Lead technical information security and cyber risk assessments for assigned business units, programs, and technology domains. Translate technical risks into actionable recommendations, develop mitigation and remediation plans, maintain security standards and guidance, communicate control effectiveness, and evaluate emerging threats and technologies. Partner closely with cybersecurity, GRC, IT, engineering, cloud, privacy, legal, and business stakeholders in a regulated enterprise environment.
ROLE SUMMARY
Our Global Cybersecurity Governance, Risk, and Compliance (GRC) team provides comprehensive blueprints for cybersecurity excellence by embedding governance, risk management, and compliance into every layer. The team is responsible for ensuring risk-based decision-making is used, and that security, privacy, and regulatory compliance is integrated seamlessly with Pfizer's organization.
We are seeking a motivated Senior Associate, Technical Information Security Lead, who will partner with business and technology stakeholders, execute technical risk assessments, and support risk ‑ informed decision-making across complex initiatives and platforms.
ROLE RESPONSIBILITIES
BASIC QUALIFICATIONS
PREFERRED QUALIFICATIONS
NON-STANDARD WORK SCHEDULE, TRAVEL OR ENVIRONMENT REQUIREMENTS
Please apply by sending your CV in English.
Work Location Assignment: Hybrid
Purpose
Breakthroughs that change patients' lives... At Pfizer we are a patient centric company, guided by our four values: courage, joy, equity and excellence. Our breakthrough culture lends itself to our dedication to transforming millions of lives.
Digital Transformation Strategy
One bold way we are achieving our purpose is through our company wide digital transformation strategy. We are leading the way in adopting new data, modelling and automated solutions to further digitize and accelerate drug discovery and development with the aim of enhancing health outcomes and the patient experience.
Flexibility
We aim to create a trusting, flexible workplace culture which encourages employees to achieve work life harmony, attracts talent and enables everyone to be their best working self. Let's start the conversation!
Equal Employment Opportunity
We believe that a diverse and inclusive workforce is crucial to building a successful business. As an employer, Pfizer is committed to celebrating this, in all its forms - allowing for us to be as diverse as the patients and communities we serve. Together, we continue to build a culture that encourages, supports and empowers our employees.
Disability Inclusion
Our mission is unleashing the power of all our people and we are proud to be a disability inclusive employer, ensuring equal employment opportunities for all candidates. We encourage you to put your best self forward with the knowledge and trust that we will make any reasonable adjustments to support your application and future career. Your journey with Pfizer starts here!
Pfizer endeavors to make www.pfizer.com/careers accessible to all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process and/or interviewing, please email [email protected]. This is to be used solely for accommodation requests with respect to the accessibility of our website, online application process and/or interviewing. Requests for any other reason will not be returned.
To learn more about acceptable and prohibited uses of AI during the recruitment process, please review our candidate AI-use guidelines available on Pfizer Careers .
Information & Business Tech
#BI-Hybrid
Our Global Cybersecurity Governance, Risk, and Compliance (GRC) team provides comprehensive blueprints for cybersecurity excellence by embedding governance, risk management, and compliance into every layer. The team is responsible for ensuring risk-based decision-making is used, and that security, privacy, and regulatory compliance is integrated seamlessly with Pfizer's organization.
We are seeking a motivated Senior Associate, Technical Information Security Lead, who will partner with business and technology stakeholders, execute technical risk assessments, and support risk ‑ informed decision-making across complex initiatives and platforms.
ROLE RESPONSIBILITIES
- Serve as the Technical Information Security Lead for assigned business units, programs, or technology domains.
- Collaborate with Cybersecurity/GRC and business stakeholders, ensuring security considerations are embedded early and effectively.
- Build trusted relationships with Business Units, IT, Engineering, Cloud Services, Privacy, Legal, and other key stakeholders and teams.
- Translate technical security risks into clear, actionable risk statements and recommendations tailored to business audiences.
- Partner with technology and business owners to define risk mitigation strategies, remediation plans, and compensating controls.
- Contribute to the evolution of risk assessment methodologies, standards, templates, and engagement models.
- Develop and maintain security standards, technical guidance, and implementation patterns aligned with enterprise frameworks and industry practices.
- Support communication of security requirements, risks, and control effectiveness to technical and non-technical stakeholders.
- Evaluate emerging threats and technologies and recommend security improvements.
BASIC QUALIFICATIONS
- Bachelor's degree in Cybersecurity, Information Systems, Computer Science, Risk Management, or related field, or a related field.
- 2+ years of experience in information security, cyber risk, GRC, security architecture, IT risk, or audit.
- Ability to communicate complex technical risks to senior business stakeholders.
