Director, Third-Party Risk Management and Technical Information Security Lead - pfizer

OpenTalent

New York (NY)

On-site

USD 180,000 - 240,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Pfizer is seeking a Director, Third Party Risk Management (TPRM) and Technical Information Security Lead (TISL) to own the enterprise security strategy for third‑party risk and to lead technical information security across critical initiatives.

You will partner with executive leadership to balance risk, regulatory requirements, speed, and innovation in a highly regulated pharmaceutical environment. This is a senior, enterprise‑level leadership role based in New York.

Qualifications

  • Proven leadership in GRC programs and executive communication.
  • Strong experience in Third Party Risk Management and cyber risk leadership.
  • Ability to translate technical risk into executive insights.

Responsibilities

  • Set overall TPRM security strategy, program, and operating model.
  • Lead executive oversight for high‑risk vendor risk assessments.
  • Advise senior leaders on remediation, compensating controls, and risk acceptance.
  • Translate complex technical risks into decision‑ready insights for executives.

Skills

Leadership
TPRM
Risk management
Executive communications
Security governance

Job description

Use Your Power for Purpose

Our Global Governance, Risk, and Compliance (GRC) team provides comprehensive blueprints for cybersecurity excellence by embedding governance, risk management, and compliance into every layer. The team is responsible for ensuring risk-based decision-making is used and that security, privacy, and regulatory compliance is integrated seamlessly with Pfizer’s organization.

We are seeking an experienced Director, Third Party Risk Management (TPRM) and Technical Information Security Lead (TISL). T his is a leadership role combining enterprise‑level ownership of the Third‑Party Risk Management program with business‑facing technical security risk leadership across critical initiatives and platforms.

This role will set the overall third‑party security strategy, standards, and operating models for managing cyber risk across a complex ecosystem of vendors, partners, and internal technologies, while acting as a trusted security advisor to executive and senior business leaders. This role is pivotal in balancing risk, regulatory compliance, speed, and innovation in a highly regulated environment.

What You Will Achieve
TPRM Program Strategy & Ownership
  • Own the enterprise Third Party Risk Management (TPRM) security strategy, program, and operating model.
  • Align TPRM with enterprise cyber risk appetite, business priorities, and pharmaceutical regulatory expectations.
  • Establish scalable approaches for risk tiering, assessment depth, reassessment cadence, continuous monitoring, and exception governance.
  • Align the TPRM program with Pfizer’s enterprise cyber risk appetite and business strategy.
Third‑Party Cyber Risk Oversight & Governance
  • Provide executive‑level oversight and approval for high‑risk and critical vendor risk assessments.
  • Lead governance for risk treatment decisions, including remediation prioritization, compensating controls, and formal risk acceptances.
  • Escalate material vendor risks to enterprise risk committees and executive leadership, enabling informed decision‑making.
Technical Information Security Lead
  • Serve as a senior Technical Information Security Lead for high‑impact business initiatives, platforms, and transformations.
  • Serve as the trusted cybersecurity risk advisor to executive‑level business and technology leaders.
  • Translate complex technical risks into executive‑level insights and decision‑ready recommendations.
Leadership & Influence
  • Serve as an executive GRC partner to Procurement, Legal, Privacy, Quality, Security, Internal Audit, and Business Leadership.
  • Influence contract standards and onboarding requirements to embed security, privacy, and resilience controls into third‑party agreements.
  • Represent GRC in executive forums, governance bodies, and cross‑functional steering committees.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Director of Third-Party Risk & Technical Security
Director of Third-Party Risk & Technical Security

OpenTalent • New York (NY)

On-site
USD 180,000 - 240,000
Information Technology Security Manager
Information Technology Security Manager

C&G Consulting Services, Inc • New Jersey

On-site
USD 120,000 - 180,000
IT Security Manager - Third-Party IT Risk Manager
IT Security Manager - Third-Party IT Risk Manager

Mass Digital Health • Waltham (MA)

On-site
USD 118,000 - 207,000
Director, 3rd Party Security Risk
Director, 3rd Party Security Risk

HealthEquity • United States

On-site
USD 180,000 - 260,000
Manager, GRC Technology, Metrics, and Automation
Manager, GRC Technology, Metrics, and Automation

Biopharma Careers • New York (NY)

Hybrid
USD 99,000 - 165,000
401(k) matching contributions
Health benefits
Paid vacation
Director Third Party Risk Management
Director Third Party Risk Management

BioSpace • Village of Sleepy Hollow (NY)

On-site
USD 183,000 - 305,000
Director, Network Security Operations
Director, Network Security Operations

Pfizer • Pennsylvania

Hybrid
USD 177,000 - 294,000
Bonus target 20% of base salary
Relocation assistance may be available
Pfizer Benefits package (health, 401(k
+1
Advisor – Third-Party Risk Management (TPRM)
Advisor – Third-Party Risk Management (TPRM)

CGS CyberDefense • West Palm Beach (FL)

On-site
USD 90,000 - 120,000
Access to cutting-edge cybersecurity tools
Ongoing professional development
A culture that values curiosity and innovation
IT Security Manager - Third-Party IT Risk Manager
IT Security Manager - Third-Party IT Risk Manager

Wolters Kluwer • Riverwoods (IL)

On-site
USD 118,000 - 208,000
Medical, Dental, & Vision Plans
401(k)
FSA/HSA
+2
Director, Network Security Operations
Director, Network Security Operations

Pfizer • United States

On-site
USD 180,000 - 240,000