Principal, Database Security Engineering

Johnson & Johnson Johnson & Johnson · Pharma · São José dos Campos, São Paulo, Brazil

This role focuses on establishing and operating a L3 Support function for Database Activity Monitoring (DAM) using IBM Guardium. Responsibilities include installing patches, resolving critical issues, tuning policies, assisting with incident response, and maintaining documentation to enhance data security and regulatory compliance.

What you'd actually do

  1. Install patches and new GDP releases on servers and agents
  2. Fix and resolve production issues advanced by L1/L2
  3. Support UAT tests
  4. Tune GDP policies to reduce false positives
  5. Assist security incident response

Skills

Required

  • Cybersecurity
  • Database Administration
  • Data Security
  • Data Security Management
  • Microsoft SQL Server DBA
  • IT infrastructure and DBMS platform security risk management
  • vulnerability management/security configurations
  • SQL
  • database security hardening
  • CIS Benchmarks
  • cloud security solutions
  • Identity Management integrations
  • threat modeling
  • communication
  • executive reporting

Nice to have

  • CISSP
  • GIAC
  • OSCP
  • NIST CSF
  • 800-53
  • ISO 27001
  • PCI-DSS
  • HIPAA
  • controlled exploitation simulations
  • red-team/blue-team exercises
  • AKS/EKS clusters
  • Docker containers
  • HELM Chart
  • XENA
  • Load balancers
  • TLS
  • Network security
  • Business Process Design
  • Crisis Management
  • Critical Thinking
  • Information Security Auditing
  • Information Security Management System (ISMS)
  • Information Technology (IT) Security Assessments
  • Information Technology Strategies
  • Mentorship
  • Organizing
  • Presentation Design
  • Process Optimization
  • Root Cause Analysis (RCA)
  • Security Architecture Design
  • Security Policies
  • Technical Credibility
  • Vulnerability Management

What the JD emphasized

  • L3 Support function for Database Activity Monitoring (DAM)
  • IBM Guardium (or equivalent DAM)
  • Guardium Data Protection (GDP) maintenance and optimization
  • regulatory compliance