Xometry Logo

Xometry

Senior DevSecOps Engineer

Reposted Yesterday
Be an Early Applicant
In-Office
Denver, CO
Senior level
In-Office
Denver, CO
Senior level
The Senior DevSecOps Engineer integrates security into the software development lifecycle, implements security tools, and automates security tasks using Python and shell scripting.
The summary above was generated by AI

Xometry (NASDAQ: XMTR) powers the industries of today and tomorrow by connecting the people with big ideas to the manufacturers who can bring them to life. Xometry’s digital marketplace gives manufacturers the critical resources they need to grow their business while also making it easy for buyers at Fortune 1000 companies to tap into global manufacturing capacity.

Xometry is seeking a Senior DevSecOps Engineer to join our growing cybersecurity team. In this critical role, you will be responsible for embedding security throughout the software development lifecycle, ensuring best practices across cloud infrastructure, automation, and secure coding. The ideal candidate will bring 5+ years of experience in DevSecOps, network security, or security architecture, with a strong understanding of security automation and cloud-native platforms.

Responsibilities:

  • Collaborate with development, operations, and security teams to integrate security into the CI/CD pipeline, ensuring that security is embedded at every stage of the software development lifecycle.
  • Design, implement, and maintain security automation tools and processes to identify, manage, and remediate vulnerabilities in the development and production environments.
  • Develop and enforce security policies, standards, and best practices for cloud-based and on-premises infrastructure.
  • Monitor and analyze security vulnerabilities and incidents, providing timely and effective remediation.
  • Perform regular security assessments, including code reviews, vulnerability scans, and penetration tests, to ensure the security of applications and infrastructure.
  • Implement and manage security tools such as firewalls, intrusion detection/prevention systems, and endpoint protection.
  • Work with development teams to ensure secure coding practices and compliance with security standards.
  • Lead efforts to secure Kubernetes clusters and containerized environments.
  • Manage infrastructure as code (IaC) using tools like Terraform, OpenTofu, or CloudFormation to ensure secure and scalable deployments.
  • Automate security tasks and processes using Python and shell scripting.
  • Stay up-to-date with the latest security threats, technologies, and industry trends, and apply this knowledge to enhance the security posture of the organization.
  • Participate in incident response and disaster recovery planning and execution.

Qualifications:

  • Minimum of 5+ years of experience in DevSecOps, DevOps, or a related field, with a strong focus on security.
  • Experience with AWS or deep fluency in one of GCP or Azure, with a strong desire to expand knowledge into AWS.
  • Proficiency with CI/CD tools such as Github Actions, Jenkins, GitLab CI, or CircleCI, and experience in integrating security tools into these pipelines.
  • Hands-on experience with Kubernetes, including securing and managing clusters in production environments.
  • Proficiency with infrastructure as code (IaC) tools such as Terraform, OpenTofu, or CloudFormation.
  • Strong programming skills in Python and shell scripting for automation and security tasks.
  • Knowledge of security best practices, including secure coding, encryption, authentication, and access control.
  • Excellent problem-solving skills, with the ability to troubleshoot complex security issues.
  • Strong communication skills, with the ability to convey technical security information to non-technical stakeholders.
  • Must be a US Citizen or legal permanent resident (Xometry handles ITAR data)
  • Experience in security architecture and designing secure systems.
  • Knowledge of JavaScript and securing JavaScript-based applications.
  • Relevant certifications such as CISSP, Security+, or AWS Certified Security – Specialty.
  • Experience with automating security in a microservices architecture.
  • Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field (or equivalent work experience).

#LI-Hybrid

 

Xometry is an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran, or disability status.

For US based roles: Xometry participates in E-Verify and after a job offer is accepted, will provide the federal government with your Form I-9 information to confirm that you are authorized to work in the U.S.

Top Skills

AWS
Azure
Ci/Cd
CircleCI
Cloud-Native Platforms
CloudFormation
Devsecops
GCP
Github Actions
Gitlab Ci
Jenkins
Kubernetes
Network Security
Opentofu
Python
Security Automation
Shell Scripting
Terraform

Similar Jobs

4 Hours Ago
Hybrid
Denver, CO, USA
124K-186K Annually
Senior level
124K-186K Annually
Senior level
Consumer Web • eCommerce • Marketing Tech • Retail • Software • Analytics • Generative AI
The Sales Strategy & Analytics Lead drives strategic initiatives to enhance sales effectiveness, providing analytics, insights, and support for market strategies and performance optimization.
Top Skills: Ai ToolsGoogle SheetsSQLTableau
6 Hours Ago
In-Office
Englewood, CO, USA
110K-157K Annually
Senior level
110K-157K Annually
Senior level
Aerospace • Cloud • Digital Media • Information Technology • Mobile • News + Entertainment • Retail
Lead the development of secure and scalable RESTful microservices and web applications. Collaborate with teams to ensure high-quality API designs and implementations.
Top Skills: ApigeeAws EksAws LambdaDockerDocumentdbDynamoDBGitlabHarnessJavaKubernetesMongoDBNode.jsOpenapiPythonSpring BootSwagger
6 Hours Ago
In-Office
Englewood, CO, USA
84K-110K Annually
Mid level
84K-110K Annually
Mid level
Aerospace • Cloud • Digital Media • Information Technology • Mobile • News + Entertainment • Retail
Manage a team of analysts for front end testing and enhance application performance. Collaborate with IT and business partners to ensure optimal user experience and resolve incidents.
Top Skills: AxiomChatCustomer AppIvr

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account