- Strong documentation, analytical, and decision‑making skills.
- Experience operating in a highly regulated, matrixed enterprise environment.
- Demonstrated experience in an agile work environment possessing qualities such as a collaborative mindset, adaptability to change, and a proactive problem-solving approach.
PREFERRED QUALIFICATIONS
- Demonstrated experience working in the pharmaceuticals industry.
- Professional certifications such as CISSP, CISM, CRISC, CISA, or similar.
- Familiarity with GRC platforms (e.g., Archer).
NON-STANDARD WORK SCHEDULE, TRAVEL OR ENVIRONMENT REQUIREMENTS
- Travel as required by the business (less than 20% domestic and/or international)
- Work Location Assignment: Must be able to work in assigned Pfizer office 2-3 days per week, or as needed by the business
- This role is NOT remote
Please apply by sending your CV in English.
Work Location Assignment: Hybrid
Purpose
Breakthroughs that change patients' lives... At Pfizer we are a patient centric company, guided by our four values: courage, joy, equity and excellence. Our breakthrough culture lends itself to our dedication to transforming millions of lives.
Digital Transformation Strategy
One bold way we are achieving our purpose is through our company wide digital transformation strategy. We are leading the way in adopting new data, modelling and automated solutions to further digitize and accelerate drug discovery and development with the aim of enhancing health outcomes and the patient experience.
Flexibility
We aim to create a trusting, flexible workplace culture which encourages employees to achieve work life harmony, attracts talent and enables everyone to be their best working self. Let's start the conversation!
Equal Employment Opportunity
We believe that a diverse and inclusive workforce is crucial to building a successful business. As an employer, Pfizer is committed to celebrating this, in all its forms - allowing for us to be as diverse as the patients and communities we serve. Together, we continue to build a culture that encourages, supports and empowers our employees.
Disability Inclusion
Our mission is unleashing the power of all our people and we are proud to be a disability inclusive employer, ensuring equal employment opportunities for all candidates. We encourage you to put your best self forward with the knowledge and trust that we will make any reasonable adjustments to support your application and future career. Your journey with Pfizer starts here!
Pfizer endeavors to make www.pfizer.com/careers accessible to all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process and/or interviewing, please email [email protected]. This is to be used solely for accommodation requests with respect to the accessibility of our website, online application process and/or interviewing. Requests for any other reason will not be returned.
To learn more about acceptable and prohibited uses of AI during the recruitment process, please review our candidate AI-use guidelines available on Pfizer Careers .
Information & Business Tech
#BI-Hybrid
Similar Jobs at Pfizer
Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Leads measurement and product marketing for eight enterprise AI platforms. Builds shared KPI, taxonomy, scorecard, data-quality, and value-realization frameworks; translates usage and outcome data into executive insights and investment guidance. Oversees positioning, internal launches, campaigns, enablement, adoption, and audience segmentation. Partners across product, engineering, data, communications, and business teams while building and managing teams responsible for analytics, marketing, and communications.
Top Skills:
Ai PlatformsBusiness IntelligenceDashboardsData ContractsData FabricData VisualizationEvent TaxonomyExperimentationKnowledge GraphsKpi FrameworksOkr PlatformsProduct AnalyticsTelemetry
Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Leads product strategy, roadmap, lifecycle ownership, adoption, and measurable outcomes for a greenfield enterprise AI platform. Defines platform boundaries, governance controls, evaluation, registration, and cost-tracking capabilities while translating evolving risk, privacy, security, and GxP requirements into usable product features. Partners with engineering, design, legal, compliance, risk, security, and global agent-building teams to prioritize investments, guide delivery, communicate direction, and drive platform adoption.
Top Skills:
AgileAIAi AgentsAi GovernanceGxpLeanModel Evaluation
Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Supports the end-to-end lifecycle of cybersecurity third-party risk assessments, including intake, due diligence, evidence collection, risk evaluation, remediation tracking, documentation, and closure. Maintains vendor risk records, templates, processes, dashboards, and operational metrics. Coordinates questionnaires and reassessments with vendors and internal stakeholders, monitors higher-risk vendors, identifies policy gaps, and ensures remediation evidence meets documentation standards.
Top Skills:
ArcherCybersecurityGrcTprm
What you need to know about the Dublin Tech Scene
From Bono and Oscar Wilde to today's tech leaders, Dublin has always attracted trailblazers, with more than 70,000 people working in the city's expanding digital sector. Continuing its legacy of drawing pioneers, the city is advancing rapidly. Ireland is now ranked as one of the top tech clusters in the region and the number one destination for digital companies, with the highest hiring intention of any region across all sectors.

