Experience Analyst Security Engineer Product

Johnson & Johnson

Confirmed live today High trust
Closes in 5 days Hybrid

Quick summary

Work type
Hybrid
Location
New Brunswick, NJWest Chester, PAPalm Beach Gardens, FLWarsaw, INRaynham, MA
Salary
$79,000–$142,000 / yr
Posted
2 days ago
Freshness
Confirmed live today
Closes
Sep 29, 2026 (soon)

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $179k
This role $110k
$63k most similar roles pay here $231k

This role pays less than 98% of similar roles. Most pay $148,375–$209,350 — the shaded band above. At the midpoint, this role pays about $110k versus about $179k for comparable roles.

Based on 240 similar postings.

Employer

About Johnson & Johnson

Johnson & Johnson is a multinational corporation operating in three main segments: consumer health products, pharmaceuticals, and medical devices, known for brands like Tylenol, Band-Aid, and Janssen. Industry: Pharmaceuticals & Medical Devices

Johnson & Johnson currently has 73 open roles on FindRole.

Listed pay typically runs $109,000–$177,100 across 68 roles with salary data.

Most-posted roles

View all roles at Johnson & Johnson

At a glance

TL;DR · Experience Analyst Security Engineer Product

Exp, Analyst, Security Engineer Product joins the DePuy Synthes Technology organization to protect digital products and connected medical technologies by embedding security practices throughout the product lifecycle. This role involves integrating security requirements into design and development, performing risk assessments, threat modeling, and vulnerability analysis. The individual will partner with engineering, quality, and regulatory teams to conduct secure design reviews, manage findings, and monitor emerging cybersecurity threats relevant to medical devices. Key technical skills include experience with secure development lifecycle (SDLC) practices, security-by-design principles, and familiarity with ISO, NIST, and OWASP frameworks. The role requires proficiency in SAST, DAST, and dependency scanning tools while addressing the specific regulatory requirements of the healthcare industry. This position ensures patient safety and product trust by securing connected medical devices within a highly regulated environment.

What you'll do

  • Integrate security requirements and controls into the design and development of digital and connected products.
  • Perform product security risk assessments, threat modeling, and vulnerability analysis across the product lifecycle.
  • Partner with cross-functional teams to conduct secure design reviews and remediation activities.
  • Support security testing activities including static/dynamic analysis, penetration testing coordination, and vulnerability validation.
  • Track, document, and manage product security findings to closure following internal governance processes.
  • Develop and maintain product security standards, procedures, and best practices.
  • Monitor emerging cybersecurity threats and regulatory guidance relevant to medical devices and digital health.
  • Support audits, assessments, and regulatory inquiries related to product cybersecurity.

What we're looking for

  • Bachelor's degree in Computer Science, Engineering, Information Security, or a related technical field.
  • Master's degree in Cybersecurity, Computer Engineering, or a related discipline (preferred).
  • 2–4 years of professional experience in cybersecurity, product security, or secure software development.
  • Working knowledge of secure development lifecycle (SDLC) practices and security-by-design principles.
  • Experience conducting security risk assessments, threat modeling, or vulnerability analysis.
  • Familiarity with common security standards and frameworks such as ISO, NIST, or OWASP.
  • Experience supporting cybersecurity in a regulated industry like medical devices or healthcare (preferred).
  • CISSP, CSSLP, GSEC, or equivalent security certification (preferred).

More like this

Similar roles

Software Engineer, Product Security

Allstate

Remote (IL) 9 days ago $90,700–$195,700
Java JavaScript REST Microservices Docker Kubernetes AWS Azure TDD OWASP Top 10 LLMs Agile
3+ yrs exp Remote

Product Security Engineer, Programs

Anduril Industries

Quincy, MA 77 days ago $156,000–$253,000
C/C++ Golang Rust Python Linux Firmware IoT Embedded Systems Reverse Engineering Anti-tamper Programmable Logic Devices NIST SP 800-160 JSIG ICD 503 CSEIG SSECG CMMC Cyber Survivability

Senior Product Security Engineer

Medtronic

Mounds View, MN +1 16 days ago $132,000–$198,000
Embedded Systems Product Security Threat Modeling Vulnerability Assessment Secure Boot Secure Communications Data Protection Software Update Mechanisms NIST OWASP IEC 81001-5-1 ISO 14971 Security-by-Design CompTIA Security+ CISSP
4+ yrs exp

Software Engineer, Product Security

Rockwell Automation

Mayfield Heights, OH +1 38 days ago
C++ C# SSDLC DevSecOps CI/CD Git SAST SCA DAST SBOM OWASP Top 10 CWE Threat Modeling Automated Testing Encryption Windows Object-Oriented Programming
5+ yrs exp Hybrid

Professional Quality Steward

Johnson & Johnson

New Brunswick, NJ +4 2 days ago $79,000–$142,000
Secure by Design Threat Modeling STRIDE SAST DAST SCA SBOM SPDX CycloneDX CI/CD DevSecOps AWS Azure IoT IoMT ISO 14971 IEC 62304 ISO 13485 AAMI TIR57 OWASP Top 10 CWE CVSS
4+ yrs exp Hybrid

Senior Cyber Security Analyst

FedEx

Memphis, TN +2 3 days ago
Application Security Product Security OWASP Top 10 SAST DAST SCA CI/CD Threat Modeling GCP Kubernetes GKE Python Java Go C# Container Security IAM Vulnerability Management Cloud Security
4+ yrs exp Hybrid