Manager, Cybersecurity & Information Protection (US)

Posted Yesterday
Be an Early Applicant
2 Locations
In-Office
106K-177K Annually
Mid level
Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
We’re in relentless pursuit of breakthroughs that change patients’ lives.
The Role
Leads Pfizer’s enterprise information protection and technology privacy program within Cybersecurity GRC. Advises stakeholders on cybersecurity, data privacy, regulatory compliance, and risk management; assesses initiatives and third parties; supports audits, inspections, incident response, and remediation; develops controls, policies, and standards; and advances data discovery, classification, labeling, and DLP capabilities across a regulated global pharmaceutical environment.
Summary Generated by Built In
ROLE SUMMARY
Our Global Cybersecurity Governance, Risk, and Compliance (GRC) team provides comprehensive blueprints for cybersecurity excellence by embedding governance, risk management, and compliance into every layer. The team is responsible for ensuring risk-based decision-making is used and that security, privacy, and regulatory compliance is integrated seamlessly with Pfizer's organization.
We are seeking a Manager, Information Protection & Technology Privacy, to lead and oversee the enterprise information protection program and serve as the primary Technology & Cyber Privacy Advisor within the Cyber GRC organization. This role ensures that sensitive data - across intellectual property, regulated data, and confidential business information - is appropriately classified, protected, and handled in alignment with Pfizer policies, regulatory expectations, and risk tolerance.
This role partners closely with Data Protection Engineering, Privacy, Legal, IT, Security Operations, and the DPO office to operationalize controls, drive adoption of data protection standards, ensure ongoing compliance across a complex, regulated pharmaceutical environment, and support Business Units in navigating privacy obligations across multiple jurisdictions.
ROLE RESPONSIBILITIES
  • Act as a trusted advisor on cybersecurity, information protection, and data privacy matters across the United States.
  • Partner with Business, Digital & Technology, Privacy, Legal, and Compliance stakeholders to provide pragmatic cybersecurity and information protection guidance for strategic initiatives, business transformations, and technology projects.
  • Assess and manage cybersecurity and information protection risks associated with business initiatives, applications, digital solutions, and third-party engagements.
  • Ensure compliance with applicable cybersecurity and data protection regulations across the United States, including CCPA/CPRA, HIPAA, state-level privacy laws (e.g., VCDPA, CPA, CTDPA), and related regulatory requirements.
  • Support regulatory inspections, audits, compliance reviews, and regulatory engagements as required.
  • Lead cybersecurity and data protection compliance programs, including regulatory assessments, filings, remediation planning, and related compliance activities.
  • Monitor emerging cybersecurity threats, regulatory developments, and compliance risks, and drive security awareness, risk management, and information protection initiatives across the organization.
  • Support on defining information protection controls for our organization to ensure regulatory compliance.
  • Experience with DLP and data discovery tools, as well as data labeling and tagging solutions, including deployment and ongoing support.
  • Support in the development of data protection policies and standards.
  • Support cybersecurity incident response, escalation, and remediation activities when required.
  • This role requires flexibility to collaborate with stakeholders and support business needs across multiple time zones, including occasional coordination with Latin America-based teams.

BASIC QUALIFICATIONS
  • Bachelor's degree in Information Security, Computer Science, Information Systems, Risk Management, or a related field with 4+ years of experience in cybersecurity, information security, data protection, privacy, regulatory compliance, risk management, or related disciplines, with at least 2 years in a supervisory or project leadership capacity; OR a master's degree with at least 2 years of experience; OR an associate's degree with 8 years of experience; OR a high school diploma (or equivalent) and 10 years of relevant experience.
  • Strong knowledge of cybersecurity governance, risk management, compliance frameworks, and applicable regulatory requirements.
  • Strong understanding of cybersecurity and data protection regulations, including CCPA/CPRA, HIPAA, and related U.S. state and federal requirements. Preferred knowledge of data protection and cybersecurity regulations across Latin America (e.g., LGPD in Brazil, Mexico's Federal Law on Protection of Personal Data, and other regional frameworks).
  • Experience supporting cybersecurity assessments, audits, regulatory inspections, compliance programs, or risk management initiatives.
  • Strong experience and hands on familiarity with technologies to build data discovery, classification and data loss prevention programs will be highly considered during the evaluation process.
  • Working knowledge of data encryption concepts and approaches across different environments.
  • Strong stakeholder management, communication, and influencing skills, with the ability to work effectively across business and technology functions in a global environment.
  • Strong project coordination across business and technical teams.
  • Professional proficiency in English; Spanish or Portuguese language is a plus.

