Johnson & Johnson

Lead Product Security Architect

Johnson & Johnson$157K — $271K *
Healthcare
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years in software development or systems engineering with a focus on device security
  • 5+ years of hands-on technical leadership in cybersecurity
  • Experience navigating regulations, particularly FDA guidelines for cybersecurity
  • Proficient in software development for safety-critical products in regulated industries
  • Demonstrated ability to lead in a matrix environment and influence across teams
  • Strong communication skills for effective collaboration with diverse teams
  • Understanding of robotic technology and relevant surgical paradigms is a plus

Responsibilities

  • Own the cybersecurity architecture for the OTTAVA surgical robot
  • Act as the R&D voice on security, aligning with internal and external stakeholders
  • Make security-related decisions as the technical authority
  • Design and implement technical cybersecurity controls in software and networks
  • Lead cyber reviews and documentation with internal teams
  • Translate security risks into impacts on patient safety and regulatory compliance
  • Assess cybersecurity needs in relation to patient safety and regulatory expectations

Benefits

  • 401(k) and pension plans participation
  • 120 hours of vacation per year
  • Sick time up to 56 hours per year depending on location
  • 13 paid holidays annually
  • Up to 40 hours personal and family time per year
  • 480 hours parental leave within one year of a new child
  • 240 hours bereavement leave for immediate family
  • 32 hours of volunteer leave annually
  • 80 hours military spouse time-off per year
Full Job Description
Job Function:
R&D Product Development

Job Sub Function:
R&D Software/Systems Engineering

Job Category:
Scientific/Technology

All Job Posting Locations:
Santa Clara, California, United States of America

Job Description:

About Surgery:

Fueled by innovation at the intersection of biology and technology, we're developing the next generation of smarter, less invasive, more personalized treatments.

Are you passionate about improving and expanding the possibilities of surgery? Ready to join a team that's reimagining how we heal? Our Surgery team will give you the chance to deliver surgical technologies and solutions to surgeons and healthcare professionals around the world. Your contributions will help effectively treat some of the world's most prevalent conditions such as obesity, cardiovascular disease and cancer. Patients are waiting.

Your unique talents will help patients on their journey to wellness. Learn more at https://www.jnj.com/medtech

We are searching for the best talent for our Lead Product Security Architect position. This position will be located in Santa Clara, CA

Purpose:

The Lead Product Security Architect will own the cybersecurity architecture, system-level view, and technical implementation of the OTTAVA surgical robot, with potential to impact millions of patients and expand the capabilities of physicians globally.

This role is not focused on enterprise IT, or cloud security operations. This individual will be a key technical and strategic leader on one of the most exciting programs in J&J and in healthcare in general! The candidate must bring a strong blend of security awareness, technical ability, and regulatory awareness. They must also balance depth in cybersecurity with a passionate focus on understanding and meeting the needs of clinicians and operating room staff. This role reports to the Sr. Director, Robotics Software.

You will be responsible for:
  • Own the end-to-end cybersecurity architecture for the OTTAVA product, a FDA-regulated device, maintaining a system-level view of security and ensuring security-by-design from firmware and embedded software to external interfaces
  • Be the singular R&D voice on security, clearly communicating and alinging approaches with internal (quality, information security, regulatory) and external (FDA) stakeholders
  • Act as the technical authority for cybersecurity decisions and tardeoffs
  • Design and oversee implementation of technical cybersecurity controls, primarily based in software and network infrastructure
  • Lead R&D cyber reviews and documentation (threat modeling, risk assessment) in partnership with internal collaborators
  • Translate security risks into patient safety, regulatory, and business impact for non-security stakeholders
  • Take a risk-based approach when assessing the relationship between cybersecurity needs, patient safety, regulatory expectations, and quality system requirements


Experience and Skills:

Required:
  • 10+ years professional experience in software development or systems engineering with a focus on device security
  • 5+ years experience with hands-on technical leadership in cybersecurity
  • Demonstrated ability to deliver results on time within constraints by creatively adapting processes and using resources is required
  • Experience with regulatory guidance (preferably FDA) on cybersecurity implementation and documentation, pre- and post-market surveillance, and risk-assessment is required
  • Proficiency in software development for complex safety critical products, ideally within medical device or other highly regulated industries (i.e. defense, autonomous vehicles, aerospace, etc.)
  • Demonstrated success in partnering and influencing across a matrix environment is required.
  • Proven leadership designing system-level security architecture for embedded devices is required
  • Strong communication and interpersonal skills, with the ability to collaborate effectively with diverse teams and partners is required
  • Ability to travel up to 10%, international and domestic, is required

Preferred:
  • Demonstrated hands-on experience with FDA Class II or III medical devices is VERY strongly preferred
  • Experience with IEC 62304 is VERY strongly preferred.
  • Previous experience with post-market vulnerability monitoring is preferred
  • Experience reaching "across the aisle" to successfully partner with and problem solve alongside technical, support, and business partners in other parts of the company is preferred
  • Experience with FDA audits and cloud certifications (e.g., SOC2) is preferred
  • Understanding of robotic technology and general robotic surgery paradigms is preferred
  • Experience with a global development team
  • Previous experience successfully supporting or launching medical device products is preferred


