Jobs · New Jersey

Director, Global Audit & Assurance

Johnson & Johnson · New Brunswick, NJ · 3 wk ago
Hybrid$150k–$259k/yrFull-time

At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity.

About the role

Johnson & Johnson is recruiting for a Director – Digital Risk, Global Audit & Assurance located in New Brunswick, NJ. Global Audit & Assurance is the organization’s Internal Audit function. In this highly visible role, you will be a member of the Audit Leadership Team (ALT) within GA&A (J&J’s internal audit department) and report to the VP who leads Technology Audit, Global SOX Program, and Digital Innovation. You will serve as a domain expert and audit leader, partnering with peer Directors to deliver integrated, risk-based audits across the organization.

You will have oversight responsibility for approximately 30% of the Technology Audit team, leading a broad and growing team of professionals to execute and deliver on the department’s Audit Risk Assessment plan and supervising audit activities. Your focus will be providing domain-level expertise on critical enterprise risks related to Cybersecurity, Artificial Intelligence, Privacy & Data Governance.

Responsibilities

  • Direct and supervise a global Technology audit team through the annual audit and advisory plan lifecycle, including conducting ongoing risk assessments, executing risk-based audit procedures, and focusing on Cybersecurity, Artificial Intelligence, Privacy & Data Governance.
  • Serve as a technical authority during audit planning, fieldwork, and reporting phases, performing quality reviews over work product and final reports.
  • Collaborate with VP, Sr. Director, and Director audit personnel to manage overall audit plan execution and deliver integrated (Finance & Technology) audits.
  • Provide oversight and methodology guidance during assurance and advisory reviews over key and emerging risk topics, including Cybersecurity, Artificial Intelligence, Privacy & Data Governance.
  • Identify systematic issues across audits and partner with stakeholders to diagnose root causes and recommend scalable control improvements.
  • Act as a control environment thought leader, assessing unfamiliar, emerging technologies and proposing right-sized audit plans.
  • Lead the development, documentation, and maintenance of the department’s Technology audit program consistent with enterprise policies and standards.
  • Work closely with other audit directors and compliance/testing leaders to enable ongoing audit activities in risk-based reviews.
  • Stay abreast of industry and regulatory compliance pronouncements, implementing relevant standards for the Technology audit organization.
  • Serve as a trusted advisor across Global Technology, Business, and Compliance leadership, including VP-level stakeholders, supporting enterprise risks related to Cybersecurity, Artificial Intelligence, Privacy & Data Governance.
  • Influence actionable change based on audit results to continuously improve the compliance posture of the organization.
  • Lead through times of significant enterprise process and technology transformation, promoting adoption of new digitized practices.
  • Provide people leadership to the Technology Audit organization, fostering a high-performing, positive, and engaging work environment.
  • Direct supervision and responsibility over a team of managers and their direct reports (~10 FTE with potential to grow).
  • Partner and oversee select third-party SMEs engaged to support audit activities.
  • Collaborate across the department to uplift current and future technical capabilities of the Internal Audit function and talent pipeline.
  • Serve as an Audit Leadership team member or sponsor for pillar teams or Audit Risk Management teams related to key risk topics (e.g., Cybersecurity, Disruptive Technology, and Privacy).

Requirements

  • A minimum of a bachelor’s degree (BA/BS) is required. An advanced degree (MBA or MS) is a plus. Ideal concentrations include Accounting, Finance, or Technology-related disciplines.
  • A minimum of 12 years of process & risk experience with a focus on technology audit, assurance, or compliance-related experience, including cyber risk, data/AI risk, or related disciplines.
  • Professional Services training and experience from a “Big 4” firm is preferred.
  • Proven ability to establish and foster collaborative relationships with key stakeholders, including senior-level executives.
  • Strong communication, interpersonal, and analytical skills, with the ability to frame key messages for senior-level audiences.
  • Ability to lead through change and influence decisions while building trust among senior business and technology leaders.
  • Self-motivated, change-agile, and capable of managing high levels of complexity and ambiguity.
  • Proven experience in developing and executing technology components of an annual audit plan, including internal controls over financial reporting and operational risks.
  • Experience with auditing Cybersecurity risks, AI governance, emerging risks, and privacy frameworks. Experience with artificial intelligence tools and technologies is required.
  • Strong understanding of IT & Information Technology General Controls Frameworks and standards such as NIST, ISO, SANS, COBIT, ITIL, COSO, and regulations such as SOX, Global Privacy standards, and HIPAA.
  • Experience with the design, development, and implementation of internal controls to address risks.
  • Extensive experience in financial and operational risk identification and validation, particularly in cybersecurity, artificial intelligence, and data privacy/governance.
  • Professional certification (e.g., CISA, CIA, CPA, CIRSC, CISSP) is strongly preferred.
  • Experience with auditing SAP products and associated risks is strongly preferred.
  • Professional experience in roles supporting a Pharmaceutical/Innovative Medicine or Medical Technology company is strongly preferred.
  • English fluency (written and verbal) is required; fluency in multiple languages is a plus.
  • The position requires up to 30% domestic and international travel.

Pay

The anticipated base pay range for this position is $150,000.00 - $258,750.00.

Benefits

  • Eligibility to participate in the Company’s consolidated retirement plan (pension) and savings plan (401(k)).
  • Eligibility to participate in the Company’s long-term incentive program.
  • Vacation – 120 hours per calendar year.
  • Sick time – 40 hours per calendar year (48 hours for Colorado residents, 56 hours for Washington residents).
  • Holiday pay, including Floating Holidays – 13 days per calendar year.
  • Work, Personal, and Family Time – up to 40 hours per calendar year.
  • Parental Leave – 480 hours within one year of the birth/adoption/foster care of a child.

Similar jobs