Sobre este puesto de Chief of Staff, Information Security & IT Operations en Ceribell, Inc
About Ceribell
Ceribell is a medical technology company focused on transforming the diagnosis and management of patients with serious neurological conditions. The Ceribell System is a novel, point-of-care electroencephalography (“EEG”) platform specifically designed to address the unmet needs of patients in the acute care setting, and is being used in hundreds of community hospitals, large academic facilities and major IDN's across the country. Our entire team is driven by a shared commitment to transforming the landscape of critical care through our rapid seizure detection technology, come join the movement!
We are seeking a highly organized, strategic, and discreet Chief of Staff to support Ceribell’s VP of Information Security. This pivotal role will drive alignment and execution across a broad security and compliance portfolio, spanning Governance, Risk & Compliance (GRC), FedRAMP, IT Operations, Business Systems, and Security Engineering, while managing the VP’s priorities, communications, and cross-functional coordination. The ideal candidate combines program-management rigor with strong judgment on security, risk, and compliance topics, and can operate as a trusted extension of the VP across the organization.
Strategic Support and Executive Partnership
- Partner with the VP of Information Security to shape and execute security strategy across GRC, Federal/FedRAMP, IT Ops, Business Systems, and Security Engineering.
- Advise on organizational design, resourcing, and prioritization across the VP's five teams, and represent priorities in their absence.
Cybersecurity and Compliance Oversight
- Drive cross-team execution of cybersecurity and compliance initiatives (FedRAMP High, HIPAA, SOC 2, SOX ITGC, NIST 800-53), including continuous monitoring, audit readiness, and POA&M tracking.
- Oversee continuous monitoring cadences and audit-readiness activities, including FedRAMP documentation strategy, POA&M tracking, and interdepartmental reporting between vendors, internal teams, and Security leadership.
- Support third-party risk management, driving open vendor risk items to closure and escalating blockers.
Communication and Coordination
- Serve as liaison between the VP and other executives, department leaders, and external stakeholders such as auditors and vendors.
- Partner with VP of Information Security to prepare Board and executive-level materials, briefings, and talking points on security posture, program status, and emerging risk topics.
- Ensure key messages, decisions, and action items are consistently and accurately communicated across the VP’s organization.
- Build and maintain reporting and dashboards (e.g., compliance status, TPRM trackers, tooling spend and utilization, headcount and hiring pipeline) that give the VP and executive stakeholders a clear, current view of the organization
Project & Operational Efficiency Management
- Drive complex, cross-functional initiatives, org design changes, tooling evaluations, process redesigns, from scoping through implementation.
- Improve the VP's office and organization's efficiency through better use of project tools (Jira, Notion) and streamlined processes.
Requirements / Qualifications
- 8+ years of experience in a strategic or executive support, chief of staff, or program management role, including at least 3-5 years supporting senior technology or security leaders.
- Demonstrated experience in cybersecurity, IT, or compliance program management (e.g., FedRAMP, SOC 2, HIPAA, SOX ITGC), with working familiarity with NIST frameworks (800-53, 800-30, 800-161).
- Exceptional organizational and multitasking abilities, with proven experience managing multiple concurrent initiatives and stakeholders under tight deadlines.
- Strong executive communication skills, with the ability to present complex security and compliance topics to both technical and non-technical audiences, including senior executives and the Board.
- High degree of professionalism, discretion, and integrity; demonstrated ability to handle sensitive and confidential information appropriately.
- Advanced problem-solving, strategic thinking, and decision-making abilities in complex, matrixed environments.
- U.S. citizenship required due to federal compliance (FedRAMP) obligations.
- Must meet identity verification requirements prior to start.
Preferred
- Bachelor’s degree in Business Administration, Technology Management, Computer Science, or a related field; advanced degree (MBA or similar) a plus.
- Industry-recognized certifications such as CISA, CISSP, or PMP.
- Experience with security, GRC, and project management tools such as Jira, Notion, Tenable, or Splunk.
- Familiarity with cloud architectures, especially AWS and GCP, and identity platforms such as Okta.
A candidate’s final salary offer will be based on their skills, education, work location and experience, and thus it may differ from the posted range. Compensation may also include bonuses consistent with Ceribell’s corporate compensation plan. Note, the above description is not all-encompassing and Ceribell reserves the right to change or modify job duties and assignments at any time.
In addition to your base compensation, Ceribell offers eligible employees the following:
- Performance-based incentive compensation (varies by role)
- Equity opportunities
- 100% Employer paid Health Benefits for Employees
- 50% - 70% Employer paid Health, Dental & Vision for dependents (depending on plan selection)
- 100% paid Life and Long-Term Disability Insurance
- 401(k) with a generous company match
- Employee Stock Purchase Plan (ESPP) with a discount
- Monthly cell phone stipend
- Flexible paid time off
- 13 Paid Holidays + 3 Company Wellness Days
- Excellent parental leave policy
- Fantastic culture with tremendous career advancement opportunities
- Joining a mission-minded organization!
Application Deadline: Ongoing
Other Job Details
Ceribell reports transfers of value to health care providers (HCPs) as required by federal and state transparency laws. These laws and implementing regulations require Ceribell to provide government agencies with HCPs’ names, addresses and the type of payments or other value received, generally for public disclosure. If you are an HCP and we pay or reimburse your recruiting expenses as a result of interviewing with Ceribell, your name, address and the amount of payments made may be reported to the government.
Equal Opportunity Employer
Ceribell is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth and related medical conditions), sexual orientation, gender identity or expression, national origin, age, marital status, disability, veteran status or any other characteristic protected by law. Ceribell complies with all applicable national, state and local laws governing nondiscrimination in employment as well as work authorization and employment eligibility verification requirements of the Immigration and Nationality Act and IRCA. Ceribell is an E-Verify employer. Any applicant with a disability who requires an accommodation during the application process should contact [email protected] to request reasonable accommodation.
Privacy Statement
For information on how Ceribell processes personal data of job applicants, please review our Privacy Policy.
Compliance Disclaimer
If you believe this job posting is non-compliant, please submit a report to [email protected]. Please note that we will not respond to inquiries unrelated to job posting compliance.