Sr. Associate, Technical Information Security Lead
ROLE SUMMARY Our Global Cybersecurity Governance, Risk, and Compliance (GRC) team provides comprehensive blueprints for cybersecurity excellence by embedding governance, risk management, and compliance into every layer. The team is responsible for ensuring risk-based decision-making is used, and that security, privacy, and regulatory compliance is integrated seamlessly with Pfizer’s organization. We are seeking a motivated Senior Associate, Technical Information Security Lead, who will partner with business and technology stakeholders, execute technical risk assessments, and support risk‑informed decision-making across complex initiatives and platforms. ROLE RESPONSIBILITIESServe as the Technical Information Security Lead for assigned business units, programs, or technology domains.Collaborate with Cybersecurity/GRC and business stakeholders, ensuring security considerations are embedded early and effectively.Build trusted relationships with Business Units, IT, Engineering, Cloud Services, Privacy, Legal, and other key stakeholders and teams.Translate technical security risks into clear, actionable risk statements and recommendations tailored to business audiences.Partner with technology and business owners to define risk mitigation strategies, remediation plans, and compensating controls.Contribute to the evolution of risk assessment methodologies, standards, templates, and engagement models.Develop and maintain security standards, technical guidance, and implementation patterns aligned with enterprise frameworks and industry practices.Support communication of security requirements, risks, and control effectiveness to technical and non-technical stakeholders.Evaluate emerging threats and technologies and recommend security improvements.BASIC QUALIFICATIONSBachelor’s degree in Cybersecurity, Information Systems, Computer Science, Risk Management, or related field, or a related field.2+ years of experience in information security, cyber risk, GRC, security architecture, IT risk, or audit.Ability to communicate complex technical risks to senior business stakeholders.Strong documentation, analytical, and decision‑making skills.Experience operating in a highly regulated, matrixed enterprise environment.Demonstrated experience in an agile work environment possessing qualities such as a collaborative mindset, adaptability to change, and a proactive problem-solving approach.PREFERRED QUALIFICATIONSDemonstrated experience working in the pharmaceuticals industry.Professional certifications such as CISSP, CISM, CRISC, CISA, or similar.Familiarity with GRC platforms (e.g., Archer). NON-STANDARD WORK SCHEDULE, TRAVEL OR ENVIRONMENT REQUIREMENTSTravel as required by the business (less than 20% domestic and/or international)Work Location Assignment: Must be able to work in assigned Pfizer office 2-3 days per week, or as needed by the businessThis role is NOT remote Please apply by sending your CV in English.Work Location...