Infrastructure Security Engineer
Core
Own the security architecture of Opendoor's production cloud environment, build cloud security visibility and protection capabilities, and drive zero-trust access strategies.
Role type
Senior Infrastructure Security Engineer (Cloud)
Builds
Production cloud security controls, automated remediation workflows, and agentic detection systems for AWS and Kubernetes.
Domain
Cloud Infrastructure Security (AWS, Kubernetes)
Deliverable
production ML models | product features | infrastructure
Required skills
AWS expertise, Go/Python/TypeScript programming, Terraform, Kubernetes security (RBAC, admission control, workload identity), cloud posture management, automation engineering, identity and access management
Preferred skills
Zero-trust network access, detection engineering, threat modeling, AI/ML pipeline security, compliance frameworks, open-source cloud security tooling
Technologies
AWS, Kubernetes, Terraform, Datadog, Wiz, Prisma, Orca, CrowdStrike Falcon Cloud, Lacework, GitHub Actions, Elastic Container Registry
Responsibilities
Define and drive zero-trust access strategies using device trust and identity-aware proxies; Harden Kubernetes through RBAC, admission policies, workload identity, runtime protection, image signing, and base-image strategy; Build agentic detection and response workflows and operate cloud detection engineering; Drive shift-left cloud security through Terraform/Terrakube, GitHub Actions, and Elastic Container Registry; Partner with Infrastructure on VPC architecture, ingress, secrets management, service identity, and multi-cloud identity integrations; Mentor engineers and turn cloud security patterns into automated guardrails
Seniority
Senior, hands-on IC