Description
At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at jnj.com.
As guided by Our Credo, Johnson & Johnson is responsible to our employees who work with us throughout the world. We provide an inclusive work environment where each person is considered as an individual. At Johnson & Johnson, we respect the diversity and dignity of our employees and recognize their merit.
Job Function:
Legal & ComplianceJob Sub Function:
Enterprise ComplianceJob Category:
ProfessionalAll Job Posting Locations:
Bogotá, Distrito Capital, Colombia, New Brunswick, New Jersey, United States of AmericaJob Description:
We are searching for the best talent for Sr. Mgr, MT LATAM Privacy Lead.
The Senior Manager, Privacy & Data Protection for the Latin America (LATAM) region serves as the sub‑regional privacy leader for Johnson & Johnson’s MedTech Sector, supporting the execution of the Americas privacy strategy across LATAM markets. This role is responsible for operational leadership, implementation of Johnson & Johnson’s Privacy Policies and Rulebook, and oversight of LATAM privacy governance, risk management, and regulatory adherence.
The Senior Manager acts as the primary privacy point of contact for LATAM Commercial, Clinical, and R&D organizations, partnering with business leaders, Technology, Data Science, Quality, and Supply Chain teams to embed responsible data practices and support compliant innovation. This role leads the LATAM MedTech Privacy Steward community, drives operational maturity, and ensures execution of all core privacy processes within the sub‑region.
This position plays a critical leadership role within the Americas Privacy Operating Model and works in close partnership with the Director, Med Tech Privacy & Data Protection – Americas.
Key Responsibilities
1. LATAM Regional Leadership & Execution
- Lead all privacy and data protection activities across the LATAM region for the MedTech Sector.
- Translate the Americas MedTech privacy strategy into sub‑regional execution plans aligned with LATAM business priorities and regulatory requirements.
- Oversee day‑to‑day privacy operations within the sub‑region, including governance, issue management, escalations, and coordination with market‑level functions.
- Promote responsible, ethical, and innovative data use within LATAM Commercial, Clinical, R&D, and Digital/Robotics business environments.
- Represent privacy within regional business forums and serve as the LATAM advisor on data protection considerations.
2. Leadership of the LATAM Privacy Operating Model
- Lead and develop a distributed network of Privacy Stewards across LATAM Commercial, Clinical, and R&D teams.
- Ensure effective Steward onboarding, capability building, training, and quality standards.
- Establish operating mechanisms, prioritization processes, metrics, and compliance routines across LATAM markets.
- Support PFDS deployment and champion maturity improvements and operational consistency across countries.
- Act as the primary LATAM escalation point for Steward‑raised risks, cross‑border issues, and complex operational questions.
3. Sub‑Regional Governance, Risk Management & Compliance
- Oversee the execution of all LATAM privacy compliance requirements, including DPIAs, Legitimate Interest Assessments, Self‑Assessment activities, XIA review support, incident response, and remediation activities.
- Monitor and interpret LATAM privacy regulations, including evolving data protection, digital health, AI, and clinical data frameworks.
- Lead sub‑regional privacy governance meetings, routine reporting, and risk management processes.
- Support privacy leadership during LATAM‑based acquisitions, integrations, and divestitures within IM.
- Participate in regulatory interactions, audits, and consultations where needed.
4. Strategic Business Partnership & Expert Guidance (LATAM Focus)
- Provide practical, business‑focused privacy guidance to LATAM leaders across MedTech Commercial, R&D, Clinical, Technology, Robotics/Digital Surgery, Data Science, and Medical Affairs.
- Embed privacy by design into LATAM product development, clinical research activities, digital programs, connected devices, IoT platforms, and analytics initiatives.
- Communicate regulatory changes and emerging risks to LATAM business stakeholders and define sub‑regional compliance strategies.
- Deliver recommendations that balance regulatory requirements, business needs, and J&J global privacy principles.
5. Collaboration with the Global Privacy Organization (GPO)
- Ensure LATAM implementation of global privacy programs, policies, specifications, and governance processes.
- Partner with Privacy Centers of Excellence, back‑office teams, and governance groups to harmonize solutions and support global modernization initiatives.
- Contribute LATAM‑specific insights, recurring use cases, and operational needs into the development of global Specifications and playbooks.
- Represent LATAM perspectives in global discussions and support alignment with J&J enterprise privacy strategy.
Qualifications & Experience
Technical Expertise
- Strong knowledge of LATAM privacy and data protection laws (e.g., LGPD Brazil, Mexico Federal Data Protection Law, Argentina PDPA) and understanding of GDPR/UK GDPR as applied to cross‑border operations.
- Experience with privacy in complex MedTech environments, including data and ecosystems.
- Knowledge of privacy by design, data governance, AI/ML governance, and cross‑border data transfer mechanisms.
Leadership
- Demonstrated ability to lead privacy programs in large, matrixed, multinational environments.
- Experience influencing senior business leaders and partnering across clinical, commercial, and technical functions.
People Leadership
- Proven success developing, mentoring, and enabling distributed teams or networks (e.g., Steward communities).
- Demonstrated capability to drive maturity, operational consistency, and continuous improvement.
Stakeholder Management
- Exceptional communication, relationship‑building, and facilitation skills.
- Ability to translate complex or technical regulatory requirements into actionable business guidance.
Business Acumen
- Strong understanding of MedTech business models, product lifecycles, digital health, clinical operations, and connected device ecosystems.
- Ability to balance compliance with innovation, enabling responsible, data‑driven business outcomes.
Please note that this role is available across multiple countries and may be posted under different requisition numbers to comply with local requirements. While you are welcome to apply to any or all of the postings, we recommend focusing on the specific country(s) that align with your preferred location(s):
Sao Paulo [Brazil] - Requisition Number: [R-078031]
Bogotá [Colombia] - Requisition Number: [R-078545]
New Jersey [US] - Requisition Number: [R-078545]
Remember, whether you apply to one or all of these requisition numbers, your applications will be considered as a single submission.
Required Skills:
Preferred Skills:
Audit and Compliance Trends, Audit Findings and Recommendations, Audit Reporting, Compliance Management, Compliance Risk, Confidentiality, Consulting, Controls Compliance, Developing Others, Internal Auditing, Investigation Techniques, Legal Function, Legal Services, Mentorship, Organizing, Policy Development, Tactical Planning, Technical Credibility
