Xometryposted about 1 month ago
Senior
Hybrid • North Bethesda, MD
Fabricated Metal Product Manufacturing

About the position

Xometry (NASDAQ: XMTR) powers the industries of today and tomorrow by connecting the people with big ideas to the manufacturers who can bring them to life. Xometry's digital marketplace gives manufacturers the critical resources they need to grow their business while also making it easy for buyers at Fortune 1000 companies to tap into global manufacturing capacity. We are looking for staff-level cybersecurity professionals with a strong background in one or more of DevSecOps, network security, and security architecture. The DevSecOps Engineer will play a critical role in embedding security into every stage of the software development lifecycle. The ideal candidate will have a minimum of 8+ years of experience in DevSecOps or related fields and a strong understanding of cloud platforms, security automation, and secure coding practices.

Responsibilities

  • Collaborate with development, operations, and security teams to integrate security into the CI/CD pipeline, ensuring that security is embedded at every stage of the software development lifecycle.
  • Design, implement, and maintain security automation tools and processes to identify, manage, and remediate vulnerabilities in the development and production environments.
  • Develop and enforce security policies, standards, and best practices for cloud-based and on-premises infrastructure.
  • Monitor and analyze security vulnerabilities and incidents, providing timely and effective remediation.
  • Perform regular security assessments, including code reviews, vulnerability scans, and penetration tests, to ensure the security of applications and infrastructure.
  • Implement and manage security tools such as firewalls, intrusion detection/prevention systems, and endpoint protection.
  • Work with development teams to ensure secure coding practices and compliance with security standards.
  • Lead efforts to secure Kubernetes clusters and containerized environments.
  • Manage infrastructure as code (IaC) using tools like Terraform, OpenTofu, or CloudFormation to ensure secure and scalable deployments.
  • Automate security tasks and processes using Python and shell scripting.
  • Stay up-to-date with the latest security threats, technologies, and industry trends, and apply this knowledge to enhance the security posture of the organization.
  • Participate in incident response and disaster recovery planning and execution.

Requirements

  • Minimum of 8+ years of experience in DevSecOps, DevOps, or a related field, with a strong focus on security.
  • Experience with AWS or deep fluency in one of GCP or Azure, with a strong desire to expand knowledge into AWS.
  • Proficiency with CI/CD tools such as Github Actions, Jenkins, GitLab CI, or CircleCI, and experience in integrating security tools into these pipelines.
  • Hands-on experience with Kubernetes, including securing and managing clusters in production environments.
  • Proficiency with infrastructure as code (IaC) tools such as Terraform, OpenTofu, or CloudFormation.
  • Strong programming skills in Python and shell scripting for automation and security tasks.
  • Knowledge of security best practices, including secure coding, encryption, authentication, and access control.
  • Excellent problem-solving skills, with the ability to troubleshoot complex security issues.
  • Strong communication skills, with the ability to convey technical security information to non-technical stakeholders.
  • Must be a US Citizen or legal permanent resident (Xometry handles ITAR data)

Nice-to-haves

  • Experience in security architecture and designing secure systems.
  • Knowledge of JavaScript and securing JavaScript-based applications.
  • Relevant certifications such as CISSP, Security+, or AWS Certified Security - Specialty.
  • Experience with automating security in a microservices architecture.
  • Bachelor's degree in Computer Science, Information Security, Engineering, or a related field (or equivalent work experience).

Job Keywords

Hard Skills
  • Circleci
  • Gitlab
  • Kubernetes
  • Python
  • Terraform
  • 23oYMw
  • 4Wb FuCyscn1K
  • 8w6jSc01E ALN9lpdjhM3
  • 9MpQY01TZXgF aAt0joNfb
  • AErdPRUScMb1uK B5EJ38ZN4
  • APHxWoL
  • Avm9SNh tTWKiI2
  • avzt4R58n pG3rJZ9KT
  • ctmbj1yl
  • DVbTk H1Mide7
  • Ez1 FAPC7bfuRIxsi VT3i8PI
  • FEPIMlNC6BmkAso 3GX RgPsV
  • GtAo9JYWuv 7Ho6f0p32Q VkFWfroS
  • GzbtDvrkj0iMuQ XGT4ZhEBb
  • HsU1th3yv GCKMaky6wpI
  • jgiQcb2kvR7
  • jKLAl7s p71nsuT
  • MjsmHIn Lmkj0KE
  • ML6HWNuintv yTn6YmUIq
  • mzG4fxdeKM6 FwAEGIBj1xZT4
  • Pgd7iIERz YlorgC1zG
  • RjY0u2FeZIGh lG2fULs5Z
  • tJ70RBXMW2U1 CcR7bvENDtTi
  • UTPL1O0gV E2gQTkas3noh
  • VnHBkQm QTtxNkM9Z
  • yi1eLkN2xFzA GcKrBg3A
  • ZT6Dk1bUSRPy873 4XJ3CpKjhk6
Soft Skills
  • zBkERxeW BHIq91XP
Build your resume with AI

A Smarter and Faster Way to Build Your Resume

Go to AI Resume Builder
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service