> Markdown version of [/jobs/ext/2014341-manager-threat-remediation](https://www.wearedevelopers.com/jobs/ext/2014341-manager-threat-remediation). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Manager, Threat Remediation - **Company:** Pfizer Inc. - **Location:** Collegeville, PA, United States - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Cloud Computing Security, Cyber Security, Intrusion Detection and Prevention, Cloud Services, Security Information and Event Management, Software Vulnerability Management, Google Cloud, Mitre Att&ck, Information Technology, Security Orchestration, Automation & Response, Vulnerability Analysis - **Published:** August 10, 2026 - **Apply:** https://us.experteer.com/career/view-jobs/manager-threat-remediation-collegeville-pa-usa-58879400 ## About the Role _ Track remediation progress, validate completion, and escalate systemic gaps * Collaborate with SOC, Cloud Services, Infrastructure, Engineering, GRC, Legal, Privacy, and business stakeholders to align with regulatory requirements and standards * Support investigation and remediation of high-severity or complex threats during incidents or escalated risk scenarios * Maintain accurate remediation reporting, metrics, and leadership updates highlighting risk trends and improvement opportunities * Drive continuous improvement of remediation processes and workflows * Escalate material risks or cross-organizational issues with context and recommendations Tasks * Bachelor's degree in Computer Science, Information Security, Engineering, or related technical discipline with 4+ years in cybersecurity with hands-on remediation, vulnerability management, security engineering, or incident response; or Master's with 2+ years; or Associate's with 8 years; or high school diploma with 10 years of relevant aaa aaaaaB_ * Strong understanding of MITRE ATT&CK, incident response and containment strategies, vulnerability management workflows, and cloud security (AWS, Azure, GCP) * Familiarity with SOC tooling (SIEM, SOAR, EDR/XDR), vulnerability scanners, and ticketing/workflow systems * Ability to translate threat data into actionable remediation plans * Strong organizational and communication skills; ability to prioritize and escalate risks * Experience in an agile environment with collaboration, adaptability, and proactive problem-solving Key requirements * 401(k) plan with Pfizer Matching Contributions * additional Pfizer Retirement Savings Contribution * paid vacation * holiday and personal days * paid caregiver/parental and medical leave * health benefits: medical, prescription drug, dental, vision ## Description Experteer Overview In this role, you lead threat remediation efforts to prioritize and resolve cybersecurity exposures in a risk-based way. You coordinate across threat detection, incident response, vulnerability management, and engineering to strengthen Pfizer's security posture. You will partner with SOC, Cloud Services, Infrastructure, and business stakeholders to ensure remediation aligns with regulatory requirements and internal standards. You drive continuous process improvements and provide actionable remediation plans during incidents or escalated risk scenarios. This is a hands-on, cross-functional role focused on reducing exposure at scale. Compensation / Benefits * Lead day-to-day threat remediation activities ensuring timely, risk-based resolution * Coordinate remediation across threat detection, incident response, vulnerability management, and engineering teams * Translate threat data into clear remediation actions with defined scope, timelines, and risk-based mitigation * Track remediation progress, validate completion, and escalate systemic gaps * Collaborate with SOC, Cloud Services, Infrastructure, Engineering, GRC, Legal, Privacy, and business stakeholders to align with regulatory requirements and standards * Support investigation and remediation of high-severity or complex threats during incidents or escalated risk scenarios * Maintain accurate remediation reporting, metrics, and leadership updates highlighting risk trends and improvement opportunities * Drive continuous improvement of remediation processes and workflows * Escalate material risks or cross-organizational issues with context and recommendations Tasks * Bachelor's degree in Computer Science, Information Security, Engineering, or related technical discipline with 4+ years in cybersecurity with hands-on remediation, vulnerability management, security engineering, or incident response; or Master's with 2+ years; or Associate's with 8 years; or high school diploma with 10 years of relevant experience * Strong understanding of MITRE ATT&CK, incident response and containment strategies, vulnerability management workflows, and cloud security (AWS, Azure, GCP) * Familiarity with SOC tooling (SIEM, SOAR, EDR/XDR), vulnerability scanners, and ticketing/workflow systems * Ability to translate threat data into actionable remediation plans * Strong organizational and communication skills; ability to prioritize and escalate risks * Experience in an agile environment with collaboration, adaptability, and proactive problem-solving Key requirements * 401(k) plan with Pfizer Matching Contributions * additional Pfizer Retirement Savings Contribution * paid vacation * holiday and personal days * paid caregiver/parental and medical leave * health benefits: medical, prescription drug, dental, vision ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [The Cloud is Calling: Answer with In-Demand Skills](https://www.wearedevelopers.com/videos/945-the-cloud-is-calling-answer-with-in-demand-skills) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Cloud Run- the rise of serverless and containerization](https://www.wearedevelopers.com/videos/106-cloud-run-the-rise-of-serverless-and-containerization) ## Related Articles - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)