Infrastructure Security Engineer

Opendoor

Confirmed live yesterday Trusted

Quick summary

Work type
On-site
Location
Toronto, Ontario, Canada
Posted
86 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

How this pay compares to similar roles

Similar $175k
$116k most similar roles pay here $231k

This listing doesn't post a salary. Most similar roles pay $145,700–$203,500.

Based on 240 similar postings.

Employer

About Opendoor

Opendoor is a digital real estate marketplace that buys and sells homes directly to consumers, simplifying the home selling and buying experience through instant offers and transparent pricing. Industry: Real Estate Technology & iBuying

Opendoor currently has 31 open roles on FindRole.

Listed pay typically runs $156,800–$335,000 across 6 roles with salary data.

Most-posted roles

View all roles at Opendoor

At a glance

TL;DR · Infrastructure Security Engineer

Infrastructure Security Engineer joins the Security Engineering team to protect infrastructure and products by building automated guardrails rather than manual gates. This role involves owning the security architecture for multi-account AWS environments, Kubernetes clusters, and the identity plane supporting home acquisition, resale, mortgage, title, and escrow services. Key responsibilities include developing cloud security visibility platforms, implementing zero trust access strategies, hardening Kubernetes environments with RBAC and admission policies, and building agentic detection and response workflows. The candidate will drive shift-left security in pipelines using Terraform and GitHub Actions while managing secrets via Vault. Required skills include proficiency in Go, Python, or TypeScript, along with experience in AWS, Azure, GCP, EKS, and tools like Datadog and Okta. The role focuses on securing production cloud infrastructure against risks while enabling engineering velocity through automation and AI-driven workflows.

What you'll do

  • Manage security architecture for production cloud environments including AWS accounts, Kubernetes clusters, and identity planes.
  • Build and operate a cloud security visibility platform integrated into engineering workflows for automated risk remediation.
  • Define and implement zero trust access strategies using device trust and identity-aware proxies.
  • Harden Kubernetes environments through RBAC, admission policies, workload identity, and runtime protection.
  • Develop agentic detection and response workflows using AWS primitives to automate alert investigation and remediation.
  • Implement shift-left security in CI/CD pipelines to catch infrastructure misconfigurations at the commit stage.
  • Manage cloud detection engineering by tuning GuardDuty, Security Hub, and CloudTrail logs for high-signal alerts.
  • Establish "secure by default" standards for AI-driven applications and agentic workflows interacting with production infrastructure.

What we're looking for

  • 5+ years of cloud or infrastructure security experience with deep AWS expertise.
  • Proficiency in at least one of Go, Python, or TypeScript.
  • Ability to read and write Terraform (HCL) and shell scripts.
  • Hands-on Kubernetes security experience including RBAC, network policies, admission control, and workload identity.
  • Experience deploying and operating cloud posture and workload protection tooling such as Wiz, Prisma, Orca, Datadog, or CrowdStrike Falcon Cloud.
  • Demonstrated ability to build identity and access management solutions at scale with an identity-first security mindset.
  • Proven track record of building agentic systems to automate and replace manual security work.
  • Ability to operate with high autonomy in ambiguous environments to define security standards where no playbook exists.

More like this

Similar roles

Infrastructure Security Engineer

Opendoor

Toronto, Ontario, Canada 86 days ago
AWS Kubernetes Terraform Go Python TypeScript Okta HashiCorp Vault Azure GCP EKS Helm Argo CD Datadog GitHub Actions Zero Trust S3 Lambda CloudTrail GuardDuty
5+ yrs exp

Infrastructure Security Engineer

Opendoor

Miami, FL 86 days ago
AWS Kubernetes Terraform Go Python TypeScript Okta HashiCorp Vault Datadog GitHub Actions Zero Trust Azure GCP EKS Helm Argo CD S3 Kinesis CloudTrail GuardDuty Security Hub Elastic Container Registry
5+ yrs exp Hybrid

Infrastructure Security Engineer

Opendoor

Miami, FL 86 days ago
AWS Kubernetes Terraform Go Python TypeScript Okta HashiCorp Vault Datadog Azure GCP GitHub Actions Zero Trust S3 Kinesis Helm Argo CD CloudTrail
5+ yrs exp Hybrid

Application Security Engineer

Opendoor

Toronto, Canada 86 days ago
Go Python TypeScript Ruby Terraform AWS GCP Azure Kubernetes GraphQL Apollo GitHub Advanced Security CodeQL Semgrep HackerOne Burp Suite Cloudflare WAF Claude OpenAI REST gRPC Threat Modeling
5+ yrs exp Hybrid

Application Security Engineer

Opendoor

Miami, FL 86 days ago
Go Python TypeScript Ruby Terraform AWS GCP Azure Kubernetes GraphQL Apollo GitHub Advanced Security CodeQL Semgrep HackerOne Burp Suite Cloudflare WAF Claude OpenAI REST gRPC Threat Modeling
5+ yrs exp Hybrid

Senior Cloud Platform Security Engineer

CoStar Group

Arlington, VA +1 74 days ago $115,000$203,000
AWS GCP Azure Kubernetes EKS Terraform CloudFormation Python Ansible PowerShell CI/CD IaC Wiz Snyk Datadog Prisma Cloud Orca OPA Gatekeeper Falco Security Hub GuardDuty SBOM
6+ yrs exp