Skip to main content

BAIP Security Manager – SAP BTP & AI Platform Security

Apply now
Share
Download (1)

This job posting is anticipated to close on Oct 12 2026. We may however extend this time period, in which case the posting will remain available on www.careers.jnj.com to accept additional applications.

Description

At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at jnj.com

As guided by Our Credo, Johnson & Johnson is responsible to our employees who work with us throughout the world. We provide an inclusive work environment where each person is considered as an individual. At Johnson & Johnson, we respect the diversity and dignity of our employees and recognize their merit.

Job Function:

Technology Product & Platform Management

Job Sub Function:

Multi-Family Technology Product & Platform Management

Job Category:

People Leader

All Job Posting Locations:

Raritan, New Jersey, United States of America

Job Description:

We are seeking an experienced SAP BAIP/BTP Security Manager to lead the security strategy, architecture, governance, and operational excellence for SAP Business Technology Platform (SAP BTP), enterprise applications, integrations, and AI-enabled solutions to be located in Raritan, NJ.


This role is responsible for establishing secure-by-design principles across cloud-native application development, SAP BTP services, APIs, integrations, DevSecOps pipelines, and AI platforms.


The ideal candidate will combine deep expertise in SAP BTP security, cloud architecture, application security, and AI governance with strong leadership capabilities to drive platform security initiatives, compliance readiness, risk management, and continuous improvement across the technology ecosystem.


Key Responsibilities


Security Architecture & Platform Governance


  • Define and implement enterprise security architecture standards across SAP BTP services including Cloud Foundry, Kyma, SAP HANA Cloud, Integration Suite, API Management, Event Mesh, SAP Build, and AI Foundation.
  • Develop and maintain secure reference architectures, trust-boundary diagrams, network security models, and hybrid-cloud security patterns.
  • Establish enterprise standards for identity management, authentication, authorization, encryption, secrets management, key management, and certificate lifecycle management.
  • Drive Zero Trust security principles across cloud-native applications, integrations, APIs, and platform services.
  • Translate cybersecurity, privacy, compliance, and regulatory requirements into scalable engineering controls and platform standards.

Application, Integration & AI Security

  • Ensure secure-by-design implementation across SAP BTP application development initiatives and enterprise integration solutions.
  • Partner with development teams to integrate security throughout the Software Development Lifecycle (SDLC) and AI Software Development Lifecycle (AI SDLC).
  • Define security standards for APIs, microservices, event-driven architectures, and enterprise messaging platforms.
  • Establish governance and security controls for SAP Business AI, Joule, Generative AI, AI agents, RAG architectures, and intelligent automation solutions.
  • Implement secure AI integration patterns connecting enterprise systems, business processes, AI services, and knowledge repositories.
  • Provide security guidance and architecture reviews for cloud-native applications and AI-enabled business solutions.

DevSecOps & Security Operations


  • Lead implementation of DevSecOps practices including SAST, DAST, dependency scanning, software composition analysis, secret detection, and security policy enforcement.
  • Integrate automated security controls into CI/CD pipelines, GitHub workflows, SAP Cloud Transport Management (CTMS), and deployment processes.
  • Drive vulnerability management, remediation programs, risk reduction initiatives, and continuous compliance monitoring.
  • Support security incident response, threat modeling, penetration testing, and security assessments.
  • Promote engineering excellence through automation, security-by-default practices, and continuous improvement.

Compliance, Risk & Observability


  • Lead internal and external audit activities, compliance reviews, risk assessments, and remediation efforts.
  • Define audit logging, monitoring, observability, and threat detection strategies across SAP BTP and hybrid cloud environments.
  • Implement security monitoring capabilities using tools such as Dynatrace, SAP Cloud ALM, Splunk, Grafana, and Prometheus.
  • Establish governance frameworks for data protection, data classification, access management, and responsible AI.
  • Ensure compliance with enterprise cybersecurity, privacy, regulatory, and AI governance standards.

Leadership & Stakeholder Management


  • Lead and mentor security architects, security engineers, DevSecOps engineers, and contractor resources.
  • Partner with enterprise architecture, cybersecurity, privacy, compliance, SAP platform teams, and business stakeholders.
  • Establish security KPIs, operational metrics, audit readiness measures, and risk reporting frameworks.
  • Communicate security strategies, roadmaps, risks, and remediation plans to senior leadership.
  • Foster a culture of security awareness, innovation, accountability, and continuous learning.

Innovation & Technology Strategy


  • Evaluate emerging cloud security, AI security, and SAP BTP technologies.
  • Lead proof-of-concepts, technology pilots, and security architecture reviews.
  • Collaborate with SAP and strategic technology partners to assess and adopt innovative security capabilities.
  • Drive continuous enhancement of enterprise security posture and platform resilience.


