Staff Cyber Resilience Engineer

🕒 May 21

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Xometry

Xometry

1001 - 5000 employees

Founded 2013

💰 $75M Series E on 2020-09

Manufacturing • Technology • Engineering

Xometry is a leading digital manufacturing marketplace, offering a comprehensive range of on-demand manufacturing and production solutions. Specializing in 3D printing, CNC machining, injection molding, and sheet metal fabrication, Xometry serves industries such as aerospace, automotive, medical, and electronics. The company provides instant quoting, DFM feedback, and quality assurance through its massive global supplier network, enabling clients to efficiently manage prototyping, high-volume production, and custom part manufacturing. Xometry emphasizes environmental sustainability with initiatives like carbon emission offsetting, and offers features such as the Xometry Instant Quoting Engine and Teamspace for streamlined project collaboration.

📋 Description

• Own Our Recovery Architecture • Design and build our Isolated Recovery Environment — a hardened AWS account with immutable vaults that break the attacker’s kill chain before it reaches our data. • Threat model our environment with a deep understanding of cloud-native attack patterns: IAM privilege escalation, backup deletion, ransomware persistence, and lateral movement across accounts. • Validate and continuously improve backup configurations to ensure recoverability, not just existence. • Standardize and Automate Infrastructure • Lead our transition to 100% Infrastructure as Code. Every asset (VPCs, IAM roles, security groups) must be defined in Terraform so we can redeploy the entire stack into a clean account via automated pipeline. • Build automated recovery workflows that can tear down a compromised environment and bootstrap a fresh, hardened one from verified code and clean data. • Write and maintain executable recovery playbooks that detail the exact API calls and CLI commands needed to restore the application — tested, versioned, and runnable, not static documents. • Validate, Test, and Lead Exercises • Develop automated scripts (Python or Go) to smoke test recovered data and validate integrity post-restoration. • Lead regular hands-on recovery drills that simulate total loss of a critical environment and full recovery into a secondary clean account. Own the after-action process and drive improvements. • Drive Engineering Standards • Act as the resilience authority for the engineering organization — shaping high-availability architecture decisions, influencing design reviews, and raising the floor on how we think about recoverability. • Partner with the Site Reliability Engineering team on multi-region deployments and high-availability design, ensuring cyber resilience is embedded in architecture from the start. • Champion IaC and immutable infrastructure practices across teams, not just within your own workstream.

🎯 Requirements

• 8+ years of experience in complex cloud environments (any of AWS/GCP/Azure), including at least 3 years in AWS • EKS/Kubernetes experience is a strong plus • Strong Terraform skills. You should be able to modularize complex environments so they are environment-agnostic • Hands-on familiarity with the Secure Vault pattern: protecting data in a separate, highly restricted AWS account with tight network controls • Advanced shell scripting and proficiency in either Python or Go to automate restoration tasks that native AWS tooling doesn’t cover • Experience with CI/CD tooling (Scalr, GitHub Actions, or equivalent) to enable broad adoption of recovery pipelines across the organization • Proven ability to engineer and automate end-to-end restoration workflows.

🏖️ Benefits

• 401(k) match • medical, dental and vision insurance • life and disability insurance • generous paid time off including vacation, sick leave, floating and fixed holidays, maternity and bonding leave • EAP • other wellbeing resources • and much more.

Apply Now

Similar Jobs

🕒 May 21

First American

10,000+ employees

🏠 Real Estate

💸 Finance

🏢 Enterprise

Principal Identity Engineer leading IAM architecture and strategy across cloud environments for First American. Designing secure identity models and overseeing enterprise IAM capabilities.

AWS

Cloud

Python

Terraform

🕒 May 20

Crusoe

51 - 200

Staff Commissioning Engineer leading commissioning lifecycle for data center projects in AI infrastructure. Ensuring alignment with design intents and operational readiness standards while managing third-party agents and vendors.

🕒 May 20

Crusoe

51 - 200

Staff Instrumentation & Controls Engineer for Crusoe, focusing on deployment of automation solutions in hyperscale data centers. Overseeing complex projects, ensuring seamless integrations, and driving efficiencies.

🕒 May 20

Blue Acorn iCi

201 - 500

🛍️ eCommerce

🏢 Enterprise

Marketo Engineer focused on helping clients with Adobe solutions. Recognized authority in Marketo Engage and integrated solutions.

🕒 May 19

Sargent & Lundy

1001 - 5000

⚡ Energy

License Renewal Engineer Consultant managing license extensions for nuclear power plants. Collaborating with engineering teams to ensure compliance with NRC regulations and license commitments.