Algolia is looking for a Senior Information Security Engineer to design and automate security controls, detection mechanisms, and tooling that protect our infrastructure and products. In this role, you will partner closely with engineering teams, conduct risk assessments, manage incident response, and support our compliance initiatives.
What You'll Do
- Design and automate controls, detection mechanisms, and tooling to improve the Information Security of Algolia’s infrastructure and products.
- Research, evaluate, and recommend new Information Security technologies, techniques, and frameworks.
- Design, implement, and maintain information security monitoring and remediation systems to protect customer and company data.
- Partner with engineering and product teams to integrate Information Security into new features, systems, and development pipelines.
- Contribute to improving Information Security standards, processes, and best practices across the company.
- Conduct Information Security risk assessments and threat models of core systems, services, and third-party vendors.
- Participate in and sometimes lead Information Security incident response activities and post-incident analysis.
- Support ongoing and emerging Information Security and compliance initiatives (e.g., SOC 2, Type II, ISO 27001, C5, GDPR).
- Manage and enhance Algolia’s public bug bounty and vulnerability disclosure programs.
What We're Looking For
- 3–6 years of experience in Information Security engineering, infrastructure protection, or related technical domains.
- Strong understanding of Information Security principles for modern cloud environments (AWS, GCP, or Azure).
- Strong understanding of, comfort with, and at least three years of experience in operating, configuring, and managing log management / SIEM, threat detection and posture management, endpoint detection and response, SAST, SOAR, and other table-stakes information security systems.
- Knowledge of common internet Information Security threats, attack vectors, and mitigation strategies.
- Proficiency in scripting or automation with at least one language (Python, Bash, Go, or similar).
- Solid understanding of computer systems, networks, and low-level protocols from an Information Security perspective.
- Experience in incident detection, response, and vulnerability management.
- Excellent communication skills, with the ability to explain Information Security risks and concepts to both technical and non-technical audiences.
- Full professional proficiency in English.
Nice to Have
- Experience scaling Information Security programs in high-growth SaaS organizations (10,000+ customers, $50–200M ARR range).
- Cloud-specific Information Security certifications or equivalent training (e.g., AWS Security Specialty, GCP Professional Security Engineer).
- Experience with complex secrets management systems such as Hashicorp Vault.
- Experience contributing to Information Security communities, such as bug bounty triage, open-source security tools, or Capture the Flag events.
- Background in privacy engineering, threat modeling, or secure software design.
Technical Stack
- Cloud: AWS, GCP, Azure
- Languages/Tools: Python, Bash, Go
- Security Platforms: SIEM, SAST, SOAR, Hashicorp Vault
Team & Environment
You will join the Information Security team, collaborating closely with engineering and product teams. Our culture values continuous learning, curiosity, and collaboration in Information Security, treating it as an enabler of innovation.
Benefits & Compensation
- Compensation range: $137,000 - $167,000 USD
- Ongoing professional development and support
Work Mode
This is a remote position open to candidates based in the United States.
Algolia is an Equal Opportunity Employer and does not discriminate on the basis of race, color, religion, sex, age, national origin, military status, veteran status, disability status, sexual orientation, gender identity, genetic information, or any other characteristic protected by law.