Required Qualifications


  • Bachelor's or Master's degree in Computer Science, Cybersecurity, Information Technology, Software Engineering, or a related field.
  • 8+ years of experience in cybersecurity, platform engineering, cloud security, application security, or enterprise technology leadership roles.
  • Strong experience with SAP Business Technology Platform (SAP BTP) and enterprise cloud architectures.
  • Experience securing SAP BTP services including Cloud Foundry, Kyma, SAP HANA Cloud, Integration Suite, API Management, Event Mesh, and SAP Build.
  • Experience implementing enterprise security controls for APIs, integrations, microservices, messaging platforms, and event-driven architectures.
  • Deep understanding of authentication, authorization, IAM, OAuth, OIDC, SAML, encryption, certificates, secrets management, and Zero Trust principles.
  • Experience implementing DevSecOps capabilities within CI/CD pipelines and cloud application delivery processes.
  • Knowledge of SAP Business AI, Generative AI, AI governance, responsible AI practices, and AI security controls.
  • Strong understanding of compliance, audit readiness, privacy, risk management, and security governance.
  • Proven experience leading technical teams and influencing cross-functional organizations.
  • Excellent communication, leadership, stakeholder management, and problem-solving skills.

Preferred Qualifications


  • SAP BTP Security, Technology Consultant, Administrator, Solution Architect, or related SAP certifications.
  • Industry certifications such as CISSP, CCSP, CISM, AWS Security Specialty, Azure Security Engineer, or equivalent.
  • Experience with SAP AI Foundation, Joule, Joule for Developers, Generative AI Hub, vector databases, RAG architectures, and AI agent frameworks.
  • Experience implementing enterprise AI governance, observability, evaluation frameworks, and AI guardrails.
  • Experience with Dynatrace, SAP Cloud ALM, Splunk, Grafana, Prometheus, and enterprise monitoring platforms.
  • Experience securing Solace, Advanced Event Mesh, Apache Kafka, or similar messaging technologies.
  • Experience designing security architecture across multi-cloud and hybrid cloud environments.
  • Familiarity with CAP, RAP, ABAP Cloud, Fiori/UI5, GitHub, DevOps, and modern application lifecycle management practices.

#JNJTech

#LI-Hybrid

Johnson & Johnson is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, protected veteran status or other characteristics protected by federal, state or local law. We actively seek qualified candidates who are protected veterans and individuals with disabilities as defined under VEVRAA and Section 503 of the Rehabilitation Act.

Johnson & Johnson is committed to providing an interview process that is inclusive of our applicants’ needs. If you are an individual with a disability and would like to request an accommodation, please contact us via https://www.jnj.com/contact-us/careers or contact AskGS to be directed to your accommodation resource.


Required Skills:

Preferred Skills:

Budget Management, Business Architecture, Business Process Design, Business Savvy, Computer Programming, Developing Others, Human-Computer Interaction (HCI), Inclusive Leadership, Leadership, Motivating People, Platform as a Service (PaaS), Product Knowledge, Resource Allocation, Software Development Management, Strategic Change, Tactical Planning, Team Management, Technical Credibility

The anticipated base pay range for this position is :

$102,000 - $175,950

Additional Description for Pay Transparency:

Subject to the terms of their respective plans, employees and/or eligible dependents are eligible to participate in the following Company sponsored employee benefit programs: medical, dental, vision, life insurance, short- and long-term disability, business accident insurance, and group legal insurance. Subject to the terms of their respective plans, employees are eligible to participate in the Company’s consolidated retirement plan (pension) and savings plan (401(k)). Subject to the terms of their respective policies and date of hire, Employees are eligible for the following time off benefits: Vacation –120 hours per calendar year Sick time - 40 hours per calendar year; for employees who reside in the State of Washington –56 hours per calendar year Holiday pay, including Floating Holidays –13 days per calendar year Work, Personal and Family Time - up to 40 hours per calendar year Parental Leave – 480 hours within one year of the birth/adoption/foster care of a child Condolence Leave – 30 days for an immediate family member: 5 days for an extended family member Caregiver Leave – 10 days Volunteer Leave – 4 days Military Spouse Time-Off – 80 hours Additional information can be found through the link below. https://www.careers.jnj.com/employee-benefits

BAIP Security Manager – SAP BTP & AI Platform Security

Apply now
Share

Not ready for a new role right now?

No worries. Join our talent community. We’ll reach out when we post new jobs that match your interests and skills so you can apply when the time is right.

A man looking down at his mobile device