Job Description
Xometry is seeking a Senior Security Engineer to enhance its cybersecurity posture. This role involves embedding security into the software development lifecycle and requires a strong background in DevSecOps, network security, and security architecture. The candidate will collaborate with development, operations, and security teams to integrate security into CI/CD pipelines.
Role involves:
- Integrating security into the CI/CD pipeline.
- Designing and maintaining security automation tools.
- Developing and enforcing security policies.
- Monitoring and analyzing security vulnerabilities.
- Performing security assessments and penetration tests.
- Managing security tools like firewalls and intrusion detection systems.
- Ensuring secure coding practices.
- Securing Kubernetes clusters and containerized environments.
- Managing infrastructure as code (IaC).
- Automating security tasks using Python and shell scripting.
- Participating in incident response and disaster recovery planning.
Requirements:
- Minimum of 5+ years of experience in DevSecOps, DevOps, or a related field.
- Experience with AWS or deep fluency in one of GCP or Azure.
- Proficiency with CI/CD tools like Github Actions, Jenkins, GitLab CI, or CircleCI.
- Hands-on experience with Kubernetes.
- Proficiency with infrastructure as code (IaC) tools such as Terraform, OpenTofu, or CloudFormation.
- Strong programming skills in Python and shell scripting.
- Knowledge of security best practices.
- Excellent problem-solving skills.
- Strong communication skills.
- Must be a US Citizen or legal permanent resident.
Xometry offers:
- Opportunity to work on securing cloud-based and on-premises infrastructure.
- Chance to lead efforts in securing Kubernetes clusters and containerized environments.
- Involvement in incident response and disaster recovery planning.