Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Staff Cyber Resilience Engineer

$205k - $233k

Xometry

Staff Cyber Resilience Engineer

Waltham, MA

Xometry powers the industries of today and tomorrow by connecting the people with big ideas to the manufacturers who can bring them to life. Xometry's digital marketplace gives manufacturers the critical resources they need to grow their business while also making it easy for buyers at Fortune 1000 companies to tap into global manufacturing capacity.

We're looking for a Staff Cyber Resilience Engineer to lead our defense against the attacks that matter most: ransomware, destructive wipes, and data loss at scale. This is a hands-on technical leadership role. You will own the design and engineering of our Isolated Recovery Environment, set the standard for Infrastructure as Code across the organization, and ensure that if our AWS environment is ever compromised, we can restore operations with certainty and speed.

You will work with a high-caliber engineering team, have direct influence on our security architecture, and lead recovery exercises that test the organization end-to-end.

What You'll Do

Own Our Recovery Architecture

  • Design and build our Isolated Recovery Environment — a hardened AWS account with immutable vaults that break the attacker's kill chain before it reaches our data.
  • Threat model our environment with a deep understanding of cloud-native attack patterns: IAM privilege escalation, backup deletion, ransomware persistence, and lateral movement across accounts.
  • Validate and continuously improve backup configurations to ensure recoverability, not just existence.

Standardize and Automate Infrastructure

  • Lead our transition to 100% Infrastructure as Code. Every asset (VPCs, IAM roles, security groups) must be defined in Terraform so we can redeploy the entire stack into a clean account via automated pipeline.
  • Build automated recovery workflows that can tear down a compromised environment and bootstrap a fresh, hardened one from verified code and clean data.
  • Write and maintain executable recovery playbooks that detail the exact API calls and CLI commands needed to restore the application — tested, versioned, and runnable, not static documents.

Validate, Test, and Lead Exercises

  • Develop automated scripts (Python or Go) to smoke test recovered data and validate integrity post-restoration.
  • Lead regular hands-on recovery drills that simulate total loss of a critical environment and full recovery into a secondary clean account. Own the after-action process and drive improvements.

Drive Engineering Standards

  • Act as the resilience authority for the engineering organization — shaping high-availability architecture decisions, influencing design reviews, and raising the floor on how we think about recoverability.
  • Partner with the Site Reliability Engineering team on multi-region deployments and high-availability design, ensuring cyber resilience is embedded in architecture from the start.
  • Champion IaC and immutable infrastructure practices across teams, not just within your own workstream.
What You Bring

Required

  • 8+ years of experience in complex cloud environments (any of AWS/GCP/Azure), including at least 3 years in AWS. EKS/Kubernetes experience is a strong plus.
  • Strong Terraform skills. You should be able to modularize complex environments so they are environment-agnostic.
  • Hands-on familiarity with the Secure Vault pattern: protecting data in a separate, highly restricted AWS account with tight network controls.
  • Advanced shell scripting and proficiency in either Python or Go to automate restoration tasks that native AWS tooling doesn't cover.
  • Experience with CI/CD tooling (Scalr, GitHub Actions, or equivalent) to enable broad adoption of recovery pipelines across the organization.
  • Proven ability to engineer and automate end-to-end restoration workflows.

Preferred

  • Hands-on experience leading technical recovery efforts from an actual cyber attack or destructive incident.
  • Experience with chaos engineering tooling to stress-test recovery assumptions.
  • Familiarity with NIST SP 800-34 (Contingency Planning) or similar frameworks.
  • AWS Security Specialty certification or equivalent demonstrated expertise.

The estimated base salary range for new hires into this role is $205,000- $233,000 annually + annual bonus depending on factors such as job-related skills, relevant experience, and location. We also offer a competitive benefits package, including 401(k) match, medical, dental and vision insurance; life and disability insurance; generous paid time off including vacation, sick leave, floating and fixed holidays, maternity and bonding leave; EAP, other wellbeing resources; and much more.

Xometry is an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran, or disability status.

For US based roles: Xometry participates in E-Verify and after a job offer is accepted, will provide the federal government with your Form I-9 information to confirm that you are authorized to work in the U.S.

Vacancy posted 21 hours ago
Similar jobs that could be interesting for youBased on the Staff Cyber Resilience Engineer in Boston, MA vacancy
  • $105.6k - $145.2k

    A leading cybersecurity firm is seeking a Cyber Resilience Advisor to partner with enterprise customers to achieve their cybersecurity objectives. The role requires 3+ years of experience in information security, knowledge of cyber operations, and excellent communication... 
    Suggested
    Remote job
    Flexible hours

    Immersive Dynamics Inc.

