Associate, Third Party Risk Management

Posted Yesterday
Be an Early Applicant
Chortiatis, GRC
Hybrid
Junior
Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
We’re in relentless pursuit of breakthroughs that change patients’ lives.
The Role
Support end-to-end third‑party cyber risk assessments including intake, due diligence, risk evaluation, remediation tracking, reassessments, and maintaining TPRM documentation, metrics, and vendor risk records while coordinating with vendors and internal stakeholders.
Summary Generated by Built In
ROLE SUMMARY
Our Global Governance, Risk, and Compliance (GRC) team provides comprehensive blueprints for cybersecurity excellence by embedding governance, risk management, and compliance into every layer. The team is responsible for ensuring risk-based decision-making is used and that security, privacy, and regulatory compliance is integrated seamlessly with Pfizer's organization.
We are looking for an Associate to join our Third-Party Risk Management team, supporting key activities such as due‑diligence reviews, audit support, and maintaining accurate vendor risk records. This role involves engaging with third parties to complete risk assessments, collecting required evidence, ensuring updates are captured, and maintaining visibility into third‑party risks.
ROLE RESPONSIBILITIES
  • Support the end‑to‑end lifecycle of cyber TPRM assessments: intake, scoping, due diligence, risk evaluation, documentation, remediation tracking, and closure.
  • Assist in maintaining TPRM documentation, templates, and processes to support a consistent approach across vendors.
  • Support vendor assessments by gathering security documents, reviewing information, and highlighting gaps that differ from the policies.
  • Assist with due‑diligence activities by sending questionnaires, tracking responses, and ensuring information is complete.
  • Assist and track remediation plans and due dates with vendors and internal stakeholders for identified gaps.
  • Track open items through to closure, ensuring evidence meets documentation standards.
  • Assist with periodic reassessments and continuous monitoring activities for higher‑risk vendors, including change‑triggered reviews (e.g., new data types, expanded scope, incidents, acquisitions).
  • Produce and maintain TPRM operational metrics and dashboards.

BASIC QUALIFICATIONS
  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related field OR equivalent practical experience.
  • 1-2 years of experience in information security, risk, compliance, information protection, or related disciplines.
  • Experience with audits, assessments or compliance reviews.
  • Excellent collaboration and interpersonal skills, with the ability to work effectively across levels and functions to support program objectives.
  • Experience reviewing documents, questionnaires, or technical evidence with attention to detail.
  • Strong business communication skills and organizational skills with the ability to manage multiple assessments/tasks in parallel.

PREFERRED QUALIFICATIONS
  • Experience working in pharmaceuticals industry.
  • Professional certifications such as CISSP, CISM, CRISC, CISA, PMP, or similar.
  • Experience with GRC/TPRM tools (e.g., Archer).
  • Demonstrated experience in an agile work environment possessing qualities such as a collaborative mindset, adaptability to change, and a proactive problem-solving approach.

NON-STANDARD WORK SCHEDULE, TRAVEL OR ENVIRONMENT REQUIREMENTS
  • Travel as required by the business (less than 20% domestic and/or international)
  • Work Location Assignment: Must be able to work in assigned Pfizer office 2-3 days per week, or as needed by the business

Please apply by sending your CV in English.
Work Location Assignment: Hybrid
Purpose
Breakthroughs that change patients' lives... At Pfizer we are a patient centric company, guided by our four values: courage, joy, equity and excellence. Our breakthrough culture lends itself to our dedication to transforming millions of lives.
Digital Transformation Strategy
One bold way we are achieving our purpose is through our company wide digital transformation strategy. We are leading the way in adopting new data, modelling and automated solutions to further digitize and accelerate drug discovery and development with the aim of enhancing health outcomes and the patient experience.
Flexibility
We aim to create a trusting, flexible workplace culture which encourages employees to achieve work life harmony, attracts talent and enables everyone to be their best working self. Let's start the conversation!
Equal Employment Opportunity
We believe that a diverse and inclusive workforce is crucial to building a successful business. As an employer, Pfizer is committed to celebrating this, in all its forms - allowing for us to be as diverse as the patients and communities we serve. Together, we continue to build a culture that encourages, supports and empowers our employees.
Disability Inclusion
Our mission is unleashing the power of all our people and we are proud to be a disability inclusive employer, ensuring equal employment opportunities for all candidates. We encourage you to put your best self forward with the knowledge and trust that we will make any reasonable adjustments to support your application and future career. Your journey with Pfizer starts here!
Pfizer endeavors to make www.pfizer.com/careers accessible to all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process and/or interviewing, please email [email protected]. This is to be used solely for accommodation requests with respect to the accessibility of our website, online application process and/or interviewing. Requests for any other reason will not be returned.
To learn more about acceptable and prohibited uses of AI during the recruitment process, please review our candidate AI-use guidelines available on Pfizer Careers .
Information & Business Tech

