Professional, Compliance Lead
At Johnson & Johnson,we believe health is everything.
Our strength in healthcare innovation empowers us to build aworld where complex diseases are prevented, treated, and cured,where treatments are smarter and less invasive, andsolutions are personal.Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity.Learn more at jnj.com .
As guided by Our Credo, Johnson & Johnson is responsible to our employees who work with us throughout the world.
We provide an inclusive work environment where each person is considered as an individual.
At Johnson & Johnson, we respect the diversity and dignity of our employees and recognize their merit.
Job Function:
Technology Enterprise Strategy & Security
Job Sub Function:
Security & Controls
Job Category:
Scientific/Technology
All Job Posting Locations:
New Brunswick, New Jersey, United States of America
Job Description:
DePuy Synthes is recruiting for a Professional, Compliance Lead , located in Raritan, New Jersey or West Chester, Pennsylvania or Palm Beach Gardens, Florida or Raynham, Massachusetts or Warsaw, Indiana.
* Join our change journey at J&J-help shape what's next
* Step into a high-impact career opportunity with real visibility
THE OPPORTUNITY
The Professional , Compliance Lead is a seasoned individual contributor within the Cybersecurity function, GRC, IT Controls & Cyber Culture sub-function, accountable for leading the cybersecurity compliance and governance agenda across DePuy Synthes.
This role owns the policy and standards framework, sets the enterprise cyber risk methodology , leads risk assessments and register governance, and drives the reporting cadence that informs executive and Board-level decision-making.
The Compliance Lead directs third-party risk oversight, defines the metrics and KRI model that measures program health, and serves as the primary liaison to Internal Audit, Legal, Privacy, Quality, and external regulators.
Applying advanced knowledge of GRC frameworks and regulatory obligations, this role establishes best-in-class policies, procedures, and plans for the area.
RESPONSIBILITIES
* Lead the cybersecurity policy and standards program end to end - setting the governance lifecycle, approving content, driving annual review and attestation, and adjudicating exceptions and risk acceptances.
* Define and maintain the enterprise cyber risk framework and methodology , including risk taxonomy, scoring model, risk appetite and tolerance statements, and escalation thresholds.
* Direct the cyber risk assessment program across applications, infrastructure, business processes, and major change initiatives; ensure consistency of method, quality of output, and traceability of results.
* Own governance of the enterprise cyber risk register - enforcing data quality, ownership ...
- Rate: Not Specified
- Location: New Brunswick, US-NJ
- Type: Permanent
- Industry: Finance
- Recruiter: Johnson and Johnson
- Contact: Not Specified
- Email: to view click here
- Reference: R-097908
- Posted: 2026-09-24 08:50:09 -
- View all Jobs from Johnson and Johnson
More Jobs from Johnson and Johnson
- Account Follow-Up Representative I
- Sr Product Trainer
- Project Manager
- (Remote) Corporate Development Associate
- (Remote) Senior Data & Business Intelligence Engineer
- (Remote) Assistant Director, Revenue Cycle Management
- (Remote) Director Research & Development
- System Architect
- Maintenance Supervisor
- Electrician- חשמלאי.ת
- Consumer and Customer Experience Manager
- Head of Marketing, Insights and IMX
- Account Manager
- Production Associate - San Leandro, CA
- Manufacturing Production Worker - Albany, GA Lumber
- Accounts Payable - Freight Auditor
- Quality Team Leader
- Maintenance Mechanic
- Accounts Payable - Freight Auditor
- Account Manager