Pfizer
Manager, Cyber Policy, Governance, Standards & Control Management
United States - New York - New York City
Sponsorship not specified$99k-$165kDetected 3 days ago
CybersecurityComplianceAccessibilityRecruitingLeadershipCommunicationProblem SolvingAdaptability
About the role
- ROLE SUMMARY Our Global Cybersecurity Governance, Risk, and Compliance (GRC) team provides comprehensive blueprints for cybersecurity excellence by embedding governance, risk management, and compliance into every layer.
- The team is responsible for ensuring risk-based decision-making is used and that security, privacy, and regulatory compliance is integrated seamlessly with Pfizer's organization.
- The United States salary range provided does not apply to Tampa, FL or any location outside of the United States.
Responsibilities
- Lead the lifecycle management of enterprise cybersecurity policies, standards, baselines, and supporting governance documents.
- Establish and maintain a structured policy governance framework, including review cycles, approvals, exception management, and stakeholder engagement.
- Manage governance processes that provide oversight of cybersecurity program effectiveness, compliance, and risk posture.
- Develop governance reporting, metrics, and key performance indicators (KPIs) to measure program maturity and control effectiveness.
- Maintain the enterprise cybersecurity controls framework and control library.
- Collaborate with cyber risk, audit, compliance, privacy, and quality teams to address findings, control gaps, and remediation activities.
- Support internal audits, regulatory inspections, assessments, and external assurance activities.
- Build strong partnerships across cybersecurity, technology, business, legal, privacy, and compliance functions.
- Lead and mentor cybersecurity governance professionals and project teams.
- Support mapping of security controls to industry frameworks and regulatory requirements, including NIST CSF 2.0, ISO 27001, NIST 800-53, CIS Controls, NIS2, and applicable pharmaceutical regulations.
Requirements
- Bachelor's degree required
- 4+ years of experience in cybersecurity, enterprise risk management, cyber risk analysis, or GRC-related roles
- Strong knowledge of cybersecurity frameworks and standards, including NIST CSF 2.0, CIS, COBIT, ISO
- Strong strategic thinking, analytical capability, and problem-solving skills, ability to translate technical risk insights into recommendations
- ability to influence across levels and functions
- Experience with GRC tools like Archer, or similar technologies
- Demonstrated experience in an agile work environment possessing qualities such as a collaborative mindset, adaptability to change, and a proactive problem-solving approach.
Nice to have
- Excellent strategic thinking
- Deeply analytical and credible
- Fact-based decision-making
- Excellent communication and presentation skills
- Ability to bring structure to vaguely defined problems and solve them with creative yet pragmatic approaches
- No special physical requirements.
- Applicants should be capable of working through a personal laptop computer or mobile device for extended periods.
- Travel as required by the business (less than 5% domestic and/or international)
Compensation
- The annual base salary for this position ranges from $99,200.00 to $165,400.00.
Benefits
- Learn more at Pfizer Candidate Site - U.S. Benefits | (uscandidates.mypfizerbenefits.com).
- Pfizer reports payments and other transfers of value to health care providers as required by federal and state transparency laws and implementing regulations.
- These laws and regulations require Pfizer to provide government agencies with information such as a health care provider's name, address and the type of payments or other value received, generally for public disclosure.
- In addition, this position is eligible for participation in Pfizer's Global Performance Plan with a bonus target of 12.5% of the base salary and eligibility to participate in our share based long term incentive program.
- We offer comprehensive and generous benefits and programs to help our colleagues lead healthy lives and to support each of life's moments.
- Pfizer compensation structures and benefit packages are aligned based on the location of hire.
Equal opportunity
- EEO & Employment Eligibility
Visa & Work Authorization
- U.S. work visa sponsorship (such as TN, O-1, H-1B, etc.) is not available for this role now or in the future.
This listing is sourced directly from Pfizer's careers page and normalized into a canonical job model.