Skills Required

  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related field OR equivalent practical experience
  • 1-2 years of experience in information security, risk, compliance, information protection, or related disciplines
  • Experience with audits, assessments or compliance reviews
  • Experience reviewing documents, questionnaires, or technical evidence with attention to detail
  • Excellent collaboration and interpersonal skills; ability to work across levels and functions
  • Strong business communication and organizational skills; ability to manage multiple assessments/tasks in parallel
  • Ability to work in assigned Pfizer office 2-3 days per week (hybrid)
  • Experience working in pharmaceuticals industry
  • Professional certifications such as CISSP, CISM, CRISC, CISA, PMP, or similar
  • Experience with GRC/TPRM tools (e.g., Archer)
  • Demonstrated experience in an agile work environment

What the Team is Saying

Daniel
Anna
Esteban
Pfizer

Pfizer Compensation & Benefits Highlights

  • Healthcare Strength Health coverage includes comprehensive medical with robust mental‑health networks, plus dental and vision options, and coverage for infertility/family‑building and transgender‑affirming care. Recent U.S. summaries name mental‑health partners and outline multiple plan choices.
  • Retirement Support The retirement program provides a 401(k) with company match plus an additional employer Retirement Savings Contribution, along with financial‑planning support and company‑paid life and disability insurance. These elements are highlighted as part of the core U.S. package.
  • Parental & Family Support Parental leave is described as up to 26 weeks in the U.S. when combining paid non‑medical parental leave with medical recovery where applicable, with exact pay and weeks dependent on circumstances and plan elections. Family‑building support includes egg preservation, adoption, and surrogacy coverage.

Pfizer Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
121,990 Employees
Year Founded: 1848

What We Do

Our purpose ensures that patients remain at the center of all we do. We live our purpose by sourcing the best science in the world; partnering with others in the healthcare system to improve access to our medicines; using digital technologies to enhance our drug discovery and development, as well as patient outcomes; and leading the conversation to advocate for pro-innovation/pro-patient policies.

Why Work With Us

We are the inventors, the problem solvers, the big thinkers — those who surmount any hurdle to deliver breakthrough medicines to the people who are counting on them the most.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery

Pfizer Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Typical time on-site: Not Specified
Company Office Image
HQHudson Yards
Provincia de Buenos Aires
Andover, MA
Athens, GR
Chennai, IN
Collegeville, PA
Cork, IE
Dublin, IE
Durham, NC
Groton, CT
Kildare, IE
Madison, NJ
Madrid, ES
Mumbai, Maharashtra
Rochester, MI
San Diego, CA
Seattle, WA
Company Office Image
Heights Union East
Center for Digital Innovation
Learn more

Similar Jobs

Pfizer Logo Pfizer

Sr. Associate, Business Intelligence Visualizations and Reporting

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Hybrid
Chortiatis, GRC
121990 Employees

Pfizer Logo Pfizer

Associate, Technical Information Security Enablement

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Hybrid
Chortiatis, GRC
121990 Employees

Pfizer Logo Pfizer

Senior Manager, Threat Remediation

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Hybrid
Chortiatis, GRC
121990 Employees

Pfizer Logo Pfizer

Manager, Service Transition

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Hybrid
Chortiatis, GRC
121990 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account