ミツモアのミッション
「日本のGDPを増やし 明日がもっといい日になる と思える社会に」
労働生産性が先進国の中で低く、GDPも実質賃金も下がり続けている日本。
その閉塞感を打破するために、ミツモアはサービス産業の生産性向上を追求します。
まずは集客や見積もりを自動化するプラットフォーム「ミツモア」で、そして事業者のオペレーションの全てを効率化するSaaS「プロワン」で、さらに「プロワン」のインフラ環境と「ミツモア」で活躍する豊富なプロネットワークを掛け合わせた受発注DXサービス「ハッチュー」で。
サービス・プロダクトの利用者は急激に増えていますが、それでも目指す所へはまだ一合目。
途方もなく高い山だからこそ同じ想いを持ち、ユーザーやプロダクトにまっすぐに向き合える仲間と一緒にのぼりたい。
私たちと一緒に、世界基準のサービスを通じて、明日はきっといい日になると信じられる世の中を実現していきましょう。
About the position
As a senior security engineer at MeetsMore, you'll join the SRE team and cover four areas: penetration testing of our own products, application security in the development process, AI security—covering both our LLM-powered features and our AI-assisted development process—and the technical side of security compliance: implementing controls, automating evidence collection, and answering the engineering questions in audits and customer security checks.
You will be building the security team and leading the security effort across the company. You'll work alongside an SRE / DevOps team that automates as much as possible. Communication is mostly in English and occasionally in Japanese, with support from translation tools.
Our Tech Stack
Not exhaustive, but the most important are:
- TypeScript everywhere.
- NodeJS.
- React.
- MongoDB.
- AWS (Specifically ECS, CloudFront, S3, SQS, Lambda)
- Vercel.
- Redis.
Requirements
- Have built or improved security in a development process: threat modeling, design reviews, and security tools in CI/CD (SAST, DAST, dependency scanning).
- Experience with cloud infrastructure security: finding and fixing issues in AWS IAM and network configuration, Kubernetes (RBAC, network policies, workload permissions), and CI/CD pipelines (secrets handling, supply chain).
- Experience implementing and operating automated attack detection and protection using technologies such as WAF, IDS/IPS, runtime application security, or SIEM—including rule tuning, monitoring, alerting, and response to attacks such as SQL injection and XSS.
- Experience in securing Node.js based application ~~~~(Python or Go for tooling is fine too, but TypeScript is prefered.)
- Either be conversational in Japanese or have a desire to do so (we will help).
- Be located in, or be willing to relocate to, Japan (we will relocate).
Nice to haves
- Experience testing or securing LLM-based features: prompt injection, jailbreaks, data leakage, or agent tool permissions.
- Have led at least one full penetration test from start to finish — scoping, testing, reporting, and confirming fixes — against web applications, mobile apps, and APIs.
- Have led a full certification audit (e.g., ISO 27001 / ISMS), ideally at a Japanese company: getting the controls in place, collecting evidence, and working directly with auditors.
- Offensive security certifications (OSCP, OSWE) or bug bounty / CTF experience.
Compensation
7 to 11 million JPY annually.
【職種 / 募集ポジション】
Senior Security Engineer
【雇用形態】
正社員
【給与】
年収 7,000,000円 〜 11,000,000円
※1. Job allowance is a fixed overtime pay for 40 monthly hours. ※2. Overtime beyond 40 hours is paid separately. ※3. Annual salary is based on skills, experience, and current pay.
【勤務地】
104-0083 東京都中央区銀座7丁目16−12 G-7ビルディング8階
※勤務地変更範囲:会社の定める就業場所 【アクセス】 ・東銀座駅徒歩5分(日比谷線・浅草線) ・銀座駅徒歩6分(銀座線・丸の内線) ・新橋駅徒歩9分(JR) ・築地市場駅徒歩3分(大江戸線) ・汐留駅徒歩8分(ゆりかもめ)
会社情報
【会社名】株式会社ミツモア
【代表者】
石川 彩子
【設立年月日】
2017年2月8日
【本社所在地】
東京都中央区銀座7-16-2 G-7ビルディング8階
【事業内容】
「ミツモア」「プロワン」「ハッチュー」の開発と運営 サービスページ ミツモア:https://meetsmore.com/ プロワン:https://pro-one-cloud.com/ ハッチュー:https://lp.hatch-u.com/
【従業員数】
270名以上(2025年9月現在)
【加入保険】
労災保険 雇用保険 健康保険(介護保険) 厚生年金
【休日休暇】
・土日、祝日 ・年末年始(12月29日-1月3日) ・年次有給休暇(入社時付与) ・慶弔休暇 ・年間休日125日
【福利厚生】
・各種社会保険:厚生年金、健康保険、雇用保険、労災保険 ・各種休暇:年末年始、産前産後、育児、介護等 ・入社月に年次有給休暇付与 ・通勤手当(月上限5万円まで) ・慶弔見舞金 ・定期健康診断 ・社用PC貸与 ※業務委託は非対象 ・新入社員のウェルカムランチやチーム間交流の飲食代補助 ・ミツモア利用額の20%キャッシュバック制度 ・ベビーシッター割引制度 ・オフィスコンビニ ・Cursor(エンジニア向け) ※慶弔見舞金、定期健康診断は一定の要件に基づき適用されます。