Director, Incident Response & Threat

Johnson & Johnson

Confirmed live yesterday High trust
Hybrid

Quick summary

Work type
Hybrid
Location
Raynham, MARaritan, NJWest Chester, PAWarsaw, INPalm Beach Gardens, FLPune, India
Salary
$150,000–$258,750 / yr
Employment
Full-time
Posted
6 days ago
Freshness
Confirmed live yesterday
Closes
Oct 21, 2026

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $221k
This role $204k
$136k most similar roles pay here $282k

This role pays less than 63% of similar roles. Most pay $185,775–$256,000 — the shaded band above. At the midpoint, this role pays about $204k versus about $221k for comparable roles.

Based on 240 similar postings.

Employer

About Johnson & Johnson

Johnson & Johnson is a multinational corporation operating in three main segments: consumer health products, pharmaceuticals, and medical devices, known for brands like Tylenol, Band-Aid, and Janssen. Industry: Pharmaceuticals & Medical Devices

Johnson & Johnson currently has 71 open roles on FindRole.

Listed pay typically runs $109,000–$177,100 across 65 roles with salary data.

Most-posted roles

View all roles at Johnson & Johnson

At a glance

TL;DR · Director, Incident Response & Threat

As Director, Incident Response & Threat within the DePuy Synthes Technology organization, you will lead global incident response, digital forensics, defense engineering, and cyber threat intelligence capabilities. You will be responsible for protecting the digital environment, products, and operations from cyber threats while managing a global Security Operations Center that integrates an MSSP and internal teams. Your daily work involves directing complex investigations, developing automated playbooks, conducting threat hunts, and leading tabletop exercises to ensure rapid containment and remediation. You will utilize expertise in NIST and ISO 27001 frameworks to manage risks within the MedTech environment. The role requires proficiency in crisis management, security architecture design, and information security auditing. You will provide executive-level reporting on metrics like MTTA and MTTR to enhance cyber resilience and ensure regulatory compliance across the global organization.

What you'll do

  • Lead global incident response, digital forensics, defense engineering, and cyber threat intelligence capabilities.
  • Build and mature an automation- and AI-first global Security Operations Center operating model.
  • Direct complex cybersecurity investigations including evidence preservation, root-cause analysis, and remediation.
  • Develop and automate incident response playbooks, escalation paths, and crisis management procedures.
  • Manage cyber incidents in coordination with Legal, Privacy, Quality, and Business leaders to ensure regulatory compliance.
  • Oversee threat intelligence capabilities to identify vulnerabilities and provide executive briefings on business risks.
  • Conduct tabletop exercises and simulations to improve organizational readiness and response maturity.
  • Establish an executive-ready metrics framework to track and report on operational effectiveness and cyber resilience.

What we're looking for

  • Bachelor's degree in Computer Science, Information Security, Engineering, or a related field.
  • Master's degree in Cybersecurity, Information Systems, or Business Administration (preferred).
  • 10-12 years of progressive experience in cybersecurity, information security, or IT risk management, including leadership roles.
  • Proven experience leading enterprise-scale incident response and threat management programs.
  • Experience working in regulated environments such as healthcare, life sciences, or MedTech.
  • Experience supporting global organizations with complex technology environments (preferred).
  • Familiarity with security frameworks like NIST or ISO 27001 (preferred).
  • CISSP, CISM, GIAC, or equivalent cybersecurity certifications (preferred).

More like this

Similar roles

Director, Cyber Threat Intelligence

Target

Brooklyn Park, MN 19 days ago $149,000–$268,000
Cyber Threat Intelligence SIEM SOAR EDR Vulnerability Management Malware Research Passive DNS Virus Total Machine Learning Artificial Intelligence Phishing DDoS Information Security
7+ yrs exp Hybrid

Principal Security Engineer, Incident Response

F5 Inc

Remote 23 days ago $182,200–$273,200
Incident Response Cybersecurity AWS Azure GCP Kubernetes WAF WAAP API Gateways DDoS Mitigation SIEM EDR CrowdStrike MITRE ATT&CK FedRAMP NIST SP 800-61 ISO 27001 PCI-DSS
10+ yrs exp Remote

Director, Security Architecture

Cardinal Health

18 days ago $154,400–$261,250
Security Architecture NIST CSF ISO 27001 SABSA TOGAF CISSP CCSP DevSecOps Cloud Security Risk Management Incident Response Disaster Recovery Secure Design Data Security
10+ yrs exp

Security Engineer, Incident Response

F5 Inc

Remote 23 days ago $132,000–$198,000
Incident Response Security Operations (SOC) Threat Hunting Digital Forensics AWS Azure GCP Kubernetes NGINX WAF WAAP CrowdStrike SIEM EDR NIST SP 800-61 ISO 27001 FedRAMP PCI-DSS
5+ yrs exp Remote

Director, IT Security Risk

R1 RCM

Remote 6 days ago $122,366–$178,767
Cybersecurity GRC Risk Assessment Automation Compliance Security Governance Workflow Design Reporting Metrics CISM CISSP
10+ yrs exp Remote

Incident Response Coordinator

Global Payments (TSYS)

Alpharetta, GA 60 days ago
Incident Response NIST CSF GDPR AWS JIRA Linux Unix Windows ITIL Penetration Testing Web Application Assessment Secure Coding Root Cause Analysis
2+ yrs exp