Information Security Engineer
Job Description
<div class="content-intro"><div><span id="m_8220454926977230902gmail-docs-internal-guid-9a9f34f4-7fff-014a-c97c-98ca90610a47">Algolia is the retrieval intelligence layer that turns intent into trusted, decision-grade outcomes. Powering more than 1.7 trillion queries a year for over 18,000 customers with millisecond latency and 99.999% reliability, we are the recognized leader for Search and Product Discovery by top industry analyst firms. The Algolia platform turns a company's products, content, and business rules into data that humans, applications and AI agents can act upon. The result is trusted customer experiences with stronger conversions for measurable business impact.</span></div> <div> </div></div><p>At Algolia, Information Security is built into everything we do. It is not an afterthought; it’s a core design and operational principle. Our Information Security team ensures that trust, privacy, and resilience are embedded throughout our infrastructure, products, and internal processes. </p> <p>As Algolia continues to expand globally, we are growing our Information Security team to match that scale. We are seeking a pragmatic, technically strong, and collaborative information security engineer to strengthen our Information Security posture and enable the company to innovate securely and confidently.</p> <p><strong>What You’ll Do </strong></p> <ul> <li>Design and automate controls, detection mechanisms, and tooling to improve the Information Security of Algolia’s infrastructure and products </li> <li>Research, evaluate, and recommend new Information Security technologies, techniques, and frameworks </li> <li>Design, implement, and maintain information security monitoring and remediation systems that move the needle in protecting Algolia’s customers’ data, and protecting Algolia’s systems and data </li> <li>Partner with engineering and product teams to integrate Information Security into new features, systems, and development pipelines </li> <li>Contribute to improving Information Security standards, processes, and best practices across the company </li> <li>Conduct Information Security risk assessments and threat models of core systems, services, and third-party vendors (this does not include answering customer third-party risk assessment questionnaires). </li> <li>Participate in and sometimes lead Information Security incident response activities and post-incident analysis </li> <li>Support ongoing and emerging Information Security and compliance initiatives (e.g., SOC 2, Type II, ISO 27001, C5, GDPR)</li> <li>Manage and enhance Algolia’s public bug bounty and vulnerability disclosure programs </li> </ul> <p><strong>What We’re Looking For </strong></p> <ul> <li>3–6 years of experience in Information Security engineering, infrastructure protection, or related technical domains </li> <li>Proficiency in scripting or automation with at least one language (Python, Bash, Go, or similar) is required. Experience with Kubernetes is preferred. </li> <li>Strong understanding of Information Security principles for modern cloud environments (AWS, GCP, or Azure) as well as operations in datacenters. </li> <li>Strong understanding of, comfort with, and at least three years of experience in operating, configuring, and managing log management / SIEM, threat detection and posture management, endpoint detection and response, SAST, SOAR, CTI, and other table-stakes information security systems with strong preference to at least one year of experience with deep use of Crowdstrike or Obsidian (preferably both). </li> <li>Knowledge of common internet Information Securit