
Gary Harbison is the Chief Information Security Officer (CISO) at Johnson & Johnson, a role he has held since joining the company in October 2022. He leads the Information Security and Risk Management (ISRM) organization, responsible for protecting J&J’s critical data while advancing global security strategy, cybersecurity transformation across products and services, and enterprise technology risk management.
Gary has 30 years of technology, information security and risk management experience across multiple Fortune 500 companies and the U.S. Department of Defense. His background spans security architecture, threat intelligence, and senior leadership roles focused on building high-performing, business-aligned teams. Before joining J&J, Gary served as CISO at Bayer.
Gary is an active contributor to the cybersecurity community, serving on advisory boards, mentoring startups, and advising universities. He is an adjunct professor at Washington University and holds a Bachelor of Business Administration degree from Webster University.