Talent Apply
Log in
All jobs
O

Senior Security Engineer, Enterprise Security

Opendoor
Toronto, Ontario, Canada
On-site

About this role

About the Role

Opendoor is seeking a Senior Security Engineer to join Enterprise Security. You will design and operate identity and endpoint security systems to let employees move fast while staying secure, and you will build automation and AI agents to reduce manual work while maintaining engineering velocity.

What You'll Do

  • Build and operate the identity system: lifecycle automation (joiner, mover, leaver), access governance and reviews, SSO and SCIM app onboarding, phishing-resistant MFA, and conditional access.

  • Run the enterprise security program: system availability, operating metrics (fleet coverage, MTTR on enterprise vulnerabilities, access-review completion), and continuous improvement.

  • Manage and harden the endpoint fleet through centralized device management: baseline configuration, hardening, and patch and compliance enforcement as code.

  • Operate endpoint detection and protection: tune posture, drive down enterprise vulnerability exposure while maintaining engineering speed.

  • Build automation and AI agents that eliminate manual security work: access reviews, onboarding and offboarding, drift detection, and audit evidence collection.

  • Partner with the broader detection and response team to deliver high-fidelity endpoint and identity telemetry to monitoring systems and support incident response efforts.

  • Establish secure by default standards for SaaS onboarding and enterprise tooling, including the AI tools employees are adopting.

  • Deep conviction that AI and automation should eliminate manual work, with a proven track record building agentic systems.

  • What We're Looking For

  • 5+ years in IT or security engineering roles with an enterprise focus in fast-paced technology companies.

  • Deep hands-on Okta expertise with lifecycle management, SAML/OIDC SSO, SCIM provisioning, and API-driven automation.

  • Identity-first mindset: phishing-resistant authentication, conditional access, and least privilege applied at scale.

  • Endpoint management at scale with Jamf, including macOS hardening and configuration-as-code; working familiarity with Windows endpoint management.

  • EDR operations with CrowdStrike Falcon or an equivalent platform.

  • Strong scripting and automation in Python, Go, or TypeScript; comfortable writing infrastructure and configuration-as-code.

  • Business-enablement mindset; success measured by impact and informed risk-taking, not ticket volume.

  • High autonomy and comfort defining a good path forward where no playbook exists.

  • Humility and curiosity; enabling employees and partner teams alongside building guardrails.

  • Okta, Jamf, CrowdStrike Falcon, macOS, Windows, Microsoft Intune and Defender, Google Workspace, Slack, Cloudflare, Python, Go, TypeScript, Terraform, GitHub, AI tooling (OpenAI, Anthropic), Datadog.

  • Nice to Have

  • Experience with AI tooling such as OpenAI or Anthropic to automate security workflows.

  • Compensation & Benefits

  • Salary: Not disclosed (Salaried, full-time)

  • Location: Downtown Toronto office; in-person four days per week (Mon, Tue, Thu, Fri)

  • Benefits: Not specified

Your next opportunity starts here

Prepare, apply, track, interview and get hired — all from one platform, with AI in your corner.

Download app

Or sponsor Premium for someone who's job hunting →