BAIP Security Manager – SAP BTP & AI Platform Security

Johnson & Johnson Raritan, New Jersey, United States of America Updated 6 October 2026
PharmaMedTechRegulatory AffairsQuality Assurancesasr programmingcroctmsinformsap

Job description

At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at jnj.com As guided by Our Credo, Johnson & Johnson is responsible to our employees who work with us throughout the world. We provide an inclusive work environment where each person is considered as an individual. At Johnson & Johnson, we respect the diversity and dignity of our employees and recognize their merit. Job Function: Technology Product & Platform Management Job Sub Function: Multi-Family Technology Product & Platform Management Job Category: People Leader All Job Posting Locations: Raritan, New Jersey, United States of America Job Description: We are seeking an experienced SAP BAIP/BTP Security Manager to lead the security strategy, architecture, governance, and operational excellence for SAP Business Technology Platform (SAP BTP), enterprise applications, integrations, and AI-enabled solutions to be located in Raritan, NJ. This role is responsible for establishing secure-by-design principles across cloud-native application development, SAP BTP services, APIs, integrations, DevSecOps pipelines, and AI platforms. The ideal candidate will combine deep expertise in SAP BTP security, cloud architecture, application security, and AI governance with strong leadership capabilities to drive platform security initiatives, compliance readiness, risk management, and continuous improvement across the technology ecosystem. Key Responsibilities Security Architecture & Platform Governance Define and implement enterprise security architecture standards across SAP BTP services including Cloud Foundry, Kyma, SAP HANA Cloud, Integration Suite, API Management, Event Mesh, SAP Build, and AI Foundation. Develop and maintain secure reference architectures, trust-boundary diagrams, network security models, and hybrid-cloud security patterns. Establish enterprise standards for identity management, authentication, authorization, encryption, secrets management, key management, and certificate lifecycle management. Drive Zero Trust security principles across cloud-native applications, integrations, APIs, and platform services. Translate cybersecurity, privacy, compliance, and regulatory requirements into scalable engineering controls and platform standards. Application, Integration & AI Security Ensure secure-by-design implementation across SAP BTP application development initiatives and enterprise integration solutions. Partner with development teams to integrate security throughout the Software Development Lifecycle (SDLC) and AI Software Development Lifecycle (AI SDLC). Define security standards for APIs, microservices, event-driven architectures, and enterprise messaging platforms. Establish governance and security controls for SAP Business AI, Joule, Generative AI, AI agents, RAG architectures, and intelligent automation solutions. Implement secure AI integration patterns connecting enterprise systems, business processes, AI services, and knowledge repositories. Provide security guidance and architecture reviews for cloud-native applications and AI-enabled business solutions. DevSecOps & Security Operations Lead implementation of DevSecOps practices including SAST, DAST, dependency scanning, software composition analysis, secret detection, and security policy enforcement. Integrate automated security controls into CI/CD pipelines, GitHub workflows, SAP Cloud Transport Management (CTMS), and deployment processes. Drive vulnerability management, remediation programs, risk reduction initiatives, and continuous compliance monitoring. Support security incident response, threat modeling, penetration testing, and security assessments. Promote engineering excellence through automation, security-by-default practices, and continuous improvement. Compliance, Risk & Observability Lead internal and external audit activities, compliance reviews, risk assessments, and remediation efforts. Define audit logging, monitoring, observability, and threat detection strategies across SAP BTP and hybrid cloud environments. Implement security monitoring capabilities using tools such as Dynatrace, SAP Cloud ALM, Splunk, Grafana, and Prometheus. Establish governance frameworks for data protection, data classification, access management, and responsible AI. Ensure compliance with enterprise cybersecurity, privacy, regulatory, and AI governance standards. Leadership & Stakeholder Management Lead and mentor security architects, security engineers, DevSecOps engineers, and contractor resources. Partner with enterprise architecture, cybersecurity, privacy, compliance, SAP platform teams, and business stakeholders. Establish security KPIs, operational m

Stand out for this role

NoxPharm tailors your CV to this job description by aligning your experience with the role requirements and terminology. Built for pharma & life sciences.

Tailor my CV now — free to try