Senior Manager, GRC Technology, Metrics, and Automation
AI summary of the role
Senior Manager role leading modernization of Pfizer's cybersecurity GRC technology ecosystem, including platform administration, automation, metrics, and AI-enabled capabilities.
What you’ll do
- Oversee administration, configuration, and continuous improvement of enterprise GRC platforms (e.g., Archer, ServiceNow GRC)
- Design and implement automated workflows, control monitoring, and integrations across complex IT and business environments
- Develop and maintain executive-ready cybersecurity metrics, KPIs, and dashboards
- Identify and implement AI-enabled capabilities within GRC platforms for risk analytics and decision-support
What you’ll bring
- Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or related field
- 6+ years of progressive experience in cybersecurity, governance, risk management, or compliance roles
- Hands-on experience implementing or managing enterprise GRC platforms such as ServiceNow GRC/IRM, Archer, or equivalent
- Experience designing automated workflows, integrations, and control monitoring across complex IT and business environments
Technologies
Archer · ServiceNow GRC · ServiceNow IRM · NIST CSF · ISO 27001 · GxP · AI · automation · dashboards · KPIs
About Pfizer
Global research-based biopharmaceutical company that develops, manufactures, and markets vaccines and prescription medicines across oncology, vaccines, internal medicine, and inflammation/immunology.
Public · 5000+ people
Source and classification
Internal deployment & tooling · Evidence for this classification:
ROLE SUMMARY Our Global Cybersecurity Governance, Risk, and Compliance team provides comprehensive blueprints for cybersecurity excellence by embedding governance, risk management, and compliance into every layer. The team is responsible for ensuring risk-based decision-making is used and that security, privacy, and regulatory compliance is integrated seamlessly with Pfizer’s organization. We are seeking a Senior Manager, GRC Technology, Metrics & Automation, to drive the modernization and optimization of our cybersecurity GRC technology ecosystem. This role is responsible for the hands-on leadership of GRC platforms, automation capabilities, metrics programs, and digital enablement strategies that support cybersecurity, data protection, and regulatory compliance at enterprise scale. This role will partner across R&D, Manufacturing, Commercial, Digital, and Corporate functions to
More from the job description
ROLE SUMMARY Our Global Cybersecurity Governance, Risk, and Compliance team provides comprehensive blueprints for cybersecurity excellence by embedding governance, risk management, and compliance into every layer. The team is responsible for ensuring risk-based decision-making is used and that security, privacy, and regulatory compliance is integrated seamlessly with Pfizer’s organization. We are seeking a Senior Manager, GRC Technology, Metrics & Automation, to drive the modernization and optimization of our cybersecurity GRC technology ecosystem. This role is responsible for the hands-on leadership of GRC platforms, automation capabilities, metrics programs, and digital enablement strategies that support cybersecurity, data protection, and regulatory compliance at enterprise scale. This role will partner across R&D, Manufacturing, Commercial, Digital, and Corporate functions to deliver integrated, data-driven GRC solutions—transforming how the organization measures, monitors, and reports on cyber risk and control effectiveness. ROLE RESPONSIBILITIES Oversee the administration, configuration, and continuous improvement of enterprise GRC platforms (e.g., Archer, ServiceNow GRC) to ensure scalable, integrated support for risk, compliance, and cybersecurity objectives. Design and implement automated workflows, control monitoring, and integrations across complex IT and busin [... source excerpt omitted ...] C platforms to enhance risk analytics, anomaly detection, and decision-support automation. Partner with senior leaders across business units and technology functions to translate requirements into GRC technology solutions that align with internal policies and global regulatory expectations. Ensure GRC technology solutions align with NIST CSF, ISO 27001, and pharmaceutical-specific regulatory expectations (e.g., GxP, data integrity, patient safety). Evaluate platform performance, adoption rates, and control assurance effectiveness; champion a culture of technology-enabled accountability and transparency across all GRC processes. Manage, coach, and develop a small team of GRC techn [... source excerpt omitted ...] nfluence and collaborate with peers, develop and coach others, oversee and guide the work of other colleagues to achieve meaningful outcomes and create business impact. PREFERRED QUALIFICATIONS Professional certifications: CISSP, CISM, CRISC or similar Experience using GRC tools (e.g., Archer) Excellent strategic thinking Deeply analytical and credible Fact-based decision-makinggrounded in metrics, dashboards, and platform insights Ability to challenge, influence, and support senior leadership Excellent communication and presentation skills Ability to bring structure to ambiguous technology and process problems Resourceful, self-motivated, and proactive – strong drive for exc
Employer postings · Data from · Sources