Responsibilities
- Own the security architecture of Opendoor’s production cloud environment across AWS accounts, Kubernetes clusters, Terraform-managed infrastructure, and the identity plane.
- Build and operate cloud security visibility, protection, and automated infrastructure-risk remediation capabilities integrated with engineering workflows.
- Define and drive zero-trust access strategies using device trust and identity-aware proxies.
- Harden Kubernetes through RBAC, admission policies, workload identity, runtime protection, image signing, and base-image strategies.
- Build agentic detection and response workflows that connect alerting, investigation, and remediation.
- Embed cloud security checks into pipelines using Terraform, Terrakube, GitHub Actions, and Elastic Container Registry.
- Partner with Infrastructure on VPC architecture, ingress, secrets management, service identity, and cloud identity integrations.
- Operate cloud detection engineering using GuardDuty, Security Hub, CloudTrail, VPC Flow Logs, Datadog, and incident response playbooks.
- Establish secure-by-default patterns for AI-enabled applications, MCP servers, and agent-driven workflows touching production infrastructure.
- Mentor engineers on cloud security patterns and convert recurring patterns into automated guardrails.
Requirements
- 5+ years of cloud or infrastructure security experience with deep AWS expertise.
- Strong programming skills in at least one of Go, Python, or TypeScript, plus the ability to read and write Terraform and shell scripts.
- Hands-on Kubernetes security experience with RBAC, network policies, admission control, workload identity, image security, and supply-chain security.
- Experience deploying and operating cloud posture and workload protection tooling such as Wiz, Prisma, Orca, Datadog, CrowdStrike Falcon Cloud, or Lacework.
- Demonstrated ability to build identity and access management solutions at scale.
- Experience building agentic systems or automating reactive security work.
- Ability to work autonomously in ambiguous environments and define effective security practices.
- Bonus experience with zero-trust network access tools such as Cloudflare Access, Tailscale, Twingate, or Google BeyondCorp.
- Bonus experience in detection engineering, threat modeling, adversarial security, AI or machine-learning pipeline security, agent frameworks, MCP integrations, cloud compliance, or open-source cloud security tooling.
Benefits
- The role is based in the Miami office and requires in-person work four days per week on Monday, Tuesday, Thursday, and Friday.
- Candidates must live within commuting distance of the Miami office.
Tech Stack
Categories
About Opendoor
Founded in 2014, Opendoor’s mission is to power life’s progress one move at a time. The traditional real estate process is broken and our goal is simple: fix it. We are building a digital, end-to-end customer experience that makes buying and selling a home simple, certain, and fast. We have assembled a dedicated team with diverse backgrounds to support more than 250,000 customer transactions across 50 markets in the U.S. But the work is far from over. Transforming the real estate industry takes tenacity and dedication. It takes problem solvers and builders. It takes a tight-knit community of teammates doing the best work of their lives, pushing one another to transform a complicated process into a simple one. So where do you fit in? Whether you’re passionate about real estate, people, numbers, words, code, or strategy -- we have a place for you. For more information, please visit www.opendoor.com Keep up with latest Opendoor news and reports: https://linktr.ee/opendoorhq
