engineering Senior Infrastructure Security Software Engineer Quora Remoto LATAM Acepta LATAM Publicado hoy +1 puesto en esta empresa Cybersecurity about 5 hours ago · Anywhere

5 days ago

Edmonton AB, Edmonton Census Division, AB; Alberta, Canada WhateverAI Full-time
Quora is a privately held, \"remote-first\" company. This position can be performed remotely from anywhere in Canada or the United States. Quora’s mission is to grow the world's collective intelligence. Poe: a platform providing millions of global users with one place to chat, explore and build with a wide variety of AI language models (bots), including GPT-5.6-Sol, Claude-Opus-5, Claude-Fable-5, Claude-Sonnet-5, Kimi-K3, and thousands of others. As AI capabilities rapidly advance, Poe provides a single platform to instantly integrate and utilize these new models. Behind these products are passionate, collaborative, and high-performing global teams. You will be a key member of the newly created Security Engineering Team, with a mission to keep Quora safe from security problems by building robust protections around our products, infrastructure and people. Our small engineering team works on challenging problems every day. be a capable software engineer while also spiking in at least one of the following domain expertise: Cloud Infrastructure Security: You have hands-on experience securing large-scale cloud environments, particularly with AWS. You are passionate about building secure infrastructure-as-code (IaC) pipelines using tools like Terraform or CloudFormation. You understand IAM policies, network segmentation, and VPC design and have a thorough grasp of monitoring and logging in cloud-native environments. You are skilled in identifying misconfigurations, mitigating risks, and driving remediation processes. Bonus points if you\'ve implemented security in Kubernetes clusters or serverless architectures. Automation and Secure Development Practices: You believe in \"security as code\" and are skilled at automating security processes. You can develop and integrate security tools into CI/CD pipelines to ensure secure code delivery. You also advocate for secure coding practices and are skilled at mentoring teams to write resilient, secure applications. Linux/System Security: You are well versed in AWS infrastructure security but also are passionate about scalability, reliability and operational rigor. Beyond that, you know that root does not mean root and are passionate about container security, POSIX Capabilities, SECCOMP and have a favorite flavor of LSM. Product Security (nice-to-have): Not a requirement, but a real plus: experience building secure web applications and APIs, with a working grasp of the OWASP Top 10 and common vulnerabilities such as XSS, CSRF, and SQL injection. It complements the infrastructure security focus of this role and helps when partnering with product teams. Partner with engineering teams to review cloud and compute architecture design changes Establish threat models for cloud and compute paved roads to identify security risks Develop or adopt open-source tools to monitor and harden our cloud Infrastructure, harden our OS, develop security logging pipelines and detect intrusions Apply your expert knowledge of security best practices for AWS and Kubernetes to inform remediations and the team\'s control roadmap Drive the definition and implementation of security policies and monitor in conformance to the policies Write code for automations that support security requirements like threat detection, incident containment, and network access management.