Mohit Kalra

CEO

San Francisco, California, United States26 yrs 7 mos experience
Highly StableAI Enabled

Key Highlights

  • Expert in security, compliance, and responsible AI.
  • Proven leadership in building and managing diverse teams.
  • Strong advocate for integrating security into product lifecycles.
Stackforce AI infers this person is a SaaS security leader with extensive experience in cloud and application security.

Contact

Skills

Core Skills

SecurityLeadershipAi SecurityCybersecurityCloud SecurityEngineering ManagementTechnical LeadershipProgramming

Other Skills

Application SecurityBudgetingC++Cloud InfrastructureComplianceCorporate SecurityData PrivacyDebuggingEarly-Stage StartupsEndpoint SecurityEnterprise SecurityExecutive LeadershipExecutive-level CommunicationGeneral Data Protection Regulation (GDPR)Generative AI

About

As the Chief Information and Security Officer at Typeface, Mohit leads the company’s security, trust and safety programs, ensuring customers see Typeface as a trusted partner and experience GenAI safely and securely. Mohit's team is at the forefront of security, compliance, responsible AI, and customer trust, collaborating with stakeholders across the company to deliver a high-impact program. Prior to Typeface, Mohit held instrumental roles at Adobe, Sprinklr and IBM, leading and establishing application security, cloud security, and security engineering functions, as well as contributing to flagship products. A regular contributor to the broader security community, Mohit speaks at various forums and acts as a mentor and advisor to those seeking guidance in the security field. ------- About Me: I started my career as a software developer and later managed various development / security teams for key products and components. I have extensive experience hiring, building, growing and managing diverse teams that work well together. As a people leader, I regularly provide coaching to individual contributors and managers. I also enjoy discussions that involve architecture and technology. I took up security after having spent sufficient time doing software engineering and consider security to be an extension of the software engineering roles. In my spare time, I read up on leadership + technology and am a technophile and engineer at heart. I love to apply concepts of debugging to all walks of my work and like to maintain an active interest in the latest technology trends. I like to imagine that I can still code and still try my hand at it.

Experience

Typeface

Chief Information Security Officer, VP of Security

May 2023Present · 2 yrs 10 mos · San Francisco Bay Area

  • I lead trust and safety initiatives at Typeface, ensuring security, compliance and safe AI across the organization. My team secures our products, public cloud infrastructure, enterprise endpoints, and SaaS applications. We drive compliance efforts such as SOC 2 and ISO 27001, engage with customers during the sales and contracting processes, and build customer-facing marketing material and trust portals. Our goal is to manage risk effectively while positioning security as a business enabler.
  • I also spearhead initiatives in GenAI and LLM security, focusing on safe and responsible AI usage and securing self-hosted and managed models developed and deployed by our organization.
  • In addition to my role as CISO, I oversee IT, FinOps, and AI cloud infrastructure, which powers our GenAI applications across Azure and GCP. I also contribute to optimizing the critical service outage response and incident management processes to improve uptime and reliability of our services.
  • Since joining Typeface, I have established the security, compliance, privacy, AI security, and IT functions from the ground up. My leadership role is both strategic and hands-on, adapting to the needs of the business and the demands of the day. The hat I wear depends on the day of the week and need of the hour.
LeadershipSecurity ControlsStartupsNegotiationStrategic InitiativesISO 27001+39

Bearer

Security Advisor

Mar 2023Apr 2024 · 1 yr 1 mo

  • Acquired by Cycode
SASTSecurityWeb Application SecurityApplication SecurityCybersecurity

The purple book community

Member

Apr 2022Present · 3 yrs 11 mos · San Francisco Bay Area

Security Architecture DesignSecurityWeb Application SecurityApplication SecurityCybersecurityProduct Security

Sprinklr

Vice President, Product Security

Nov 2021May 2023 · 1 yr 6 mos · San Francisco Bay Area

  • I led a team for Sprinklr that was responsible for securing the product from application all the way to infrastructure. My team managed the end to end Secure Product Lifecycle, created capabilities and provided expertise to Sprinklr teams that ensured security was proactively baked into the products. The team managed security activities such as architecture reviews, threat modeling, security tooling, cloud security architecture assessment, vulnerability disclosure program, pentesting, SecChamp program etc to ensure Sprinklr's security program was technically deep and provided a risk first scalable approach to product security.
Cloud InfrastructureLeadershipTeam LeadershipSecurity ControlsStartupsNegotiation+33

