Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Johnson & Johnson

Director, Incident Response – Threat

Johnson & Johnson

. Lead global incident response, digital forensics, defense engineering, and cyber threat intelligence capabilities .

Posted 9/21/2026full-timeUnited StatesLead💰 $150,000 - $258,750 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in leading incident response and threat management programs, with a strong focus on automation and AI integration in security operations. Proficient in executive communication, decision-making, and managing cross-functional teams in high-pressure environments.

Highest-signal resume keywords
Incident Response LeadershipCyber Threat IntelligenceRegulatory Compliance ExperienceExecutive Communication SkillsCybersecurity Certifications

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Incident ResponseDigital ForensicsThreat ManagementRoot-Cause AnalysisAutomation DevelopmentCrisis ManagementSecurity Operations CenterThreat ResearchMetrics EstablishmentRisk Management
Soft Skills
LeadershipDecision-MakingJudgmentCommunication
Tools & Technologies
MSSPCloud SecurityOT SecurityMedical Device Security
Certifications & Qualifications
CISSPCISMGIAC
Industry Keywords
CybersecurityInformation SecurityHealthcareLife SciencesNISTISO 27001

Tech Stack

Tools & technologies
CloudCyber Security

About the role

Key responsibilities & impact
  • Lead global incident response, digital forensics, defense engineering, and cyber threat intelligence capabilities
  • Build and mature an automation- and AI-first global Security Operations Center operating model integrating an MSSP, retained services, and internal teams
  • Direct complex cybersecurity incident investigations, including containment, forensic evidence preservation, root-cause analysis, remediation, and executive reporting
  • Develop, automate, test, and improve incident response playbooks, escalation paths, communications protocols, and crisis management procedures
  • Partner with IT, Legal, Privacy, Quality, and business leaders on cyber incidents and regulatory or compliance obligations
  • Oversee threat intelligence capabilities and translate emerging threats into prioritized defensive actions and executive briefings
  • Lead tabletop exercises, simulations, and readiness assessments and convert lessons learned into remediation plans
  • Establish executive-ready metrics including MTTA, MTTR, and MTTC
  • Provide executive reporting and recommendations on cyber risk, incident trends, defensive readiness, investment priorities, and remediation progress
  • Promote security awareness and opportunities to improve the company’s risk position
  • Lead proactive threat research and threat hunts
  • Lead, mentor, and develop the incident response and threat management team
  • Drive continuous improvement of security operations and resilience tools, processes, and technologies

Requirements

What you’ll need
  • Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field (required)
  • 10–12 years of progressive experience in cybersecurity, information security, or IT risk management, including leadership roles
  • Proven experience leading enterprise-scale incident response and threat management programs
  • Strong knowledge of cyber threat landscapes, attack techniques, and defensive strategies
  • Experience working in regulated environments such as healthcare, life sciences, MedTech, or similarly regulated industries
  • Demonstrated ability to lead cross-functional teams during high-pressure incidents
  • Excellent executive communication, judgment, and decision-making skills
  • Fluent English
  • Up to 10–15% travel, primarily domestic with occasional international travel
  • Master’s degree in Cybersecurity, Information Systems, or Business Administration (preferred)
  • Experience supporting global organizations with complex technology environments (preferred)
  • Familiarity with NIST, ISO 27001, or similar security frameworks (preferred)
  • Experience integrating threat intelligence into security operations and risk management (preferred)
  • Prior people leadership experience managing managers or senior individual contributors (preferred)
  • Experience with cloud, OT, and medical device security considerations (preferred)
  • CISSP, CISM, GIAC, or equivalent cybersecurity certifications (preferred)

Benefits

Comp & perks
  • Consolidated retirement plan (pension)
  • Savings plan (401(k))
  • Long-term incentive program
  • Vacation – 120 hours per calendar year
  • Sick time – 40 hours per calendar year
  • Holiday pay, including Floating Holidays – 13 days per calendar year
  • Work, Personal and Family Time – up to 40 hours per calendar year
  • Parental Leave – 480 hours within one year of the birth/adoption/foster care of a child
  • Bereavement Leave – 240 hours for an immediate family member; 40 hours for an extended family member per calendar year
  • Caregiver Leave – 80 hours in a 52-week rolling period
  • Volunteer Leave – 32 hours per calendar year
  • Military Spouse Time-Off – 80 hours per calendar year
  • Inclusive interview process and disability accommodations
  • Equal opportunity employment