ROLE SUMMARY
Our Identity Security and Access Management (ISAM) team is responsible for enabling secure and seamless access to Pfizer's digital resources while protecting against unauthorized access and identity-based threats. This team leads enterprise-wide efforts in privileged access management (PAM), directory services, certificate management, identity and access entitlements, and authentication (MFA, SSO, and federation services), ensuring that access is granted appropriately, monitored continuously, and aligned with regulatory and business requirements.
We are seeking an experienced and strategic individual of Identity Security and Access Management to lead Pfizer's enterprise ISAM program. The ideal candidate will bring deep expertise in identity governance, access control, and ISAM architecture, with a strong history of designing and managing large-scale programs that enhance security, improve operational efficiency, and support regulatory compliance. This leader will oversee enterprise-wide initiatives across identity governance, identity entitlements, directory services, certificate management, federated identity services, and privileged access management.
ROLE RESPONSIBILITIES
Own and drive the strategic vision for Identity Security and Access Management across the organization, aligning ISAM initiatives with broader cybersecurity and business objectives.
Develop and manage the ISAM budget, ensuring alignment with organizational goals and effective allocation of resources. Monitor expenditures, forecast future budget needs and identify opportunities for cost optimization.
Lead the transformation of legacy identity management systems and deliver on a multi-year modernization roadmap, including the enterprise-wide implementation of SailPoint.
Champion the adoption of modern ISAM practices and technologies, including Ping Identity, ensuring scalable, secure, and future-ready solutions.
Take ownership of Privileged Access Management, ensuring seamless integration with existing ISAM systems while maintaining operational excellence and legacy support.
Oversee directory services and certificate management processes, ensuring they are secure, available, efficient, and aligned with enterprise standards across a global environment.
Define and execute strategies to enhance identity governance controls, including access request, provisioning, and de-provisioning, with a focus on automation and user experience.
Drive enterprise-wide strategy and execution for MFA, SSO, and Federation services, ensuring secure and seamless authentication across internal and external platforms.
Define and implement identity and access entitlement frameworks, ensuring granular access control aligned with business roles and regulatory requirements.
Ensure integration and interoperability across ISAM capabilities, including PAM, directory services, certificate management, and federated identity, to support a unified and scalable ISAM architecture.
Ensure compliance with internal and external audit requirements, maintaining a high level of security and operational resilience in ISAM systems.
Collaborate with cross-functional teams to ensure ISAM requirements are embedded into the organization's security architecture and technology strategy.
Lead and mentor a multi-national team through complex ISAM projects, providing clear direction, accountability, and support to deliver high-impact outcomes.
Act as a trusted advisor to senior leadership, translating technical ISAM concepts into strategic business value and influencing decision-making at the executive level.
BASIC QUALIFICATIONS
Bachelor's degree with 12 - 15+ years of experience in cybersecurity, identity and access management, or related fields.
At least 8 years of direct leadership experience managing enterprise-wide ISAM functions.
Professional certifications such as CISSP or CISM strongly preferred.
Strong background in identity governance, access management, and regulatory compliance, with experience in frameworks such as NIST and ISO.
Deep knowledge of ISAM technologies and best practices, including identity governance tools, SSO, MFA, and PAM solutions.
Experience designing and implementing identity entitlement models and federated identity architectures across hybrid environments.
Strong leadership, communication, and presentation skills, with the ability to translate complex ISAM concepts into business-focused insights for senior executives.
Preferred Qualifications
Experience with ISAM tools and technologies, specifically SailPoint, Ping and CyberArk.
Proven track record of leading cross-functional teams and driving strategic ISAM initiatives within a large, complex organization.
OTHER INFO
Periodic international and domestic travel may be required (less than 5%).
Work Location Assignment: Must be able to work in the assigned office 2-3 days per week, or as needed by the business.
This role is NOT remote. Work Location Assignment: Hybrid.
Last Date to Apply for Job: 5/19/2026
The annual base salary for this position ranges from $214,900.00 to $358,100.00. In addition, this position is eligible for participation in Pfizer's Global Performance Plan with a bonus target of 22.5% of the base salary and eligibility to participate in our share based long term incentive program. We offer comprehensive and generous benefits and programs to help our colleagues lead healthy lives and to support each of life's moments. Benefits offered include a 401(k) plan with Pfizer Matching Contributions and an additional Pfizer Retirement Savings Contribution, paid vacation, holiday and personal days, paid caregiver/parental and medical leave, and health benefits to include medical, prescription drug, dental and vision coverage. Learn more at Pfizer Candidate Site - U.S. Benefits | (uscandidates.mypfizerbenefits.com). Pfizer compensation structures and benefit packages are aligned based on the location of hire. The United States salary range provided does not apply to Tampa, FL or any location outside of the United States.Relocation assistance may be available based on business needs and/or eligibility.
Candidates must be authorized to be employed in the U.S. by any employer.
U.S. work visa sponsorship (such as TN, O-1, H-1B, etc.) is not available for this role now or in the future.
Sunshine Act
Pfizer reports payments and other transfers of value to health care providers as required by federal and state transparency laws and implementing regulations. These laws and regulations require Pfizer to provide government agencies with information such as a health care provider's name, address and the type of payments or other value received, generally for public disclosure. Subject to further legal review and statutory or regulatory clarification, which Pfizer intends to pursue, reimbursement of recruiting expenses for licensed physicians may constitute a reportable transfer of value under the federal transparency law commonly known as the Sunshine Act. Therefore, if you are a licensed physician who incurs recruiting expenses as a result of interviewing with Pfizer that we pay or reimburse, your name, address and the amount of payments made currently will be reported to the government. If you have questions regarding this matter, please do not hesitate to contact your Talent Acquisition representative.
EEO & Employment Eligibility
Pfizer is committed to equal opportunity in the terms and conditions of employment for all employees and job applicants without regard to race, color, religion, sex, sexual orientation, age, gender identity or gender expression, national origin, disability or veteran status. Pfizer also complies with all applicable national, state and local laws governing nondiscrimination in employment as well as work authorization and employment eligibility verification requirements of the Immigration and Nationality Act and IRCA. Pfizer is an E-Verify employer. This position requires permanent work authorization in the United States.
Pfizer endeavors to make www.pfizer.com/careers accessible to all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process and/or interviewing, please email disabilityrecruitment@pfizer.com. This is to be used solely for accommodation requests with respect to the accessibility of our website, online application process and/or interviewing. Requests for any other reason will not be returned.
This website uses cookies to ensure you get the best experience. Learn more