Senior Manager, GRC Technology, Metrics, and Automation
Pfizer
- Location
- United States New York New York City
- Work model
- On-Site
- Level
- Senior
- H-1B history
- 9 approvals (FY2023)
- Posted
- Sep 8, 2026
Skills
About this role
ROLE
SUMMARY Our Global Cybersecurity Governance, Risk, and Compliance team provides comprehensive blueprints for cybersecurity excellence by embedding governance, risk management, and compliance into every layer. The team is responsible for ensuring risk-based decision-making is used and that security, privacy, and regulatory compliance is integrated seamlessly with Pfizer’s organization. We are seeking a Senior Manager, GRC Technology, Metrics & Automation, to drive the modernization and optimization of our cybersecurity GRC technology ecosystem. This role is responsible for the hands-on leadership of GRC platforms, automation capabilities, metrics programs, and digital enablement strategies that support cybersecurity, data protection, and regulatory compliance at enterprise scale. This role will partner across R&D, Manufacturing, Commercial, Digital, and Corporate functions to deliver integrated, data-driven GRC solutions—transforming how the organization measures, monitors, and reports on cyber risk and control effectiveness.
ROLE
RESPONSIBILITIES Oversee the administration, configuration, and continuous improvement of enterprise GRC platforms (e.g., Archer, ServiceNow GRC) to ensure scalable, integrated support for risk, compliance, and cybersecurity objectives. Design and implement automated workflows, control monitoring, and integrations across complex IT and business environments to reduce manual effort and increase assurance coverage. Develop and maintain executive-ready cybersecurity metrics, KPIs, and dashboards that provide leadership with consistent, data-driven visibility into risk posture, control effectiveness, and program maturity. Identify and implement AI-enabled capabilities within GRC platforms to enhance risk analytics, anomaly detection, and decision-support automation. Partner with senior leaders across business units and technology functions to translate requirements into GRC technology solutions that align with internal policies and global regulatory expectations. Ensure GRC technology solutions align with NIST CSF, ISO 27001, and pharmaceutical-specific regulatory expectations (e.g., GxP, data integrity, patient safety). Evaluate platform performance, adoption rates, and control assurance effectiveness; champion a culture of technology-enabled accountability and transparency across all GRC processes. Manage, coach, and develop a small team of GRC technology analysts and/or contractors; foster professional growth and technical capability building.
BASIC QUALIFICATIONS
Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or related field 6+ years of progressive experience in cybersecurity, governance, risk management, or compliance roles Experience overseeing technology-enabled GRC, automation, or platform-driven risk and compliance programs at scale Hands‑on experience implementing or managing enterprise GRC platforms, such as ServiceNow GRC/IRM, Archer, or equivalent Experience designing automated workflows, integrations, and control monitoring across complex IT and business environments Strong understanding of cybersecurity frameworks (NIST CSF, ISO 27001) and how they translate into GRC tooling Prior experience modernizing GRC capabilities through digitization, automation, analytics, and continuous control monitoring Background working in highly regulated industries, preferably pharmaceutical, life sciences, healthcare, or manufacturing Proven ability to influence and collaborate with senior leaders, architects, engineering teams, and cross‑functional business partners Experience managing large‑scale technology enablement programs, including platform roadmaps, governance models, and enterprise adoption Strong data and analytics mindset, with experience leveraging dashboards and reporting to drive insights and decision making Demonstrated experience in an agile work environment possessing qualities such as a collaborative mindset, adaptability to