Migaru AI builds an AI-native CRM that automatically reads a sales team's email, calendar and calls to keep customer records current, drafting follow-ups and prepping meetings so reps spend their time selling instead of updating a database. As the company grows its product and customer base, it is looking for a Security Engineer to help protect customer data, support security reviews during the sales process, and strengthen the security posture of the platform.
What you'll do
- Design, implement and maintain security controls across cloud infrastructure, application code, and internal systems
- Support customer-facing security reviews, questionnaires, and due-diligence requests, including compliance documentation such as SOC 2
- Monitor for vulnerabilities and threats, and lead incident response when issues are identified
- Partner with engineering to embed secure coding practices and threat modeling into the development lifecycle
- Conduct security assessments, penetration tests, and audits of internal and third-party systems
- Build and improve tooling for logging, alerting, access control, and secrets management
What we're looking for
- Several years of experience in a security engineering, application security, or infrastructure security role
- Strong understanding of cloud security (AWS, GCP, or Azure), identity and access management, and network security fundamentals
- Experience supporting compliance frameworks such as SOC 2, ISO 27001, or similar
- Familiarity with secure software development practices and common vulnerability classes
- Comfort working directly with customers and prospects on security questionnaires and reviews
- Strong written and verbal communication skills for explaining security decisions to technical and non-technical audiences
Nice to have
- Experience securing systems that integrate with email, calendar, or communications data
- Background in a fast-moving startup environment
- Relevant security certifications (e.g., CISSP, OSCP, CCSP)
