×
Register Here to Apply for Jobs or Post Jobs. X

MedTech Product Security Manager

Remote / Online - Candidates ideally in
Irvine, Orange County, California, 92713, USA
Listing for: Johnson & Johnson
Remote/Work from Home position
Listed on 2026-01-02
Job specializations:
  • IT/Tech
    Cybersecurity, IT Consultant
Job Description & How to Apply Below

At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and Med Tech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity.

Learn more at https://(Use the "Apply for this Job" box below)..comJob

Job Posting Locations:
Alabama (Any City), Alabama (Any City), Alaska (Any City), Arizona (Any City), Arkansas (Any City), Colorado (Any City), Connecticut (Any City), Delaware (Any City), Florida (Any City), Georgia (Any City), Hawaii (Any City), Idaho (Any City), Illinois (Any City), Indiana (Any City), Iowa (Any City), Irvine, California, United States of America, Kansas (Any City), Kentucky (Any City), Louisiana (Any City), Maine (Any City), Maryland (Any City), Massachusetts (Any City), Michigan (Any City), Milpitas, California, United States of America, Minnesota (Any City) + 27 more

We are seeking the best talent for a Product Security Manager to join our Med Tech Product Security team. The role is based in Milpitas or Irvine, CA. Remote work options may be considered on a case‑by‑case basis and if approved by the Company. This may require up to 10% travel.

Specific Responsibilities
  • Supporting JJV throughout a new product’s development phases
  • Review product security requirements and recommend security design solutions
  • Help complete quality documentation, threat modelling, penetration testing, software architecture review and design recommendations, code analysis and other security testing or work as needed
  • Post‑market responsibilities for JJV marketed devices, including monitoring for new vulnerabilities, assisting with patching and remediation plans, responding to all customer security questionnaires, and reviewing security language within contractual agreements
  • Drive adherence to J&J Product Security’s overarching framework
  • Champion Product Security strategy and objectives within JJV
  • Partner with internal organizations to enhance existing processes and policies
  • Create and present Product Security metrics to management
  • Responsible and accountable to implement and enforce Product Security governance model for JJV pre‑ and post‑market medical devices
  • Perform automated code scanning and coordinate formal security testing
  • Respond to customer cybersecurity questionnaires and contractual language for all post‑market medical devices
  • Other Med Tech cybersecurity related duties as needed
Qualifications Required
  • 8 years IT or cybersecurity experience
  • Bachelor’s degree or equivalent
  • Minimum of 8 years of progressive experience in leadership roles within information technology or cybersecurity functions
  • Threat modeling experience
  • Data privacy experience, including GDPR and CCPA
  • Understanding of HIPAA/HITRUST & ISO 27001
  • Understanding of penetration testing, vulnerability scanning, CVSS and other security testing principles
  • Ability to work autonomously and proactively seek out security opportunities within JJV
  • Knowledge of traditional and real‑time operating systems (e.g., QNX, Windows Embedded) hardening techniques
  • Ability to create and deliver cybersecurity awareness campaigns and other communications
  • Ability to translate technical security requirements into solutions
  • Ability to provide secure coding recommendations
  • Ability to lead large projects and proven ability to track to project plan timelines from a security perspective
  • Ability to write technical security requirements for embedded systems and web platforms
  • Creative problem‑solving skills
  • Customer focus (internal & external)
  • Excellent communication and collaboration skills, able to network, interface and influence at all levels of the organization, cross sector, cross‑functionally and globally
  • Strong leadership skills
Preferred
  • Experience leading or participating in formal security audits (e.g., HITRUST, SOC2, FedRAMP)
  • Familiarity with FDA and/or other global regulatory cybersecurity guidance requirements and submission process
  • Experience with web…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary