ActiveJobs

Senior Specialist ERP Security, Risk & Compliance Services,

Johnson & Johnson · Beerse, Antwerp, Belgium

Full-timeOn-sitePosted 2 September 2026
Apply on Company Site →

Job description

At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at jnj.com. As guided by Our Credo, Johnson & Johnson is responsible to our employees who work with us throughout the world. We provide an inclusive work environment where each person is considered as an individual. At Johnson & Johnson, we respect the diversity and dignity of our employees and recognize their merit. Job Function: Technology Enterprise Strategy & Security Job Sub Function: Security & Controls Job Category: Scientific/Technology All Job Posting Locations: Beerse, Antwerp, Belgium Job Description: Job Description Johnson & Johnson is seeking a Senior Specialist ERP Security, Risk & Compliance Services, within the Supply Chain Technology Services team. The position is based in EMEA-Belgium. Technology Services manages all IT infrastructure (architecture, engineering, deployment and support) for the Johnson & Johnson Family of companies world-wide. The Senior Specialist ERP Security, Risk & Compliance Services serves as a strategic leader and subject matter expert responsible for ERP security governance, SAP and JDE compliance programs, internal controls, audit readiness, and risk management. This role partners with business and technology stakeholders to ensure secure, compliant, and sustainable ERP operations while supporting regulatory requirements including SOX, GxP, Data Privacy, and cybersecurity standards. Key Responsibilities SAP & JDE Security Governance Define and maintain the strategic roadmap for ERP security, controls, and compliance across SAP and JDE environments. Serve as the functional and technical expert for SAP Security, SAP GRC, Access Controls, Emergency Access Management, Role Governance, and Segregation of Duties (SoD). Drive continuous improvement of enterprise security controls, governance frameworks, and compliance monitoring capabilities. Ensure alignment between global ERP security standards and regional business requirements. Risk Management & Internal Controls Lead ERP risk assessments and control reviews across SAP and JDE platforms. Partner with Internal Audit, Compliance, Quality, and Cyber Security teams to identify, assess, and mitigate control deficiencies. Oversee SoD risk analysis, remediation planning, mitigating controls, and ongoing monitoring. Support control design, testing, remediation, and documentation activities for major ERP transformation initiatives including SAP S/4HANA SOX Compliance & Audit Management Own and coordinate SAP and JDE SOX compliance activities across multiple ERP landscapes. Lead preparation, delivery, and governance of SOX reports, audit evidence, control documentation, and management responses. Manage internal and external audit engagements including SOX, financial, operational, cybersecurity, and regulatory audits. Coordinate audit requests, evidence collection, stakeholder engagement, remediation tracking, and audit status reporting. Ensure audit readiness through proactive monitoring of compliance obligations and control effectiveness. Identity & Access Management Oversee ERP user access governance processes including provisioning, role design, privileged access, periodic reviews, and certification activities. Drive standardization and optimization of SAP and JDE security role architectures. Ensure compliance with least-privilege principles and enterprise access management standards. Collaborate with cybersecurity and identity management teams to strengthen overall security posture. Strategic Leadership & Stakeholder Management Serve as the primary ERP Security and Compliance advisor for business leaders, technology teams, and project organizations. Lead both internal and external resources supporting ERP security and compliance services. Establish strong relationships with auditors, compliance organizations, security teams, business stakeholders, and external partners. Support enterprise transformation initiatives by embedding security, compliance, and risk management requirements into solution designs. Promote a culture of compliance, accountability, continuous improvement, and operational excellence. Qualifications Education Bachelor's degree in Information Technology, Computer Science, Information Systems, Cybersecurity, Accounting Information Systems, or a related discipline required. Master's degree or relevant professional certifications preferred Experience Minimum 5+ years supporting SAP and/or JDE ERP environments in a security, compliance, governance, or related technology role. Strong background in SAP Security, SAP GRC Access Control, Identity & Access Management (IAM), and compliance governance. Proven track record managing SOX compliance programs, IT General Controls (ITGCs), audit support activities, and controls remediation initiatives. Hands-on knowledge of Segregation of Duties (SoD) analysis, risk assessments, and control framework implementation. Familiarity with SAP S/4HANA security architecture, controls design, and transformation programs is preferred. Understanding of regulated environments and compliance requirements, including GxP, Data Privacy, Cybersecurity, and Data Security standards. Demonstrated ability to lead global initiatives, influence cross-functional stakeholders, and operate effectively within a complex matrix organization. What’s in it for you…? “Caring for the world, one person at a time…” As an employee we consider you as our most valuable asset. We take your career seriously. As part of a global team in an innovative environment your development is key and our day-to-day responsibility. Through e-university, on the job training, various projects and programs, we ensure your personal growth. Our benefits make sure we care for you and your family now and in the future. Required Skills: Preferred Skills: Communication, Corrective and Preventive Action (CAPA), Critical Thinking, Information Security Auditing, Information Security Management System (ISMS), Information Technology (IT) Security Assessments, Information Technology Strategies, Mentorship, Network Optimization, Presentation Design, Process Optimization, Report Writing, Security Policies, Technical Credibility, Technologically Savvy, Training People, Vulnerability Assessments The anticipated base pay range for this position is: €72,500.00 - €115,230.00 Benefits: In addition to base pay, we offer the following benefits*: an annual bonus with set target (% of pay) depending on pay grade / location, where the actual amount is based on the employees’ and companies’ performance of the previous calendar year, or sales commissions. Moreover, we offer vacation days, parental leave for a minimum of 12 weeks, bereavement leave, caregiver leave, volunteer leave, well-being reimbursement, programs for financial, physical and mental health. We also offer service anniversary and recognition awards, and subject to the terms of their respective plans, employees - and in some location’s eligible dependents - can participate in several insurance plans. For more information, visit Employee benefits | Supporting well-being & career growth | Johnson & Johnson Careers. *This is for informative purposes only. Amounts and actual benefits may vary by location and are subject to change.

Verified and listed by ActiveJobs. Applications are made directly on Johnson & Johnson's own career page — we never sit in the middle.