Cellares
Information Security Lead
TLDR
Build and mature Cellares' security program, ensuring regulatory compliance and leading security operations while mentoring a geographically diverse team.
Responsibilities
Design, build, and continuously improve Cellares' Information Security program from the ground up, including policies, standards, and procedures
Develop and maintain a multi-year rolling strategic roadmap aligned to business objectives
Lead day-to-day security operations, working closely with the India-based Security Analysts on monitoring, incident response, and vulnerability management.
Architect and maintain a cloud security framework across AWS, Azure, or GCP environments used by Cellares
Own the security aspects of the software development lifecycle (SDLC), including threat modeling, secure code review, and developer security training
Drive compliance efforts for SOC 2 Type II, ISO 27001, and life sciences-specific frameworks (e.g., 21 CFR Part 11, GxP)
Conduct and manage third-party risk assessments, vendor security reviews, and penetration testing engagements
Collaborate with IT, Engineering, Legal, and Operations to integrate security into all business processes
Manage and mentor the India-based Security Analysts, providing technical guidance, career development, and task prioritization
Lead incident response activities, conduct post-mortems, and implement lessons-learned improvements
Report on security metrics, risks, and program maturity to executive stakeholders
Requirements
Bachelors in Computer Science, or related field
8+ years of progressive information security experience with at least 2 years in a lead or senior individual contributor role
Strong hands-on experience with SIEM tools (e.g., Splunk, Sentinel), EDR platforms, and vulnerability management tools (e.g., Tenable, Qualys)
Deep knowledge of cloud security architecture (AWS, Azure, or GCP) and cloud-native security tools
Experience driving SOC 2, ISO 27001, or NIST CSF compliance programs
Proficiency in scripting and automation (Python, Bash, or PowerShell) for security tooling and response
Excellent communication and stakeholder management skills — capable of translating technical risk into business language
Self-awareness, integrity, authenticity, and a growth/entrepreneurial mindset
This is Cellares
Cellares is the first Integrated Development and Manufacturing Organization (IDMO) and takes an Industry 4.0 approach to mass manufacturing the living drugs of the 21st century. The company is both developing and operating integrated technologies for cell therapy manufacturing to accelerate access to life-saving cell therapies. The company’s Cell Shuttle integrates all the technologies required for the entire manufacturing process in a flexible and high-throughput platform that delivers true walk-away, end-to-end automation. Cell Shuttles will be deployed in Cellares’ Smart Factories around the world to meet total patient demand for cell therapies at global scale. Partnering with Cellares enables academics, biotechs, and pharma companies to accelerate drug development and scale out manufacturing, lower process failure rates, lower manufacturing costs, and meet global patient demand.
The company is headquartered in South San Francisco, California with its commercial-scale IDMO Smart Factory in Bridgewater, New Jersey. The company is backed by world-class investors and has raised over $355 million in financing.
Leveling will be based on overall experience, education, and demonstration of knowledge throughout the interview process.
Cellares is pioneering the field of cell therapy manufacturing as the first Integrated Development and Manufacturing Organization (IDMO) focused on harnessing Industry 4.0 technologies. Its innovative Cell Shuttle platform automates and integrates the entire production process, enabling companies in academia, biotechnology, and pharmaceuticals to accelerate the delivery of life-saving therapies while reducing costs and operational failures.