Johnson & Johnson

Principal, Security Architect

Johnson & Johnson$102K — $204K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, Information Security, Engineering, or related technical field required; Master's preferred.
  • 8+ years of experience in information security with a focus on security architecture and controls.
  • Hands-on experience in vulnerability and exposure management including assessment and remediation.
  • Strong knowledge of network security, firewalls, and zero-trust architecture.
  • Experience in designing endpoint protection and security controls such as EDR/XDR.
  • Familiarity with application and data security principles, including secure SDLC.
  • Experience with industry frameworks like NIST CSF, ISO 27001, and CIS Controls.

Responsibilities

  • Lead development of Secure and Resilient by Design architectures across various environments.
  • Conduct security architecture reviews and perform risk assessments on solutions.
  • Drive the implementation of the enterprise's Zero Trust strategy.
  • Design network segmentation architectures to enhance asset protection.
  • Define strategies for vulnerability management and remediation prioritization.
  • Develop security architectures that enhance business continuity capabilities.
  • Produce architecture standards and technical documentation for security initiatives.

Benefits

  • Eligible for pension and retirement savings plan (401k).
  • Generous vacation policy of 120 hours per calendar year.
  • Parental leave of 480 hours for new parents within one year of a child’s birth/adoption.
  • Volunteer leave program offering 32 hours annually for community service.
  • Broad sick leave policy with 40 to 56 hours based on location.
Full Job Description
Job Function:
Technology Enterprise Strategy & Security

Job Sub Function:
Security & Controls

Job Category:
Scientific/Technology

All Job Posting Locations:
New Brunswick, New Jersey, United States of America, Palm Beach Gardens, Florida, United States of America, Raritan, New Jersey, United States of America, Raynham, Massachusetts, United States of America, Warsaw, Indiana, United States of America, West Chester, Pennsylvania, United States of America

Job Description:

DePuy Synthes is recruiting for a Principal, Security Architect, located in the United States.

The Security Architect designs, evaluates, and strengthens the security architecture that protects DePuy Synthes' technology assets, data, and operational environments. Sitting within the Technology Enterprise Strategy & Security organization, this role serves as a technical authority on security controls-assessing system and network configurations, identifying vulnerabilities and exposures, performing root-cause analysis, and contributing to the design, development, and implementation of countermeasures and security tooling across the enterprise.

This role is responsible for advancing the organization's Zero Trust, Secure by Design, and Resilient by Design strategy, ensuring security and resilience are embedded into every technology platform, architecture decision, and transformation initiative.

Key Responsibilities

  • Lead the development of Secure by Design, Resilient by Design, and Zero Trust architectures across cloud, network, endpoint, identity, application, data, and OT environments.


  • Conduct security architecture reviews, threat modeling, and risk assessments for new and existing solutions.


  • Drive the enterprise Zero Trust strategy, including identity, segmentation, least privilege, and continuous verification capabilities.


  • Design network segmentation and micro-segmentation architectures to protect critical assets and reduce lateral movement.


  • Define vulnerability and exposure management strategies, including risk-based prioritization and remediation.


  • Develop resilient security architectures that strengthen containment, recovery, and business continuity capabilities.


  • Design endpoint security controls, hardening standards, device compliance frameworks, and EDR/XDR integrations.


  • Establish secure architectures for cloud, AI, data, and application environments, including secure development, DevSecOps, and AI governance practices.


  • Develop OT security architectures that protect manufacturing, laboratory, and connected device environments.


  • Partner with Enterprise and Solution Architects to embed security, resilience, and compliance requirements across transformation initiatives.


  • Evaluate architectures and configurations against frameworks including NIST, NIST Zero Trust, CIS, ISO 27001, and applicable regulatory requirements.


  • Drive security automation, tooling integrations, and engineering improvements that enhance enterprise defenses.


  • Perform root-cause analysis of security findings and incidents, recommending strategic and sustainable improvements.


  • Produce architecture standards, reference designs, technical documentation, and executive-level roadmaps.


  • Mentor and coach security architects and engineers while fostering a culture of engineering excellence and continuous improvement.


Qualifications

Education:

  • Required: Bachelor's degree in Computer Science, Information Security, Engineering, or a related technical field.


  • Preferred: Master's degree in Cybersecurity, Information Security, or a related discipline.


Experience and Skills:

Required:

  • 8+ years of experience in information security, with demonstrated depth in security architecture and controls.


  • Hands-on experience with vulnerability and exposure management, including assessment and remediation.


  • Strong knowledge of network security and segmentation, firewalls, and zero-trust architecture.


  • Experience designing endpoint protection and device security controls (e.g., EDR/XDR, device hardening).


  • Experience with cloud security across one or more major platforms (AWS, Azure, or GCP), including secure configuration and workload protection.


  • Working knowledge of application and data security principles, including secure SDLC and data protection.


  • Familiarity with industry frameworks and standards (e.g., NIST CSF, ISO 27001, CIS Controls).


Preferred:

  • Experience securing Operational Technology (OT) and connected/IoT device environments.


  • Experience defining security controls for AI, data, and Generative AI solutions.


  • Experience in a regulated industry (MedTech, Pharmaceutical, or Healthcare) with familiarity in associated compliance requirements.


  • Experience with security automation, SOAR, and security tooling integration.


  • Experience supporting large-scale transformation or separation programs.


Other:

  • Travel: Up to 25%


  • Language: English proficiency required.