PREFERRED QUALIFICATIONS
  • Professional certifications such as CISSP, CISA, CISM, CRISC, CIPP/E, CIPM, or equivalent are preferred.
  • Experience supporting cybersecurity, information protection, data privacy, or regulatory compliance programs within the pharmaceutical, healthcare, or life sciences industry is strongly preferred.
  • Hands‑on experience with GRC platforms (e.g., Archer).
  • Familiarity with privacy, intellectual property protection, and regulated data environments.

PHYSICAL/MENTAL REQUIREMENTS
  • No special physical requirements.
  • Applicants should be capable of working through a personal laptop computer or mobile device for extended periods.

NON-STANDARD WORK SCHEDULE, TRAVEL OR ENVIRONMENT REQUIREMENTS
  • Travel as required by the business (less than 5% domestic and/or international)
  • Work Location Assignment: Must be able to work in assigned Pfizer office 2-3 days per week, or as needed by the business
  • This role is NOT remote

The annual base salary for this position ranges from $106,000.00 to $176,600.00. In addition, this position is eligible for participation in Pfizer's Global Performance Plan with a bonus target of 15.0% of the base salary and eligibility to participate in our share based long term incentive program. We offer comprehensive and generous benefits and programs to help our colleagues lead healthy lives and to support each of life's moments. Benefits offered include a 401(k) plan with Pfizer Matching Contributions and an additional Pfizer Retirement Savings Contribution, paid vacation, holiday and personal days, paid caregiver/parental and medical leave, and health benefits to include medical, prescription drug, dental and vision coverage. Learn more at Pfizer Candidate Site - U.S. Benefits | (uscandidates.mypfizerbenefits.com). Pfizer compensation structures and benefit packages are aligned based on the location of hire. The United States salary range provided does not apply to Tampa, FL or any location outside of the United States.
This role is posted in multiple locations. If you are applying for the role in an secondary job posting location where pay transparency regulations apply, your Talent Advisor will share the local pay information with you during the first interview.
Relocation assistance may be available based on business needs and/or eligibility.
Candidates must be authorized to be employed in the U.S. by any employer.
U.S. work visa sponsorship (such as TN, O-1, H-1B, etc.) is not available for this role now or in the future.
Sunshine Act
Pfizer reports payments and other transfers of value to health care providers as required by federal and state transparency laws and implementing regulations. These laws and regulations require Pfizer to provide government agencies with information such as a health care provider's name, address and the type of payments or other value received, generally for public disclosure. Subject to further legal review and statutory or regulatory clarification, which Pfizer intends to pursue, reimbursement of recruiting expenses for licensed physicians may constitute a reportable transfer of value under the federal transparency law commonly known as the Sunshine Act. Therefore, if you are a licensed physician who incurs recruiting expenses as a result of interviewing with Pfizer that we pay or reimburse, your name, address and the amount of payments made currently will be reported to the government. If you have questions regarding this matter, please do not hesitate to contact your Talent Acquisition representative.
EEO & Employment Eligibility
Pfizer is committed to equal opportunity in the terms and conditions of employment for all employees and job applicants without regard to race, color, religion, sex, sexual orientation, age, gender identity or gender expression, national origin, disability or veteran status. Pfizer also complies with all applicable national, state and local laws governing nondiscrimination in employment as well as work authorization and employment eligibility verification requirements of the Immigration and Nationality Act and IRCA. Pfizer is an E-Verify employer. This position requires permanent work authorization in the United States.
Pfizer endeavors to make www.pfizer.com/careers accessible to all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process and/or interviewing, please email [email protected] . This is to be used solely for accommodation requests with respect to the accessibility of our website, online application process and/or interviewing. Requests for any other reason will not be returned.
To learn more about acceptable and prohibited uses of AI during the recruitment process, please review our candidate AI-use guidelines available on Pfizer Careers .
Information & Business Tech

Skills Required

  • Bachelor's degree in Information Security, Computer Science, Information Systems, Risk Management, or a related field, plus 4 or more years of relevant experience and at least 2 years in supervisory or project leadership capacity
  • Alternatively, a master's degree with at least 2 years of relevant experience
  • Alternatively, an associate's degree with 8 years of relevant experience
  • Alternatively, a high school diploma or equivalent with 10 years of relevant experience
  • Knowledge of cybersecurity governance, risk management, compliance frameworks, and regulatory requirements
  • Knowledge of cybersecurity and data protection regulations, including CCPA/CPRA and HIPAA
  • Experience supporting cybersecurity assessments, audits, regulatory inspections, compliance programs, or risk management initiatives
  • Hands-on experience building data discovery, classification, and data loss prevention programs
  • Working knowledge of data encryption concepts and approaches
  • Strong stakeholder management, communication, influencing, and project coordination skills
  • Professional proficiency in English
  • Professional certification such as CISSP, CISA, CISM, CRISC, CIPP/E, CIPM, or equivalent
  • Experience in pharmaceutical, healthcare, or life sciences cybersecurity, information protection, data privacy, or regulatory compliance
  • Hands-on experience with GRC platforms such as Archer
  • Familiarity with privacy, intellectual property protection, and regulated data environments
  • Spanish or Portuguese language proficiency

What the Team is Saying

Daniel
Anna
Esteban
Pfizer

Pfizer Compensation & Benefits Highlights

  • Healthcare Strength Health coverage is described as comprehensive, spanning medical, dental, vision, and robust mental‑health benefits, with eligible Pfizer medications available at no cost in U.S. plans. Family‑building support and transgender‑inclusive care are explicitly included, alongside wellbeing resources such as a reimbursement wallet and telehealth options.
  • Retirement Support Retirement programs feature a 401(k) with company matching plus an additional Retirement Savings Contribution, complemented by company‑subsidized life, short‑term disability, and long‑term disability insurance. Materials also reference subsidized retiree medical coverage for eligible groups.
  • Leave & Time Off Breadth Paid vacation, holidays, personal days, and paid parental and caregiver leave are consistently highlighted in current U.S. summaries and job postings. Options like buying extra vacation days and transition‑back support strengthen the time‑off offering.

Pfizer Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
121,990 Employees
Year Founded: 1848

What We Do

Our purpose ensures that patients remain at the center of all we do. We live our purpose by sourcing the best science in the world; partnering with others in the healthcare system to improve access to our medicines; using digital technologies to enhance our drug discovery and development, as well as patient outcomes; and leading the conversation to advocate for pro-innovation/pro-patient policies.

Why Work With Us

We are the inventors, the problem solvers, the big thinkers — those who surmount any hurdle to deliver breakthrough medicines to the people who are counting on them the most.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery

Pfizer Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Typical time on-site: 2.5 days a week
Company Office Image
HQHudson Yards
Provincia de Buenos Aires
Andover, MA
Athens, GR
Chennai, IN
Collegeville, PA
Durham, NC
Groton, CT
Madison, NJ
Madrid, ES
Mumbai, Maharashtra
Rochester, MI
San Diego, CA
Seattle, WA
Company Office Image
Tampa, FL
Center for Digital Innovation
Learn more

Similar Jobs

Pfizer Logo Pfizer

Senior Manager, AI, and Data Engineering

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office
4 Locations
121990 Employees
139K-232K Annually

Pfizer Logo Pfizer

Director, Consumer Products & Surfaces

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Hybrid
New York City, NY, USA
121990 Employees
163K-272K Annually

Pfizer Logo Pfizer

US Medical Affairs Business Operations Lead, HTA, Value & Evidence (HV&E)

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office
New York City, NY, USA
121990 Employees
177K-294K Annually

Pfizer Logo Pfizer

Integration Engineer

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office
2 Locations
121990 Employees
177K-294K Annually

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account