At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at jnj.com.
As guided by Our Credo, Johnson & Johnson is responsible to our employees who work with us throughout the world. We provide an inclusive work environment where each person is considered as an individual. At Johnson & Johnson, we respect the diversity and dignity of our employees and recognize their merit.
Job Function:
Technology Enterprise Strategy & SecurityJob Sub Function:
Security & ControlsJob Category:
Scientific/TechnologyAll Job Posting Locations:
Beerse, Antwerp, BelgiumJob Description:
Job DescriptionJohnson & Johnson is seeking a Senior Specialist ERP Security, Risk & Compliance Services, within the Supply Chain Technology Services team. The position is based in EMEA-Belgium.
Technology Services manages all IT infrastructure (architecture, engineering, deployment and support) for the Johnson & Johnson Family of companies world-wide.
The Senior Specialist ERP Security, Risk & Compliance Services serves as a strategic leader and subject matter expert responsible for ERP security governance, SAP and JDE compliance programs, internal controls, audit readiness, and risk management. This role partners with business and technology stakeholders to ensure secure, compliant, and sustainable ERP operations while supporting regulatory requirements including SOX, GxP, Data Privacy, and cybersecurity standards.
Key Responsibilities
SAP & JDE Security Governance
- Define and maintain the strategic roadmap for ERP security, controls, and compliance across SAP and JDE environments.
- Serve as the functional and technical expert for SAP Security, SAP GRC, Access Controls, Emergency Access Management, Role Governance, and Segregation of Duties (SoD).
- Drive continuous improvement of enterprise security controls, governance frameworks, and compliance monitoring capabilities.
- Ensure alignment between global ERP security standards and regional business requirements.
Risk Management & Internal Controls
- Lead ERP risk assessments and control reviews across SAP and JDE platforms.
- Partner with Internal Audit, Compliance, Quality, and Cyber Security teams to identify, assess, and mitigate control deficiencies.
- Oversee SoD risk analysis, remediation planning, mitigating controls, and ongoing monitoring.
- Support control design, testing, remediation, and documentation activities for major ERP transformation initiatives including SAP S/4HANA
SOX Compliance & Audit Management
- Own and coordinate SAP and JDE SOX compliance activities across multiple ERP landscapes.
- Lead preparation, delivery, and governance of SOX reports, audit evidence, control documentation, and management responses.
- Manage internal and external audit engagements including SOX, financial, operational, cybersecurity, and regulatory audits.
- Coordinate audit requests, evidence collection, stakeholder engagement, remediation tracking, and audit status reporting.
- Ensure audit readiness through proactive monitoring of compliance obligations and control effectiveness.
Identity & Access Management
- Oversee ERP user access governance processes including provisioning, role design, privileged access, periodic reviews, and certification activities.
- Drive standardization and optimization of SAP and JDE security role architectures.
- Ensure compliance with least-privilege principles and enterprise access management standards.
- Collaborate with cybersecurity and identity management teams to strengthen overall security posture.
Strategic Leadership & Stakeholder Management
- Serve as the primary ERP Security and Compliance advisor for business leaders, technology teams, and project organizations.
- Lead both internal and external resources supporting ERP security and compliance services.
- Establish strong relationships with auditors, compliance organizations, security teams, business stakeholders, and external partners.
- Support enterprise transformation initiatives by embedding security, compliance, and risk management requirements into solution designs.
- Promote a culture of compliance, accountability, continuous improvement, and operational excellence.
Qualifications
Education
- Bachelor's degree in Information Technology, Computer Science, Information Systems, Cybersecurity, Accounting Information Systems, or a related discipline required.
- Master's degree or relevant professional certifications preferred
Experience
- Minimum 5+ years supporting SAP and/or JDE ERP environments in a security, compliance, governance, or related technology role.
- Strong background in SAP Security, SAP GRC Access Control, Identity & Access Management (IAM), and compliance governance.
- Proven track record managing SOX compliance programs, IT General Controls (ITGCs), audit support activities, and controls remediation initiatives.
- Hands-on knowledge of Segregation of Duties (SoD) analysis, risk assessments, and control framework implementation.
- Familiarity with SAP S/4HANA security architecture, controls design, and transformation programs is preferred.
