job Description Benefits: Competitive salary Employee discounts Free uniforms Paid time off Profit sharing Training & development KIDDIE ACADEMY OF WATCHUNG S…

View Details
Posted 2025-09-06

Substitute Principal

Bright Harbor Healthcare
Bayville, NJ

Job Description Job Description Ocean Academy, in Bayville, NJ, is a small therapeutic school that offers educational services to students that need a more structured, nurturing environment to re…

View Details
Posted 2025-07-24