Adobe

8 roles

Director of Cloud Security

Promoted

Aug 2018Nov 2021 · 3 yrs 3 mos

  • As a Director of Cloud Security, I led a team that performed proactive security reviews of Adobe's operational environments (AWS, Azure, data centers) as a part of Adobe's Secure Product Lifecycle. My team set the vision and drove execution of the operational security stack that product teams used for their security needs and for scaling security monitoring of their operational environments. My team was also responsible for pushing security requirements, design and implementation of Adobe's own operational container platform.
  • I was part of a highly visible central team and was responsible for defining and execution of the operational security vision and strategy across Adobe.
  • My role was cross functional that included directly and indirectly influencing teams to drive the overall operational security vision.
  • My role required me to apply my leadership, people management and technical skills to bridge cross functional gaps and push forward a unified security roadmap in order to reduce risk to Adobe's operational environments.
  • I led a team of very technical people who threat modeled complex operational architectures and proactively pushed security best practices to various operational teams within the company.
  • My team achieved scale by a combination of deep human security expertise used to review key products, automation that is performed through security tooling and pattern / heat-map detection that was achieved through security data analysis.
  • I advocated a data driven, risk first approach to secure Adobe's operational environments.
Cloud InfrastructureLeadershipTeam LeadershipSecurity ControlsStrategic InitiativesVulnerability Management+20

Senior Manager II Secure Software Engineering

Sep 2015Aug 2018 · 2 yrs 11 mos

  • Same as Senior Manager Secure Software Engineering
LeadershipTeam LeadershipVulnerability ManagementCloud SecurityIncident ManagementVulnerability Assessment+9

Senior Manager, Secure Software Engineering

Sep 2012Sep 2015 · 3 yrs

  • I led and managed a highly specialized "cross-business unit" team that focused on product security across Adobe.
  • I was responsible for defining, prioritizing and implementing a strategy to ensure that the security team was meeting technical and engineering security needs of the company as Adobe's business grew and changed.
  • My team consisted of security researchers who provided consultation to product teams on all aspects of the secure product life cycle process, offered security training to employees and participated in the incident response process.
  • I managed a centralized security team that was primarily responsible for proactive security guidance, security research, risk/threat modeling and for defining clear security roadmaps for product teams. We also translated the latest security trends as they apply to Adobe's products. My team evangelized compelling business cases for investing in security improvements by product teams or for on-boarding a new team to invest in security that had been acquired during a M&A.
  • I also managed the penetration testing team for Document Cloud that validated the security and compliance of Adobe's flagship cloud-first product.
  • My role required me to plan projects, budgets and resources ; manage employees and also develop a deep understanding of products and their underlying technologies.
  • My team partnered with various stake holders such as business leaders, PR, marketing, compliance and engineering teams within the company and with security partners, vendors and security researchers outside Adobe. The team was responsible for developing strong security relations with the external security community including presenting at security conferences / meet-ups and contributing to Adobe's security blog.
Team LeadershipVulnerability ManagementVulnerability AssessmentSecurity Architecture DesignSecurityOWASP+6

Senior Engineering Manager

Promoted

Mar 2012Aug 2012 · 5 mos

  • Participated in defining strategy and vision for the Core Technology group as per the company’s strategic plan and values.
  • Led technology and projects in line with well-defined roadmaps.
  • Managed and led multiple teams who develop and deliver high quality components that ship with key Adobe products and initiatives (e.g. Adobe Acrobat, InDesign, Photoshop, Illustrator, Creative Cloud, etc.)
  • Delivered high quality PDF desktop technologies for cloud and devices.
  • Collaborated with various geographies, teams and functions on key projects.
  • Drove security research to strengthen Adobe products and shared technologies.
  • Helped transform innovative ideas from the team into actual shipping features in Adobe products.
  • Hired, managed, retained and mentored junior and senior developers and security researchers in the team.
  • ==Projects==
  • PDF Technologies (5 person team)
  • PDF Library / PDF Port (Desktop)
  • PDF creation/rendering modules for devices. (Devices)
  • PDF rendering worker (Cloud).
  • XMP Metadata (2 person team)
  • EPS XMP injection for Adobe CQ.
  • Solaris port of XMP cloud worker for Adobe CQ
  • Adobe Secure Software Engineering Team. (1 person team)
  • Managed ASSET team that handles security for Adobe Reader (desktop and mobile) and Business Catalyst.
  • Hired researchers in the team to expand the role of team in India.
  • CoreTech Security (1 person team)
  • Managed team and gave direction to the group to harden core technology components that ship with all Adobe products.
  • Distributed Fuzzing Framework.
  • Managed mitigation and root cause analysis of externally reported vulnerabilities in core components.
  • ==Technologies==
  • C++, C, Windows, Mac OS X, Linux, Android, iOS, PDF, Security, XMP
Team LeadershipEngineering ManagementSecurityDebuggingStrategyCybersecurity+2

Engineering Manager II

May 2009Mar 2012 · 2 yrs 10 mos

  • Same as Engineering Manager description below
Team LeadershipC++Engineering ManagementDebuggingCybersecurityTechnical Leadership

