
Posted 13 hours ago
Infrastructure Security Engineer
OpendoorInfrastructure Security Engineer
Requirements
5+ years cloud or infrastructure security experience, Deep AWS expertise, Proficiency in Go, Python, or TypeScript, Hands-on Kubernetes security experience, Experience with cloud posture and workload protection tooling, Ability to work in-person in Toronto 4 days per week
Skills
AWSKubernetesTerraformPythonGoTypeScriptOKTADatadog
About the role
Responsibilities
- Own the security architecture of the production cloud environment, including multi-account AWS, Kubernetes clusters, and the identity plane.
- Evaluate, build, and operate cloud security visibility and protection platforms to drive automated remediation of infrastructure risks.
- Define and drive a zero trust access strategy, integrating device trust and identity-aware proxies.
- Harden Kubernetes environments through RBAC, admission policies, workload identity, and runtime protection.
- Build agentic detection and response workflows using AWS native primitives to close the loop from alert to remediation.
- Drive a shift-left security strategy within CI/CD pipelines using Terraform, GitHub Actions, and container registries.
- Partner with Infrastructure teams on VPC architecture, secrets management (Vault), and service identity.
- Manage cloud detection engineering using tools like GuardDuty, Security Hub, and CloudTrail, integrated with Datadog.
Requirements
- 5+ years of cloud or infrastructure security experience with deep AWS expertise.
- Proficiency in at least one of Go, Python, or TypeScript.
- Hands-on experience with Kubernetes security (RBAC, network policies, admission control).
- Experience deploying and operating cloud posture and workload protection tooling (e.g., Wiz, Prisma, Orca, or equivalent).
- Ability to work in-person in the Toronto office 4 days per week.
- Strong understanding of identity and access management (IAM) at scale.
Preferred Qualifications
- Experience designing or operating Zero Trust Network Access (e.g., Cloudflare Access, Tailscale).
- Background in detection engineering with a threat modeling and adversarial mindset.
- Experience securing AI/ML pipelines, agent frameworks, or MCP-style integrations.
- Open source contributions to cloud security tooling (e.g., Falco, Kyverno, OPA).
About the Company
Opendoor is building the modern system of homeownership, providing an end-to-end online experience that gives people the freedom to buy and sell homes on their own terms.
ScoutJobs Agent
Get matches like this delivered daily
Sign up free — we'll pull jobs that fit your CV from across the web and rank them for you.
Get started — it's freeInfrastructure Security Engineer
Opendoor · Toronto