- Understanding of regulated environments and compliance requirements, including GxP, Data Privacy, Cybersecurity, and Data Security standards.
- Demonstrated ability to lead global initiatives, influence cross-functional stakeholders, and operate effectively within a complex matrix organization.
What’s in it for you…?
“Caring for the world, one person at a time…”
As an employee we consider you as our most valuable asset. We take your career seriously. As part of a global team in an innovative environment your development is key and our day-to-day responsibility. Through e-university, on the job training, various projects and programs, we ensure your personal growth.
Our benefits make sure we care for you and your family now and in the future.
Required Skills:
Preferred Skills:
Communication, Corrective and Preventive Action (CAPA), Critical Thinking, Information Security Auditing, Information Security Management System (ISMS), Information Technology (IT) Security Assessments, Information Technology Strategies, Mentorship, Network Optimization, Presentation Design, Process Optimization, Report Writing, Security Policies, Technical Credibility, Technologically Savvy, Training People, Vulnerability Assessments
The anticipated base pay range for this position is:
€72,500.00 - €115,230.00Benefits:
In addition to base pay, we offer the following benefits*: an annual bonus with set target (% of pay) depending on pay grade / location, where the actual amount is based on the employees’ and companies’ performance of the previous calendar year, or sales commissions. Moreover, we offer vacation days, parental leave for a minimum of 12 weeks, bereavement leave, caregiver leave, volunteer leave, well-being reimbursement, programs for financial, physical and mental health. We also offer service anniversary and recognition awards, and subject to the terms of their respective plans, employees - and in some location’s eligible dependents - can participate in several insurance plans. For more information, visit Employee benefits | Supporting well-being & career growth | Johnson & Johnson Careers.
*This is for informative purposes only. Amounts and actual benefits may vary by location and are subject to change.
Skills Required
- Bachelor's degree in Information Technology, Computer Science, Information Systems, Cybersecurity, Accounting Information Systems, or a related discipline
- At least 5 years supporting SAP and/or JDE ERP environments in security, compliance, governance, or a related technology role
- Strong experience with SAP Security, SAP GRC Access Control, Identity and Access Management, and compliance governance
- Experience managing SOX compliance programs, IT General Controls, audit support, and controls remediation initiatives
- Hands-on knowledge of Segregation of Duties analysis, risk assessments, and control framework implementation
- Familiarity with SAP S/4HANA security architecture, controls design, and transformation programs
- Understanding of regulated environments and GxP, data privacy, cybersecurity, and data security requirements
- Ability to lead global initiatives, influence cross-functional stakeholders, and operate within a complex matrix organization
- Master's degree or relevant professional certifications
Johnson & Johnson Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Johnson & Johnson and has not been reviewed or approved by Johnson & Johnson.
-
Healthcare Strength — Healthcare coverage is characterized as comprehensive across medical, dental, and vision, with added supports like onsite clinics, fitness centers, and Employee Assistance resources. Mental-health services and wellbeing reimbursements are also described as meaningful components of the overall package.
-
Retirement Support — Retirement offerings are portrayed as a major differentiator, combining a 401(k) with employer matching and an employer-funded pension plan. Stock options and other long-term financial supports are also positioned as part of the broader rewards mix.
-
Parental & Family Support — Family-related benefits are presented as notably strong, including paid parental leave for all new parents and additional leave types for caregiving and bereavement. Financial assistance for adoption, fertility treatment, and surrogacy is highlighted as a significant support.
Johnson & Johnson Insights
What We Do
Profound Change Requires Boldness. Johnson & Johnson is the largest and most broadly based healthcare company in the world. We’re producing life-changing breakthroughs every day, and have been for the last 130 years. The combination of new technologies and your expertise enables amazing things to happen. Teams from J&J’s consumer business are creating digital tools to help people track the health of their skin. Those working in medical devices are 3-D printing artificial joints personalized for each patient, while researchers in pharmaceuticals use AI to discover lifesaving drugs. Imagine what the rest of our team of 134,000 people at 260 companies in more than 60 countries across the world is accomplishing. We redefine what it means to be a big company in today’s world. Social Media Community Guidelines: http://www.jnj.com/social-media-community-guidelines