  • Certifications: Relevant security certifications (e.g., CISSP, CISSP-ISSAP, CCSP, SABSA, or cloud security certifications) preferred.


For more information on how we support the whole health of our employees throughout their wellness, career and life journey, please visit www.careers.jnj.com.

Johnson & Johnson announced plans to separate our Orthopaedics business to establish a standalone orthopaedics company, operating as DePuy Synthes. The process of the planned separation is anticipated to be completed within 18 to 24 months, subject to legal requirements, including consultation with works councils and other employee representative bodies, as may be required, regulatory approvals and other customary conditions and approvals. Should you accept this position, it is anticipated that, following conclusion of the transaction, you would be an employee of DePuy Synthes and your employment would be governed by DePuy Synthes employment processes, programs, policies, and benefit plans. In that case, details of any planned changes would be provided to you by DePuy Synthes at an appropriate time and subject to any necessary consultation processes.

Required Skills:

Preferred Skills:
Business Process Design, Crisis Management, Critical Thinking, Information Security Auditing, Information Security Management System (ISMS), Information Technology (IT) Security Assessments, Information Technology Strategies, Mentorship, Organizing, Presentation Design, Process Optimization, Root Cause Analysis (RCA), Security Architecture Design, Security Policies, Technical Credibility, Vulnerability Management

The anticipated base pay range for this position is :
102,000.00 - 204,000.00 USD Annual

Additional Description for Pay Transparency:
Subject to the terms of their respective plans, employees are eligible to participate in the Company's consolidated retirement plan (pension) and savings plan (401(k)). Subject to the terms of their respective policies and date of hire, employees are eligible for the following time off benefits: • Vacation -120 hours per calendar year • Sick time - 40 hours per calendar year; for employees who reside in the State of Colorado -48 hours per calendar year; for employees who reside in the State of Washington -56 hours per calendar year • Holiday pay, including Floating Holidays -13 days per calendar year • Work, Personal and Family Time - up to 40 hours per calendar year • Parental Leave - 480 hours within one year of the birth/adoption/foster care of a child • Bereavement Leave - 240 hours for an immediate family member: 40 hours for an extended family member per calendar year • Caregiver Leave - 80 hours in a 52-week rolling period10 days • Volunteer Leave - 32 hours per calendar year • Military Spouse Time-Off - 80 hours per calendar year For additional general information on Company benefits, please go to: - https://www.careers.jnj.com/employee-benefits

About Johnson & Johnson

Scio Diamond creates single-crystal Type IIa diamonds for the jewelry market and for industrial applications. It employs a patent-protected chemical vapor deposition (CVD) process in a precisely controlled laboratory setting to produce diamonds. It was founded in 2009 and is headquartered in Greenville, South Carolina.

Johnson & Johnson Careers

Joining Johnson & Johnson provides an unparalleled opportunity to be a part of a global team of professionals dedicated to blending care, science, and innovation to profoundly change the trajectory of health for humanity.

Work You’ll Do

At Johnson & Johnson, you will engage in work that matters. Join our community of professionals in health care to drive significant and impactful changes across the globe. Our team at Johnson & Johnson leads with science and heart in sectors from pharmaceuticals to medical devices and consumer health products.

Transform Health Care

Leverage Johnson & Johnson’s culture of innovation to transform health care and improve the lives of people around the world. Our collaborative environment encourages leadership and growth, allowing you to pioneer new strategies for health care solutions with a diverse team of experts.

Innovative Work

Engage in groundbreaking work that enhances how care is delivered on a global scale. Johnson & Johnson’s commitment to innovative health solutions results in dynamic career paths filled with opportunities for professional growth and development.

Be Part of a Great Team

Our team at Johnson & Johnson thrives on collaboration and diversity. You will work alongside over 130,000 employees globally who are committed to making a lasting impact. With a culture that values diversity training and leadership, you are supported in both personal and professional growth.

Future-Proof Your Career

Johnson & Johnson offers a myriad of job opportunities and employment benefits designed to help you meet your career and personal goals. Our employees enjoy comprehensive benefits, including health insurance, retirement plans, and family-friendly policies that pave the way for a fulfilling career and life balance.

Explore Job Opportunities and Internships

Whether you’re looking to start your career or take it to the next level, Johnson & Johnson offers positions ranging from internships to leadership roles across various sectors. Enhance your skills through hands-on experience and our extensive networking and mentorship programs.

Johnson & Johnson Leadership and Development

Our commitment to leadership and continuous learning is at the core of our employment philosophy. Every position offers chances to lead, learn, and innovate. We provide extensive training programs and development courses that prepare you for the future of health care.

Stay Connected

Join Our Team

Search open positions that match your skills and interests. We are constantly hiring and looking for curious, driven, and compassionate team players.

SEARCH JOHNSON & JOHNSON JOBS

Keep Up to Date

Stay informed with career tips, insider perspectives, and industry-leading insights you can put to use today—all from the people who work here.

READ CAREERS BLOG

Job Alert Emails

Customize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. Discover the exciting and rewarding career opportunities that await at Johnson & Johnson. Join Johnson & Johnson today to be a part of a team that values innovation, leadership, and diversity, and see how far your ambition can take you.
Learn more about Johnson & Johnson
Size
141,700 employees
Market Cap
$462.7 billion
Industry
Net Income
$14.7 billion
Founded
1886
5 Year Trend
+5.5%
Revenue
$82.5 billion
NASDAQ

Similar Jobs

More Jobs at Johnson & Johnson

More Information Technology Jobs

Find similar Principal, Security Architect jobs: