Senior Manager, Offensive Security

Posted 4 Hours Ago
Be an Early Applicant
Chortiatis, GRC
Hybrid
Senior level
Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
We’re in relentless pursuit of breakthroughs that change patients’ lives.
The Role
The Senior Manager, Offensive Security leads offensive security initiatives, including penetration testing and risk assessment, to enhance cybersecurity across Pfizer's digital environment.
Summary Generated by Built In
ROLE SUMMARY
Our Global Cyber Defense team is responsible for safeguarding Pfizer's digital assets and infrastructure through proactive threat detection, response, and risk mitigation across on-premises, cloud, and hybrid environments.
The Senior Manager, Offensive Security is responsible for leading enterprise offensive security capabilities that proactively identify, validate, and prioritize security weaknesses across the digital environment. Reporting to the Director of Threat & Exposure Management, this role oversees activities such as penetration testing, red and purple team exercises, and adversary simulation to continuously assess the organization's exposure to real‑world threats. Operating within a highly regulated pharmaceutical environment, the role partners closely with detection, remediation, engineering, and risk teams to translate offensive findings into measurable risk reduction and improved defensive outcomes.
ROLE RESPONSIBILITIES
  • Lead the offensive security capability, including strategy, roadmap, and execution of enterprise penetration testing, red teaming, and adversary simulation activities.
  • Plan and oversee offensive testing across applications, cloud platforms, networks, and endpoints to identify exploitable weaknesses and control gaps.
  • Design and execute threat‑informed testing scenarios aligned to real‑world adversary tactics, techniques, and procedures.
  • Partner with Threat Detection, Vulnerability Management, and Remediation teams to validate findings, prioritize exposures, and drive effective risk reduction.
  • Partner with Threat Detection team to validate and improve logging, alerting, and response effectiveness.
  • Ensure offensive security activities are safely executed, well‑governed, and aligned with legal, regulatory, and operational constraints.
  • Lead third‑party penetration testing and red team vendor engagements as needed.
  • Develop reporting and metrics that clearly communicate exposure, attack paths, and defensive effectiveness to Cyber Defense leadership.
  • Continuously evolve offensive security techniques, tooling, and methodologies to reflect the changing threat landscape.
  • Stay current on emerging attacker techniques, tools, and threat actor behaviors relevant to pharma and life sciences.

BASIC QUALIFICATIONS
  • Bachelor's degree in Computer Science, Information Security, Engineering, or a related technical discipline, or equivalent hands‑on experience.
  • 7+ years of experience in cybersecurity, with significant hands‑on experience in offensive security, penetration testing, or red team operations.
  • Strong hands‑on knowledge of:
    • Red team and adversary emulation methodologies (MITRE ATT&CK-aligned)
    • Application, cloud, network, and identity penetration testing
    • Social engineering and phishing simulations (where appropriate)
    • Tooling and frameworks commonly used in offensive security
  • Solid understanding of modern enterprise environments (cloud, SaaS, hybrid).
  • Proven ability to communicate complex technical findings to both technical and executive audiences.
  • Experience in leadership and mentoring.
  • Experience operating in highly regulated, global environments.
  • Demonstrated experience in an agile work environment possessing qualities such as a collaborative mindset, adaptability to change, and a proactive problem-solving approach.

PREFERRED QUALIFICATIONS
  • Experience in pharmaceutical, biotech, life sciences, or similarly regulated industries.
  • Experience with cloud-native red teaming (AWS, Azure, GCP) and identity-centric attack paths.
  • Familiarity with detection engineering, SIEM/SOAR, and threat intelligence workflows.
  • Professional certifications such as OSCP, OSEP, CRTO, CISSP, GIAC, or similar offensive security‑focused credentials.
  • Strong communication skills, with the ability to clearly articulate technical risk, attack feasibility, and business impact to senior technical and non‑technical stakeholders.

Please apply by sending your CV in English.
Work Location Assignment: Hybrid
Purpose
Breakthroughs that change patients' lives... At Pfizer we are a patient centric company, guided by our four values: courage, joy, equity and excellence. Our breakthrough culture lends itself to our dedication to transforming millions of lives.
Digital Transformation Strategy
One bold way we are achieving our purpose is through our company wide digital transformation strategy. We are leading the way in adopting new data, modelling and automated solutions to further digitize and accelerate drug discovery and development with the aim of enhancing health outcomes and the patient experience.
Flexibility
We aim to create a trusting, flexible workplace culture which encourages employees to achieve work life harmony, attracts talent and enables everyone to be their best working self. Let's start the conversation!
Equal Employment Opportunity
We believe that a diverse and inclusive workforce is crucial to building a successful business. As an employer, Pfizer is committed to celebrating this, in all its forms - allowing for us to be as diverse as the patients and communities we serve. Together, we continue to build a culture that encourages, supports and empowers our employees.
Disability Inclusion
Our mission is unleashing the power of all our people and we are proud to be a disability inclusive employer, ensuring equal employment opportunities for all candidates. We encourage you to put your best self forward with the knowledge and trust that we will make any reasonable adjustments to support your application and future career. Your journey with Pfizer starts here!
Information & Business Tech

Skills Required

  • Bachelor's degree in Computer Science, Information Security, Engineering, or related discipline
  • 7+ years of experience in cybersecurity
  • Strong hands-on knowledge of red team and adversary emulation methodologies
  • Proven ability to communicate complex technical findings to technical and executive audiences
  • Experience in leadership and mentoring
  • Experience operating in highly regulated environments

What the Team is Saying

Daniel
Anna
Esteban

Pfizer Compensation & Benefits Highlights

  • Parental & Family Support U.S. materials describe up to 26 weeks of parental leave (including up to 12 paid non‑medical weeks), with phased return‑to‑work plus fertility, adoption, and surrogacy financial support, backup care, lactation support, and caregiver leave. These offerings indicate depth in family‑building benefits and day‑to‑day caregiver resources.
  • Healthcare Strength Core programs commonly include medical, prescription drug, dental, vision, mental‑health/EAP resources, disability insurance, preventive health programs, and free or reduced‑cost vaccinations. Voluntary Benefit Extras and wellness resources broaden coverage and access.
  • Retirement Support Career pages and postings note a 401(k) with company matching plus an additional company retirement savings contribution in some plans. Company materials also reference financial‑planning education and colleague‑directed retirement funds.

Pfizer Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
121,990 Employees
Year Founded: 1848

What We Do

Our purpose ensures that patients remain at the center of all we do. We live our purpose by sourcing the best science in the world; partnering with others in the healthcare system to improve access to our medicines; using digital technologies to enhance our drug discovery and development, as well as patient outcomes; and leading the conversation to advocate for pro-innovation/pro-patient policies.

Why Work With Us

We are the inventors, the problem solvers, the big thinkers — those who surmount any hurdle to deliver breakthrough medicines to the people who are counting on them the most.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery

Pfizer Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Typical time on-site: Not Specified
Company Office Image
HQHudson Yards
Provincia de Buenos Aires
Andover, MA
Athens, GR
Chennai, IN
Collegeville, PA
Cork, IE
Dublin, IE
Durham, NC
Groton, CT
Kildare, IE
Madison, NJ
Madrid, ES
Mumbai, Maharashtra
Rochester, MI
San Diego, CA
Seattle, WA
Company Office Image
Heights Union East
Center for Digital Innovation
Learn more

Similar Jobs

Pfizer Logo Pfizer

DS CoE Senior Finance Analyst - Data Reporting

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Hybrid
Chortiatis, GRC
121990 Employees

Pfizer Logo Pfizer

Senior Manager, AI and Data Science Solution Engineer

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Hybrid
Chortiatis, GRC
121990 Employees

Pfizer Logo Pfizer

Cloud Operations Lead

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Hybrid
Chortiatis, GRC
121990 Employees

Pfizer Logo Pfizer

Associate HR Services EMEA (6 months fixed term)

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Hybrid
Chortiatis, GRC
121990 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account