Engineering Manager

Promoted

Jun 2006May 2009 · 2 yrs 11 mos

  • Delivered PDF technology component enhancements and improvements for Adobe products (Creative Suite, Acrobat, etc.) as per their requirements and timelines.
  • Worked with Product Management to scope, enhance, manage and deliver 9 major / minor releases of PDF Library SDK to external Adobe customers.
  • Led innovation in team and proposed a component for mobile PDF creation.
  • Led team to enhance PDF technologies for Adobe’s cloud offerings.
  • Delivered and collaborated with various geographies, teams and functions on key XMP metadata projects.
  • Created and presented technology roadmaps for PDF and security portfolios.
  • Setup security teams to strengthen Adobe products, create security tools and also harden common shared technologies.
  • Encouraged and fostered innovation in team through patents, prototypes and marketing / acceptance of ideas.
  • Hired, managed and mentored junior and senior developers and setup development and security teams from scratch.
  • ==Projects==
  • PDF Technologies (8 people team)
  • PDF Library / PDF Port
  • PDF Library SDK (versions 8.1 9.0, 9.0.1, 9.1, 9.2, 9.3, 10.0, 10.0.1, 10.1)
  • PDF rendering AIR native extension.
  • Mini PDFL Library.
  • XMP Metadata (1 person team)
  • XMPFiles plug-in architecture for Creative Suite 6.
  • PDF XMPFiles plug-in for external XMPFiles SDK
  • XMPFileInfo Mac 64bit Carbon to Cocoa porting.
  • Adobe Secure Software Engineering. (1 person team)
  • Managed team that handled security for some Adobe products and created security tools for desktop application development.
  • CoreTech Security (1 person team)
  • Setup team and gave direction to the group to harden core technology components that ship with all Adobe products
  • Distributed Fuzzing Framework for components that parse file formats.
  • ==Technologies==
  • C++, C, Windows, Mac OS X, Linux, Android, iOS, PDF, XMP, Security, fuzzing.
Team LeadershipC++Engineering ManagementDebuggingCybersecurityTechnical Leadership

Computer Scientist

Jun 2004Jun 2006 · 2 yrs

  • Developed, enhanced and unit tested the PDF Library component that rasterizes, prints, creates and tags all PDFs created in Adobe products (e.g. Adobe Acrobat, Photoshop, InDesign, Illustrator, etc.)
  • Worked closely and effectively with Quality Engineering, Program and Project Management to meet PDF Library component requirements.
  • Prototyped and shipped a Word .doc file format binary coloring module that improved running performance of Adobe’s PDF creation from within Microsoft Word by 40- 60%
  • Interviewed, led and mentored new developers hired in the team.
  • ==Projects==
  • Adobe PDF Library 8.0
  • Coloring module for Word PDFMaker (Acrobat 8.0)
  • ==Technologies==
  • C++, C, Windows, Mac OS X, Linux, Solaris, AIX, HPUX, PDF, doc file format
C++ProgrammingDebugging

Senior Member of Technical Staff

Jan 2003Jun 2004 · 1 yr 5 mos

  • Developed, enhanced and unit tested the DataMerge plug-in that was a PageMaker plug-in rewritten for InDesign to help migrate customers to the new publishing software.
  • Enhanced .rtf, .xls and .doc file format filters that enable import and export of document file formats within Adobe applications.
  • Worked closely and effectively with Quality Engineering, Program and Project Management to meet project requirements and commitments.
  • ==Projects==
  • Sangam Filters for InDesign and Acrobat
  • PageMaker Plug-in Pack for InDesign CS
  • ==Technologies==
  • C++, C, Windows, Mac OS X, office file formats
C++ProgrammingDebugging

Ibm software labs

Software Engineer

Aug 1999Jan 2003 · 3 yrs 5 mos · Pune/Pimpri-Chinchwad Area

  • Worked on various Lotus products (such as Lotus SmartSuite WordPro, Lotus Notes 7) and developed, enhanced, improved and unit tested them as per customer requirements and QE reported bugs.
  • Developed SNMP manager in Java and provided bug fix support to small Linux / AIX projects.
  • Gained development and debugging experience on various platforms (Windows, OS/2, and Linux) and languages (C++, C and Java).
  • ==Projects==
  • Lotus Notes 7.0 Client
  • Lotus SmartSuite (WordPro)
  • TCP/IP Stack (Linux) socket buffer allocation
  • Distributed Resource Monitor
  • SNMP Manager
  • ==Technologies ==
  • C++, C, Windows, OS/2, office file formats, Linux, TCP/IP, AIX, Java, SNMP
C++ProgrammingDebugging

Education

Jadavpur University, Kolkata

Bachelor of Engineering (B.E.) — Computer Science and Engineering

Jan 1995Jan 1999

Stackforce found 100+ more professionals with Security & Leadership

Explore similar profiles based on matching skills and experience