About Quora
Quora’s mission is to grow and share the world’s knowledge. To do so, we have two knowledge sharing products:
- Quora: a global knowledge sharing platform with over 400M monthly unique visitors, bringing people together to share insights on various topics and providing a unique platform to learn and connect with others.
- Poe: a platform providing millions of global users with one place to chat, explore and build with a wide variety of AI language models (bots), including GPT-4, Claude 3, Gemini Pro, DALL-E 3 and more. As AI capabilities rapidly advance, Poe provides a single platform to instantly integrate and utilize these new models.
About The Team And Role
We are seeking a highly experienced Head of Security to lead the development and management of security operations for both Quora and Poe products, and to represent Quora's security interests to customers and regulatory bodies. This role encompasses a variety of responsibilities, including identifying vulnerabilities, implementing best-in-class security practices, and developing long-term security strategies. The ideal candidate will possess a proven track record in team building, engineering, and upholding the highest security standards.
Responsibilities
- Hire, lead, and manage the security team
- Lead the identification and continuous enhancement of security measures across engineering processes, products, and infrastructure
- Develop and maintain security policies, standards, and guidelines that align with organizational objectives and legal requirements, including compliance and audit planning
- Collaborate with various departments such as Legal, IT, Facilities, and Operations to develop and implement secure engineering practices
- Conduct regular security assessments and audits, ensuring compliance with industry standards
- Lead the coordinated response to security incidents, from detection to remediation, root cause analysis, and prevention
- Stay informed about emerging threats and technologies, and advise the leadership team accordingly
- Mentor and guide engineering teams on best practices for secure development, threat modeling, and testing
- Design and execute security training and awareness programs tailored for the engineering department and all employees
Minimum Requirements
- Ability to be available for meetings and impromptu communication during Quora's “coordination hours" (Mon-Fri: 9am-3pm Pacific Time)
- 8+ years of experience in Infrastructure and Information Security
- 3+ years of experience leading a team
- Proven experience in designing and securing solutions in a complex and regulated enterprise environment
- Skilled in defining security requirements and assisting teams in implementing these through collaborative architecture and engineering
- In-depth knowledge of AWS security best practices and security controls, including IAM, CloudTrail, CloudWatch, etc
- Strong understanding of security concepts, such as secure coding, encryption, and authentication
- Knowledge of industry standards like SOC 2, ISO 27001 and GDPR
- Comprehensive understanding of advanced persistent threats, attacker methodologies, attack lifecycle, and the MITRE framework
Preferred Requirements
- Experience in leading a company-wide security program that encompasses security in Infrastructure, IT, Facilities, Operations, and achieving compliance
- Experience in building secure consumer products at internet scale
- Passion for Quora's mission and goals.
Additional Information
We are accepting applications on an ongoing basis.
Quora offers a wide range of benefits including medical/dental/vision coverage, equity refreshers, remote work reimbursement, paid time off, employee assistance programs, and more. Benefits are country-specific and may vary. For more information on benefits, visit this link: https://www.careers.quora.com/benefits
Benefits Extracted with AI
- Medical/Dental/Vision coverage
- Equity refreshers
- Remote work reimbursement
- Paid time off
- Employee assistance programs
Similar jobs
Last update: 23 minutes ago
Staff Full Stack Software Engineer - Poe Core Product
Join Quora as a Staff Full Stack Software Engineer for Poe Core Product, leveraging AI technologies in a remote role.
Mid-Senior Full Stack Software Engineer - Remote
Mid-Senior Full Stack Engineer for Quora, remote. Work on core product features using Python, JavaScript, React, and Typescript.
Senior Full Stack Software Engineer - Remote
Join Quora as a Senior Full Stack Software Engineer to build cutting-edge AI features remotely. Work with Python, TypeScript, and GraphQL.
Chief Technology Officer (CTO) - Ruby on Rails & JavaScript
Join iubenda as CTO to lead tech strategy in a SaaS scale-up. Expertise in Ruby on Rails, JavaScript, and cloud infrastructure required.
Senior Data Scientist - Remote
Senior Data Scientist role at Quora, remote, focusing on data analysis, product analytics, and AI integration.
Staff Full Stack Software Engineer - Poe Creators
Remote Staff Full Stack Software Engineer role at Quora, focusing on AI and web technologies like GraphQL, Python, and TypeScript.
Staff Full Stack Software Engineer - AI Platforms (Remote)
Remote Staff Full Stack Engineer role focused on AI platforms, requiring React, Typescript, GraphQL, Python.
Senior Software Engineer - Ads (Remote)
Senior Software Engineer for Ads, remote, skilled in Java, JavaScript, React.js, TypeScript, ad serving, and monetization.
Staff Full Stack Software Engineer - Poe Creators
Join Quora as a Staff Full Stack Software Engineer to build cutting-edge AI features for Poe Creators. Remote role.
Senior Full Stack Software Engineer - Poe Core Product
Join Quora as a Senior Full Stack Software Engineer to develop core features for Poe, a platform for AI language models.
Senior Solutions Engineer
Join Reddit as a Senior Solutions Engineer in Amsterdam to support our growing advertising business with technical expertise and problem-solving skills.
Staff Full Stack Software Engineer - Poe Creators
Join Quora as a Staff Full Stack Software Engineer to build AI-driven features for Poe, working remotely with a focus on GraphQL, Python, and TypeScript.
Data Security Engineer - Cryptography
Join Vattenfall as a Data Security Engineer focusing on cryptography and key management in a hybrid work environment.
Full Stack Engineer with Node.js and React
Join RightCrowd as a Full Stack Engineer to develop cloud-native applications using Node.js and React. Work remotely with cutting-edge technology.
Senior Full Stack Software Engineer - Poe Core Product
Senior Full Stack Engineer for AI product development with skills in React, TypeScript, GraphQL, and Python.
Backend Software Engineer - Privacy Technology
Join Zalando as a Backend Software Engineer in Privacy Technology, focusing on data protection and privacy automation services.
Senior Security Engineer
Join Atos as a Senior Security Engineer in Amstelveen, focusing on cybersecurity, network security, and vulnerability management.
Solutions Engineer
Join Darktrace as a Solutions Engineer in Amsterdam, providing technical pre-sales and post-sales support in a hybrid work environment.
Senior Security Engineer
Join Squarespace as a Senior Security Engineer in Dublin, focusing on cybersecurity, incident response, and threat detection.
Senior Full-Stack Engineer ReactJS/NodeJS
Join Gorgias as a Senior Full-Stack Engineer specializing in ReactJS and NodeJS, enhancing AI-powered ecommerce solutions.
Staff Software Engineer
Join Aiven as a Staff Software Engineer to develop cloud operations platforms using open-source technologies. Hybrid work in Berlin.
Full Stack Team Leader .Net
Lead a remote full-stack team with .NET and Angular expertise, focusing on technical leadership and hands-on development.
Privacy Engineer, Incident Response and Investigation
Join Meta as a Privacy Engineer focusing on incident response and investigation, ensuring data privacy and security.
Head of Engineering - Data Security Software
Lead the engineering team at Opaque Systems, optimizing SDLC and managing offshore centers in the AI and data privacy sector.