- Home
- Remote Jobs
- Staff Security Architect
Date Posted:
8/30/2025
Remote Work Level:
Hybrid Remote
Location:
Hybrid Remote in North Bethesda, MD
Job Type:
Employee
Job Schedule:
Full-Time
Career Level:
Experienced
Travel Required:
No specification
Education Level:
Bachelor's/Undergraduate Degree
Salary:
We're sorry, the employer did not include salary information for this job.
Categories:
Cyber Security, Product Manager, Project Manager, Software Engineer, Python
About the Role
Title: Staff Security Architect
Location: North Bethesda, MD
Job Description:
Xometry (NASDAQ: XMTR) powers the industries of today and tomorrow by connecting the people with big ideas to the manufacturers who can bring them to life. Xometry’s digital marketplace gives manufacturers the critical resources they need to grow their business while also making it easy for buyers at Fortune 1000 companies to tap into global manufacturing capacity.
We are looking for mid-senior to senior-level cybersecurity professionals with a strong background in one or more of security architecture, DevSecOps, and network security. The Staff Security Architect will play a critical role in embedding security into every stage of the software development lifecycle. The ideal candidate will have a minimum of 5 years of experience (ideally 8+) in DevSecOps, security engineering, or related fields and a strong understanding of cloud platforms, security automation, and secure coding practices.
Key Responsibilities:
- Collaborate with development teams to integrate security into the CI/CD pipeline, ensuring that security is embedded at every stage of the software development lifecycle.
- Collaborate with development teams to build security into the enterprise architecture program.
- Design, implement, and maintain security guardrails and solutions for AI tools including genAI, coding assistants, and AI notetakers.
- Perform security reviews of SaaS tools to ensure they are sufficiently secure and can be configured securely within Xometry’s environment.
- Design, implement, and maintain security automation tools and processes to identify, manage, and remediate vulnerabilities in the development and production environments.
- Develop and enforce security policies, standards, and best practices for cloud-based and on-premises infrastructure, including containerized environments.
- Implement and manage security tools such as firewalls, intrusion detection/prevention systems, and endpoint protection.
- Manage infrastructure as code (IaC) using tools like Terraform, OpenTofu, or CloudFormation to ensure secure and scalable deployments.
- Automate security tasks and processes using Python and shell scripting.
- Stay up-to-date with the latest security threats, technologies, and industry trends, and apply this knowledge to enhance the security posture of the organization.
- Participate in incident response and disaster recovery planning and execution.
Qualifications:
- Minimum of 5 years of experience in security architecture, security engineering, DevSecOps, DevOps, or a related field, with a strong focus on security.
- Experience in security architecture and designing secure systems.
- Experience with AWS or deep fluency in one of GCP or Azure, with a strong desire to expand knowledge into AWS.
- Proficiency with CI/CD tools such as Github Actions, Jenkins, GitLab CI, or CircleCI, and experience in integrating security tools into these pipelines.
- Hands-on experience with Kubernetes, including securing and managing clusters in production environments.
- Proficiency with infrastructure as code (IaC) tools such as Terraform, OpenTofu, or CloudFormation.
- Strong programming skills in Python and shell scripting for automation and security tasks.
- Knowledge of security best practices, including secure coding, encryption, authentication, and access control.
- Excellent problem-solving skills, with the ability to troubleshoot complex security issues.
- Strong communication skills, with the ability to convey technical security information to non-technical stakeholders.
- Must be a US Citizen or legal permanent resident (Xometry handles ITAR data)
Preferred Qualifications:
- Knowledge of JavaScript and securing JavaScript-based applications.
- Relevant certifications such as CISSP, Security+, or AWS Certified Security – Specialty.
- Experience with automating security in a microservices architecture.
- Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field (or equivalent work experience).
#LI-Hybrid
Xometry is an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran, or disability status.
For US based roles: Xometry participates in E-Verify and after a job offer is accepted, will provide the federal government with your Form I-9 information to confirm that you are authorized to work in the U.S.