Senior DevSecOps Engineer

Reposted Yesterday
Be an Early Applicant
Lexington, KY
Senior level
Artificial Intelligence
The Role
The Senior DevSecOps Engineer will embed security into the software lifecycle, implement security automation, and manage cloud security practices, requiring extensive experience in DevSecOps.
Summary Generated by Built In

Xometry (NASDAQ: XMTR) powers the industries of today and tomorrow by connecting the people with big ideas to the manufacturers who can bring them to life. Xometry’s digital marketplace gives manufacturers the critical resources they need to grow their business while also making it easy for buyers at Fortune 1000 companies to tap into global manufacturing capacity.

Job Overview:

We are looking for senior-level cybersecurity professionals with a strong background in one or more of DevSecOps, network security, and security architecture. The DevSecOps Engineer will play a critical role in embedding security into every stage of the software development lifecycle. The ideal candidate will have a minimum of 5+ years of experience in DevSecOps or related fields and a strong understanding of cloud platforms, security automation, and secure coding practices.

Key Responsibilities:

  • Collaborate with development, operations, and security teams to integrate security into the CI/CD pipeline, ensuring that security is embedded at every stage of the software development lifecycle.
  • Design, implement, and maintain security automation tools and processes to identify, manage, and remediate vulnerabilities in the development and production environments.
  • Develop and enforce security policies, standards, and best practices for cloud-based and on-premises infrastructure.
  • Monitor and analyze security vulnerabilities and incidents, providing timely and effective remediation.
  • Perform regular security assessments, including code reviews, vulnerability scans, and penetration tests, to ensure the security of applications and infrastructure.
  • Implement and manage security tools such as firewalls, intrusion detection/prevention systems, and endpoint protection.
  • Work with development teams to ensure secure coding practices and compliance with security standards.
  • Lead efforts to secure Kubernetes clusters and containerized environments.
  • Manage infrastructure as code (IaC) using tools like Terraform, OpenTofu, or CloudFormation to ensure secure and scalable deployments.
  • Automate security tasks and processes using Python and shell scripting.
  • Stay up-to-date with the latest security threats, technologies, and industry trends, and apply this knowledge to enhance the security posture of the organization.
  • Participate in incident response and disaster recovery planning and execution.

Qualifications:

  • Minimum of 5+ years of experience in DevSecOps, DevOps, or a related field, with a strong focus on security.
  • Experience with AWS or deep fluency in one of GCP or Azure, with a strong desire to expand knowledge into AWS.
  • Proficiency with CI/CD tools such as Github Actions, Jenkins, GitLab CI, or CircleCI, and experience in integrating security tools into these pipelines.
  • Hands-on experience with Kubernetes, including securing and managing clusters in production environments.
  • Proficiency with infrastructure as code (IaC) tools such as Terraform, OpenTofu, or CloudFormation.
  • Strong programming skills in Python and shell scripting for automation and security tasks.
  • Knowledge of security best practices, including secure coding, encryption, authentication, and access control.
  • Excellent problem-solving skills, with the ability to troubleshoot complex security issues.
  • Strong communication skills, with the ability to convey technical security information to non-technical stakeholders.
  • Must be a US Citizen or legal permanent resident (Xometry handles ITAR data)

Preferred Qualifications:

  • Experience in security architecture and designing secure systems.
  • Knowledge of JavaScript and securing JavaScript-based applications.
  • Relevant certifications such as CISSP, Security+, or AWS Certified Security – Specialty.
  • Experience with automating security in a microservices architecture.
  • Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field (or equivalent work experience).

#LI-Hybrid

Xometry is an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran, or disability status.

For US based roles: Xometry participates in E-Verify and after a job offer is accepted, will provide the federal government with your Form I-9 information to confirm that you are authorized to work in the U.S.

Top Skills

AWS
Azure
CircleCI
CloudFormation
Devsecops
GCP
Github Actions
Gitlab Ci
Jenkins
Kubernetes
Network Security
Opentofu
Python
Security Architecture
Shell Scripting
Terraform
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
Bethesda, MD
381 Employees
On-site Workplace
Year Founded: 2013

What We Do

Xometry is the leading AI-enabled marketplace for on-demand manufacturing, transforming one of the largest industries in the world. With its proprietary technology, Xometry creates a marketplace that enables designers and engineers to rapidly source high-quality on-demand manufactured parts and assemblies. Xometry's innovative platform also empowers sellers of manufacturing services across the nation to grow their businesses. Xometry’s buyers range from self-funded startups to Fortune 100 companies.

Similar Jobs

CrowdStrike Logo CrowdStrike

Threat Analyst, Machine Learning (Remote, East/Central)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote
Hybrid
38 Locations
10000 Employees
100K-150K Annually

Chewy Logo Chewy

Compounding Sanitization Support

eCommerce • Healthtech • Pet • Retail • Pharmaceutical
Hybrid
Louisville, KY, USA
20000 Employees

PwC Logo PwC

Google PDM/PLM Consultant - Manager

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Remote
Hybrid
69 Locations
370000 Employees
100K-232K Annually

Spectrum Logo Spectrum

Vertical Market Technical Sales Consultant, Security and Data, Spectrum Business

Information Technology • Internet of Things • Mobile • On-Demand • Software
Louisville, KY, USA
100000 Employees

Similar Companies Hiring

Stepful Thumbnail
Software • Healthtech • Edtech • Artificial Intelligence
New York, New York
60 Employees
HERE Technologies Thumbnail
Software • Logistics • Internet of Things • Information Technology • Computer Vision • Automotive • Artificial Intelligence
Amsterdam, NL
6000 Employees
True Anomaly Thumbnail
Software • Machine Learning • Hardware • Defense • Artificial Intelligence • Aerospace
Colorado Springs, CO
131 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account