Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Johnson & Johnson

A&D Pre-Close Security Director

Johnson & Johnson

. Define, govern, and continuously improve the enterprise cybersecurity approach for pre-close mergers, acquisitions, divestitures, licensing arrangements, minority investments, and strategic partnerships .

Posted 10/5/2026full-timeRemote • United StatesLead💰 $150,000 - $258,750 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in enterprise cybersecurity strategy, risk management, and compliance, with a strong focus on M&A transactions and cross-functional collaboration. Proficient in leading cybersecurity due diligence programs and communicating complex findings to executives and stakeholders.

Highest-signal resume keywords
Cybersecurity Program LeadershipM&A Transaction SupportRegulatory Compliance InsightNIST Cybersecurity FrameworkExecutive Communication Skills

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
CybersecurityInformation Risk ManagementSecurity ArchitectureIdentity And Access ManagementCloud SecurityEndpoint SecurityNetwork SecurityApplication SecurityData ProtectionVulnerability Management
Soft Skills
Executive CommunicationInfluencing ExecutivesNavigating AmbiguityDriving Organizational ChangeProblem Solving
Tools & Technologies
Risk-Scoring MethodsWorkflow AutomationDashboardsPortfolio Governance
Certifications & Qualifications
CISSPCISMCRISCCISACCSK
Industry Keywords
HealthcarePharmaceuticalMedTechManufacturingGlobal Environments

Tech Stack

Tools & technologies
CloudCyber Security

About the role

Key responsibilities & impact
  • Define, govern, and continuously improve the enterprise cybersecurity approach for pre-close mergers, acquisitions, divestitures, licensing arrangements, minority investments, and strategic partnerships
  • Provide executive leadership and oversight for cybersecurity due diligence, transaction risk management, deal security governance, and integration or separation readiness
  • Partner with Corporate Development, Legal, Privacy, Finance, Technology Services, ISRM owners, business technology leaders, transaction teams, and senior executives
  • Establish and govern the pre-close cybersecurity strategy, operating model, decision framework, standards, and escalation paths
  • Lead the enterprise cybersecurity due diligence program, including assessment methods, evidence requirements, regulatory and control criteria, reporting standards, and quality expectations
  • Evaluate cyber risks, incidents, regulatory exposure, control gaps, architecture choices, technology dependencies, and remediation obligations
  • Advise transaction sponsors on risk acceptance, contractual protections, closing conditions, security-by-design requirements, Day 1 priorities, and post-close commitments
  • Translate diligence findings and enterprise requirements into Day 1 objectives, minimum controls, transition assumptions, TSA considerations, dependency tracking, and handoff requirements
  • Oversee the global pre-close transaction portfolio and prioritize resources based on deal value, threat, complexity, regulatory impact, and timing
  • Communicate findings, regulatory implications, recommendations, residual risk, decisions, and business impacts to executives, governance boards, steering committees, and transaction sponsors
  • Standardize intake, questionnaires, risk taxonomies, scoring, evidence, dashboards, metrics, templates, and workflow automation
  • Lead and develop managers, cybersecurity professionals, deal leads, and cross-functional contributors

Requirements

What you’ll need
  • Bachelor's degree in Information Security, Computer Science, Engineering, Information Systems, Business, or a related discipline
  • 12+ years of progressive experience in cybersecurity, information risk management, technology leadership, M&A transaction support, integration or separation, or related disciplines
  • Experience leading cybersecurity programs supporting acquisitions, divestitures, licensing, minority investments, strategic partnerships, or other complex business transactions
  • Comprehensive regulatory and compliance insight
  • Broad technical expertise across security architecture, identity and access management, cloud and infrastructure security, endpoint security, network security, application security, data protection, vulnerability management, security operations, incident response, third-party risk, privacy, and cyber resilience
  • Ability to troubleshoot complex cybersecurity and technology issues at Director level and make risk-informed decisions
  • Experience aligning enterprise security requirements with transaction constraints, policies, standards, control objectives, and exception processes
  • Experience influencing executives and driving cross-functional initiatives across highly matrixed, global environments
  • Strong understanding of NIST Cybersecurity Framework, ISO 27001, NIST 800-series publications, GDPR, HIPAA, and other applicable requirements
  • Experience managing portfolios involving concurrent deals, assessments or workstreams, vendors, senior stakeholders, dependencies, and time-sensitive decisions
  • Exceptional executive communication and presentation skills
  • Ability to navigate ambiguity, protect transaction confidentiality, drive organizational change, and improve repeatability through data, tools, automation, and governance
  • Advanced degree (MBA, MS, or equivalent) preferred
  • Preferred experience with A&D cybersecurity playbooks, questionnaires, control libraries, risk-scoring methods, RACI models, handoff criteria, and phase-based transaction standards
  • Preferred experience designing automation for intake, evidence collection, risk reporting, workflow orchestration, dashboards, and portfolio governance
  • Preferred experience partnering with Corporate Development, Legal, Privacy, Finance, Technology Services, business technology teams, IMO/SMO functions, external advisors, and managed service providers
  • Experience in regulated healthcare, pharmaceutical, MedTech, manufacturing, or similarly complex global environments preferred
  • Relevant certifications such as CISSP, CISM, CRISC, CISA, CCSK, or equivalent credentials preferred

Benefits

Comp & perks
  • Participation in the Company’s consolidated retirement plan (pension)
  • Savings plan (401(k))
  • Long-term incentive program
  • Vacation – 120 hours per calendar year
  • Sick time – 40 hours per calendar year; 48 hours for employees residing in Colorado; 56 hours for employees residing in Washington
  • Holiday pay, including Floating Holidays – 13 days per calendar year
  • Work, Personal and Family Time – up to 40 hours per calendar year
  • Parental Leave – 480 hours within one year of the birth/adoption/foster care of a child
  • Bereavement Leave – 240 hours for an immediate family member; 40 hours for an extended family member per calendar year
  • Caregiver Leave – 80 hours in a 52-week rolling period
  • Volunteer Leave – 32 hours per calendar year
  • Military Spouse Time-Off – 80 hours per calendar year