#LI-Hybrid

#RADSW

#LI-KB3

Required Skills:

Preferred Skills:
Cybersecurity, Cyber Security Governance, Cyber Threat Modeling, IEC 62304, Network Security, Penetration Testing, Penetration Testing Software, Product Security, Security by Design, Software Architectural Design, Software Architectures, Software Design Architecture, Software Engineering, Software Systems Architecture, Threat Modeling

The anticipated base pay range for this position is :
$157,000.00 - $271,400.00

Additional Description for Pay Transparency:
Subject to the terms of their respective plans, employees are eligible to participate in the Company's consolidated retirement plan (pension) and savings plan (401(k)).

This position is eligible to participate in the Company's long-term incentive program.

Subject to the terms of their respective policies and date of hire, employees are eligible for the following time off benefits:

Vacation -120 hours per calendar year

Sick time - 40 hours per calendar year; for employees who reside in the State of Colorado -48 hours per calendar year; for employees who reside in the State of Washington -56 hours per calendar year

Holiday pay, including Floating Holidays -13 days per calendar year

Work, Personal and Family Time - up to 40 hours per calendar year

Parental Leave - 480 hours within one year of the birth/adoption/foster care of a child

Bereavement Leave - 240 hours for an immediate family member: 40 hours for an extended family member per calendar year

Caregiver Leave - 80 hours in a 52-week rolling period10 days

Volunteer Leave - 32 hours per calendar year

Military Spouse Time-Off - 80 hours per calendar year

About Johnson & Johnson

Scio Diamond creates single-crystal Type IIa diamonds for the jewelry market and for industrial applications. It employs a patent-protected chemical vapor deposition (CVD) process in a precisely controlled laboratory setting to produce diamonds. It was founded in 2009 and is headquartered in Greenville, South Carolina.

Johnson & Johnson Careers

Joining Johnson & Johnson provides an unparalleled opportunity to be a part of a global team of professionals dedicated to blending care, science, and innovation to profoundly change the trajectory of health for humanity.

Work You’ll Do

At Johnson & Johnson, you will engage in work that matters. Join our community of professionals in health care to drive significant and impactful changes across the globe. Our team at Johnson & Johnson leads with science and heart in sectors from pharmaceuticals to medical devices and consumer health products.

Transform Health Care

Leverage Johnson & Johnson’s culture of innovation to transform health care and improve the lives of people around the world. Our collaborative environment encourages leadership and growth, allowing you to pioneer new strategies for health care solutions with a diverse team of experts.

Innovative Work

Engage in groundbreaking work that enhances how care is delivered on a global scale. Johnson & Johnson’s commitment to innovative health solutions results in dynamic career paths filled with opportunities for professional growth and development.

Be Part of a Great Team

Our team at Johnson & Johnson thrives on collaboration and diversity. You will work alongside over 130,000 employees globally who are committed to making a lasting impact. With a culture that values diversity training and leadership, you are supported in both personal and professional growth.

Future-Proof Your Career

Johnson & Johnson offers a myriad of job opportunities and employment benefits designed to help you meet your career and personal goals. Our employees enjoy comprehensive benefits, including health insurance, retirement plans, and family-friendly policies that pave the way for a fulfilling career and life balance.

Explore Job Opportunities and Internships

Whether you’re looking to start your career or take it to the next level, Johnson & Johnson offers positions ranging from internships to leadership roles across various sectors. Enhance your skills through hands-on experience and our extensive networking and mentorship programs.

Johnson & Johnson Leadership and Development

Our commitment to leadership and continuous learning is at the core of our employment philosophy. Every position offers chances to lead, learn, and innovate. We provide extensive training programs and development courses that prepare you for the future of health care.

Stay Connected

Join Our Team

Search open positions that match your skills and interests. We are constantly hiring and looking for curious, driven, and compassionate team players.

SEARCH JOHNSON & JOHNSON JOBS

Keep Up to Date

Stay informed with career tips, insider perspectives, and industry-leading insights you can put to use today—all from the people who work here.

READ CAREERS BLOG

Job Alert Emails

Customize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. Discover the exciting and rewarding career opportunities that await at Johnson & Johnson. Join Johnson & Johnson today to be a part of a team that values innovation, leadership, and diversity, and see how far your ambition can take you.
Learn more about Johnson & Johnson
Size
141,700 employees
Market Cap
$462.7 billion
Industry
Net Income
$14.7 billion
Founded
1886
5 Year Trend
+5.5%
Revenue
$82.5 billion
NASDAQ

Similar Jobs

More Jobs at Johnson & Johnson

More Healthcare Jobs

Find similar Lead Product Security Architect jobs: