ROLE SUMMARY
Our Global Cyber Defense team is responsible for safeguarding Pfizer’s digital assets and infrastructure through proactive threat detection, response, and risk mitigation across on-premises, cloud, and hybrid environments.
The Lead Analyst, Threat Remediation is responsible for leading the execution of threat remediation activities to ensure cybersecurity threats are effectively prioritized, mitigated, and resolved in a timely and risk‑based manner. This role coordinates remediation efforts across threat detection, incident response, vulnerability management, and technology teams to reduce exposure and strengthen the organization’s security posture.
The role partners closely with the SOC, Cloud Services, Infrastructure, Engineering, GRC, Legal, Privacy, and business stakeholders to drive remediation outcomes, track progress, and ensure threats are addressed in alignment with regulatory requirements, internal standards, and business priorities. This role will report to the Sr. Manager, Threat Remediation.
ROLE RESPONSIBILITIES
Lead the day‑to‑day execution of threat remediation activities to ensure identified cybersecurity threats and exposures are prioritized, tracked, and resolved in a timely and risk‑based manner.
Coordinate remediation efforts across threat detection, incident response, vulnerability management, and engineering teams to drive consistent and effective outcomes.
Translate threat and exposure information into clear remediation actions, working with technical owners to define scope, timelines, and risk‑appropriate mitigation plans.
Track remediation progress, validate completion, and identify recurring issues or systemic control gaps requiring escalation or broader corrective action.
Partner closely with the SOC, Cloud Services, Infrastructure, Engineering, GRC, Legal, Privacy, and business stakeholders to ensure remediation activities align with regulatory requirements, internal standards, and business priorities.
Support the investigation and remediation of high‑severity or complex threats, including coordination during active incidents or escalated risk scenarios.
Maintain accurate remediation reporting, metrics, and status updates for leadership, highlighting risk trends, delays, and improvement opportunities.
Drive continuous improvement of threat remediation processes, workflows, and handoffs to improve speed, consistency, and risk reduction.
Escalate material risks, blocked remediation efforts, or cross‑organizational issues to the Senior Manager, Threat Remediation, with clear context and recommendations.
BASIC QUALIFICATIONS
Applicant must have a Bachelor's degree in Computer Science, Information Security, Engineering, or related technical discipline with at least 4 years of experience in cybersecurity, with hands‑on involvement in remediation, vulnerability management, security engineering, or incident response; OR a master's degree with at least 2 years of experience; OR as associate's degree with 8 years of experience; OR a high school diploma (or equivalent) and 10 years of relevant experience.
Strong understanding of:
Threat actor tactics, techniques, and procedures (MITRE ATT&CK)
Incident response and containment strategies
Vulnerability management and remediation workflows
Cloud security (AWS, Azure, GCP)
Endpoint, network, identity, and application security
Familiarity with SOC tooling (SIEM, SOAR, EDR/XDR), vulnerability scanners, and ticketing/workflow systems.
Ability to translate threat and exposure data into clear, actionable remediation plans.
Strong organizational and communication skills, with the ability to manage competing priorities and escalate risks appropriately.
Demonstrated experience in an agile work environment possessing qualities such as a collaborative mindset, adaptability to change, and a proactive problem-solving approach.
PREFERRED QUALIFICATIONS
Working knowledge of GxP, FDA 21 CFR Part 11, EMA, HIPAA, GDPR, and other relevant regulations.
Exposure to cloud, hybrid, or large‑scale enterprise environments as part of remediation or response activities.
Experience supporting high‑severity incidents or enterprise‑wide remediation initiatives.
Familiarity with security frameworks, risk management practices, and regulatory expectations relevant to pharmaceutical or life sciences organizations.
Professional certifications such as CISSP, CISM, GIAC, or equivalent credentials related to security operations or risk management.
PHYSICAL/MENTAL REQUIREMENTS
NON-STANDARD WORK SCHEDULE, TRAVEL OR ENVIRONMENT REQUIREMENTS
Travel as required by the business (less than 5% domestic and/or international)
Work Location Assignment: Must be able to work in assigned Pfizer office 2-3 days per week, or as needed by the business
This role is NOT remote
Other Job Details:
Last Date to Apply for Job: August 24, 2026
Work Location Assignment: Hybrid. Must be able to work from assigned Pfizer office 2-3 days per week, or as needed by the business
The annual base salary for this position ranges from $99,200.00 to $165,400.00. In addition, this position is eligible for participation in Pfizer’s Global Performance Plan with a bonus target of 12.5% of the base salary and eligibility to participate in our share based long term incentive program. We offer comprehensive and generous benefits and programs to help our colleagues lead healthy lives and to support each of life’s moments. Benefits offered include a 401(k) plan with Pfizer Matching Contributions and an additional Pfizer Retirement Savings Contribution, paid vacation, holiday and personal days, paid caregiver/parental and medical leave, and health benefits to include medical, prescription drug, dental and vision coverage. Learn more at Pfizer Candidate Site – U.S. Benefits | (uscandidates.mypfizerbenefits.com). Pfizer compensation structures and benefit packages are aligned based on the location of hire. The United States salary range provided does not apply to Tampa, FL or any location outside of the United States.
This role is posted in multiple locations. If you are applying for the role in an secondary job posting location where pay transparency regulations apply, your Talent Advisor will share the local pay information with you during the first interview.
Relocation assistance may be available based on business needs and/or eligibility.
Candidates must be authorized to be employed in the U.S. by any employer.
U.S. work visa sponsorship (such as TN, O-1, H-1B, etc.) is not available for this role now or in the future.
Information & Business Tech