Back to jobs
New

Manager, Security Controls & Compliance

London, England

At Algolia, we’re proud to be a pioneer and market leader in AI Search, empowering 17,000+ businesses to deliver blazing-fast, predictive search and browse experiences at internet scale. Every week, we power over 30 billion search requests — four times more than Microsoft Bing, Yahoo, Baidu, Yandex, and DuckDuckGo combined.

In 2021, we raised $150 million in Series D funding, quadrupling our valuation to $2.25 billion. This strong foundation enables us to keep investing in our market-leading platform and serving incredible customers like Under Armour, PetSmart, Stripe, Gymshark, and Walgreens.

We’re looking for a Security Controls & Compliance Manager to own the day-to-day operation and continuous improvement of our security control and compliance framework.

This role sits at the intersection of security, IT, and business systems, ensuring that controls are not only well-designed, but consistently executed, evidenced, and audit-ready.

You will work closely with internal teams across infrastructure, data, legal, and security to ensure we can continuously demonstrate compliance across frameworks such as SOC 2, ISO 27001, C5, and emerging standards like ISO 42001.

This is a hands-on role with management responsibility, suited to someone who enjoys turning complex operational environments into clear, measurable, and auditable systems.

What you’ll do

  • Own and operate Algolia’s security compliance programmes (SOC 2, ISO 27001, C5, ISO 42001)
  • Maintain and evolve a unified control framework mapped across multiple standards
  • Manage the full audit lifecycle, including preparation, coordination, and remediation
  • Design and run a risk-based internal audit programme
  • Ensure controls are continuously evidenced and audit-ready, leveraging automation wherever possible
  • Own and optimise compliance tooling (e.g. Vanta), ensuring it accurately reflects operational reality
  • Translate operational signals (e.g. from Jira, endpoint tooling, and internal systems) into reliable control evidence
  • Oversee vendor assurance processes, including due diligence and ongoing monitoring
  • Track and report on control effectiveness, risks, and remediation progress
  • Manage and develop a small team of compliance and assurance analysts

How you’ll work

  • Partner with infrastructure, IT, and data teams to ensure controls are implemented and operating effectively
  • Collaborate with security and engineering teams to align control requirements with technical capabilities
  • Work closely with legal and procurement on vendor assurance and compliance obligations
  • Act as a trusted point of contact for auditors and internal stakeholders

What we’re looking for

  • Experience managing security compliance programmes such as C5, SOC 2 and ISO 27001
  • Strong understanding of security controls and how they operate in real-world environments
  • Experience working with compliance/GRC tooling (e.g. Vanta, or similar)
  • Comfortable working cross-functionally with technical and non-technical teams
  • Ability to translate operational processes and technical signals into clear, auditable evidence
  • Experience coordinating audits and working with external auditors
  • Strong organisational skills with a pragmatic, delivery-focused mindset

Nice to have

  • Experience with additional frameworks such as ISO 42001
  • Familiarity with SaaS environments and cloud-native tooling
  • Exposure to vendor risk management programmes
  • Experience building or improving compliance processes in a scaling organisation

Why this role matters

This role is key to ensuring that Algolia’s security controls are not just defined, but consistently operating and provable. You’ll help build a system where compliance is continuous, efficient, and aligned with how the business actually runs.

 

#LI-Hybrid 

FLEXIBLE WORKPLACE STRATEGY:

Algolia’s flexible workplace model is designed to empower all Algolians to fulfill our mission to power search and discovery with ease. We place an emphasis on an individual’s impact, contribution, and output, over their physical location. Algolia is a high-trust environment and many of our team members have the autonomy to choose where they want to work and when. 

We have a global presence with offices in Paris, NYC, London, Sydney and Bucharest, however we also offer many of our team members the option to work remotely either as fully remote or hybrid-remote employees. Positions listed as "Remote" are only available for remote work within the specified country. Positions listed within a specific city are only available in that location - depending on the role it may be available with either a hybrid-remote or in-office schedule.

WE’RE LOOKING FOR SOMEONE WHO CAN LIVE OUR VALUES:

  • GRIT - Problem-solving and perseverance capability in an ever-changing and growing environment.
  • TRUST - Willingness to trust our co-workers and to take ownership.
  • CANDOR - Ability to receive and give constructive feedback.
  • CARE - Genuine care about other team members, our clients and the decisions we make in the company.
  • HUMILITY - Aptitude for learning from others, putting ego aside.

We’re looking for talented, passionate people to help build the world’s best search and discovery technology. We value autonomy, diversity, and collaboration. We’re committed to creating an inclusive workplace where everyone is respected and supported—regardless of race, age, ancestry, religion, sex, gender identity, sexual orientation, marital status, color, veteran status, disability, or socioeconomic background.

IMPORTANT NOTICE FOR CANDIDATES - Recruitment Fraud Notice

We’ve recently seen an increase in recruitment scams targeting job seekers. To help protect yourself, please keep the following in mind:

  • Our open positions may appear on third-party job boards, but the best way to apply safely is directly through our careers page.
  • All genuine communication from Algolia will come from an @algolia.com email address. If you receive an email from someone claiming to work at Algolia who does not have an @algolia.com email address, please do not respond or share any personal information.
  • We’ll never ask for payments, purchases, or financial details during the hiring process.

READY TO APPLY?

If you share our values and our enthusiasm for building the world’s best search & discovery technology, we’d love to review your application!

Create a Job Alert

Interested in building your career at Algolia? Get future opportunities sent straight to your email.

Apply for this job

*

indicates a required field

Phone
Resume/CV*

Accepted file types: pdf, doc, docx, txt, rtf


Education

Select...
Select...

Select...

Current city and state where you reside.

Select...
Select...
Select...
Guidelines for using AI in our interviewing process *

As your prospective employer, Algolia has outlined our policy on how candidates are permitted to use AI in our hiring processes. Knowing that the way we experience AI may evolve over time, we will regularly review our approach to AI to ensure alignment with current legislation and to protect against potential biases in our processes. Prior to engaging in the interview process, please review our current policy.

Voluntary Self-Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.

As set forth in Algolia’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Select...
Select...
Race & Ethnicity Definitions

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Select...

Voluntary Self-Identification of Disability

Form CC-305
Page 1 of 1
OMB Control Number 1250-0005
Expires 04/30/2026

Why are you being asked to complete this form?

We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.

Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp.

How do you know if you have a disability?

A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability. Disabilities include, but are not limited to:

  • Alcohol or other substance use disorder (not currently using drugs illegally)
  • Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDS
  • Blind or low vision
  • Cancer (past or present)
  • Cardiovascular or heart disease
  • Celiac disease
  • Cerebral palsy
  • Deaf or serious difficulty hearing
  • Diabetes
  • Disfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disorders
  • Epilepsy or other seizure disorder
  • Gastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndrome
  • Intellectual or developmental disability
  • Mental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSD
  • Missing limbs or partially missing limbs
  • Mobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supports
  • Nervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)
  • Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilities
  • Partial or complete paralysis (any cause)
  • Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysema
  • Short stature (dwarfism)
  • Traumatic brain injury
Select...

PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.