    Boston, MA
    3 days ago
  • $105.6k - $145.2k

    A product you can believe in. Immersive is the leader in people-centric cyber resilience We have an exciting vision for cybersecurity that puts people at the center of cyber. Our cyber resilience SaaS platform is an agile, hands-on solution that helps teams continuously... 
    Suggested
    Immediate start
    Remote work
    Flexible hours
    2 days per week

    Immersive Dynamics Inc.

    Boston, MA
    3 days ago
  • $107.5k - $204.5k

     ...development, and prototyping. BBN's Network & Cyber Technologies (NCT) team leverages computer science, computer engineering, electrical engineering, math, and physics to...  ...EW; integrated battlespace applications; resilient cyber-physical systems and software; and the... 
    Suggested
    Temporary work
    Work experience placement
    Work at office
    Remote work
    Worldwide
    Relocation package
    Flexible hours

    Raytheon Technologies

    Cambridge, MA
    21 hours ago
  • $199.8k - $270.3k

     ...directly to the VP/CISO, this leader will own Alnylam's cyber architecture and target security state, translate...  ...or duplicative solutions. Responsible for engineering execution that turns strategy into resilient, enterprise-grade security capabilities. Drive... 
    Suggested
    Full time
    Temporary work
    Local area
    Flexible hours

    Alnylam

    Cambridge, MA
    2 days ago
  • $86.8k - $165.2k

     ...development, and prototyping. BBN's Network & Cyber Technologies (NCT) team leverages computer science, computer engineering, electrical engineering, math, and physics to...  ...EW; integrated battlespace applications; resilient cyber-physical systems and software; and the... 
    Suggested
    Temporary work
    Work experience placement
    Work at office
    Remote work
    Worldwide
    Relocation package
    Flexible hours

    RTX

    Cambridge, MA
    1 day ago
  • $86.8k - $165.2k

     ...development, and prototyping. BBN's Network & Cyber Technologies (NCT) team leverages computer science, computer engineering, electrical engineering, math, and physics to...  ...EW; integrated battlespace applications; resilient cyber-physical systems and software; and the... 
    Temporary work
    Work experience placement
    Work at office
    Remote work
    Worldwide
    Relocation package
    Flexible hours

    Raytheon Technologies

    Cambridge, MA
    4 days ago
  • $75k - $150k

    Draper, an independent nonprofit research and development company in Cambridge, MA, is seeking a Senior System Security Engineer. The candidate will focus on guiding mission-system analysis and defining security requirements for critical technologies. The role requires... 

    Draper

    Cambridge, MA
    3 days ago
  •  ...Ability to influence, motivate, and communicate cross functionally · Problem solver, able to navigate operational issues with resilience · Ability and willingness to travel to studios within the market Benefits: MiniLuxe is always leveling up our benefits... 
    Flexible hours
    Shift work

    Miniluxe Inc

    Boston, MA
    20 days ago
  • $77k - $202k

     ...protecting organisations from cyber threats through advanced...  ...reliability, performance, and cyber resilience. As a Senior Associate, you...  ...problems, mentor junior staff, and build meaningful client...  ...Computer Science, Electrical Engineering, Industrial Engineering, Industrial... 
    Full time
    H1b

    PwC

    Boston, MA
    10 days ago
  •  ...Framework Program within Bank of America's Cyber Security Assurance Offensive Security...  ...provides services to assess the security resilience of the bank's applications to malicious...  ...least 5 of the following areas: security engineering application architecture... 
    Work at office
    Shift work
    Day shift

    Bank of America

    Boston, MA
    4 days ago
  • $99k - $232k

     ...protecting organisations from cyber threats through advanced...  ...planning and mentoring junior staff. This is an exciting opportunity...  ...contributing to the safety and resilience of critical infrastructure...  ...Computer Science, Electrical Engineering, Industrial Engineering, or Industrial... 
    Full time
    H1b

    PwC

    Boston, MA
    10 days ago
  • $100k - $160k

     ...Devsecops Engineer Ii Chewy is seeking a DevSecOps Engineer II to join our established technology team in Plantation, FL or Boston...  ...security alerts, escalations, and incidents, helping to ensure 24/7 resiliency. Contribute to a culture of operational excellence and... 
    Local area
    Remote work
    Flexible hours

    Chewy

    Boston, MA
    3 days ago
  • $152.41k - $179.3k

     ...Coinbase Corporate Security (CorpSec) is seeking a Security Engineer to design, implement, and automate security solutions that protect...  ...’s corporate environment remains secure, efficient, and resilient, directly safeguarding sensitive data and critical assets.... 
    Local area

    Coinbase

    Boston, MA
    3 days ago
  • $130k - $170k

     ...bodies and daily lives. WHOOP is seeking a Security Detection Engineer to serve as a key technical contributor within our Information...  ..., ensuring depth of coverage, signal precision, and resilience against modern attacker tradecraft. This is an opportunity to... 
    Full time

    WHOOP

    Boston, MA
    2 days ago
  • $182k - $202k

     ...delivers measurable, continuous reduction of cyber risk for enterprises. Industry leaders,...  ...companies that want to build trust and resilience in a world where AI-driven innovation...  ...and accountability. Senior Security Engineer, Detection and ResponseRemote Location:... 
    Apprenticeship
    Local area
    Remote work
    Flexible hours
    Shift work

    HackerOne

    Boston, MA
    3 days ago
  • $108.25k - $130k

     ...for you. WHERE YOU’LL FIT WITHIN THE TEAM The SaaS security engineer will lead and scale our SaaS security program, with primary ownership...  ...disciplines Networking Infrastructure configuration and resiliency System architecture and configuration Operating systems... 
    Full time
    Work experience placement
    Work at office
    1 day per week

    Bain & Company

    Boston, MA
    2 days ago
  • $155k - $410k

     ...focus on protecting organisations from cyber threats through advanced technologies and...  ...Preferred Fields of Study Computer Engineering,Computer Applications,Computer Programming...  ...across enterprise environments Drive resilience strategy for cloud platforms, including... 
    Full time
    Temporary work
    H1b

    PwC

    Boston, MA
    21 hours ago
  •  ...Job Description Job Description Description Substitute Child Watch Staff  This position is primarily responsible for representing the YMCA personally, professionally, and in a manner aligned with the mission and goals of the YMCA. The Substitute Child Watch Staff... 
    Part time
    All shifts
    Shift work
    Day shift

    YMCA of Greater Boston

    Brighton, MA
    19 days ago
  •  ...product suite that provides speed, resilience, and choice in meeting the...  ...opportunities for FRFS staff. The FRFS Enterprise...  ...will directly support security engineering and operations. The individual...  ...~5+ years of experience in Cyber Security, with a focus on API... 
    Full time
    Temporary work
    Part time
    Work at office
    Shift work

    Federal Reserve System

    Boston, MA
    3 days ago
  • $218.03k - $256.5k

     ...within the IAM program, partnering with Engineering, IT, Platform, and business teams to architect...  ...identify attack vectors and design resilient mitigations. Partner with Engineering...  ..., or systems architecture, with a deep, Staff-level focus on Identity and Access... 
    For contractors
    Local area

    Coinbase

    Boston, MA
    2 days ago
  •  ...observability. For more information, visit Job Summary As a Staff Security Engineer at EDB, you will be a technical leader with a developer-...  ...security strategy, and are passionate about building resilient defenses through collaboration and partnership. If you're ready... 
    Remote work

    EDB

    Boston, MA
    5 days ago
  •  ...security platforms including F5 A10 WAF Cloudflare and Akamai and provides input into platform design resiliency and capacity planning activities. • Performs hands on engineering tasks including configuration maintenance and operational support of application delivery... 
    For contractors
    Work at office

    3B Staffing LLC

    Boston, MA
    21 hours ago
  •  ...Senior Cyber Security Engineer The Role of the Senior Cyber Security Engineer is to act as the global technical security engineering and...  ...posture of National Grid and assist in our overall Digital Resilience. The role also requires liaising with Cybersecurity Incident... 

    Software Technology Inc

    Boston, MA
    4 days ago
  •  ...this role will be pivotal in ensuring our systems remain secure, resilient, and compliant. You will combine high-level architectural...  ...specifically evaluating new and emerging AI technologies-with hands-on engineering. Reporting to the Director of Security in Global Security... 

    RIT Solutions, Inc.

    Boston, MA
    4 days ago
  • $145k - $175k

     ...later.com. About this position: As a Senior Security Engineer at Later, you will play a critical role in strengthening and scaling...  ...status quo with a mindset of improvement. Collaborative & Resilient: You thrive in change by staying resourceful, solution-... 
    Permanent employment
    Local area
    Remote work

    Later

    Boston, MA
    21 hours ago
  • $73.93k - $92.41k

     ...unaccompanied and separated children. Position Summary KIND seeks a Staff Attorney to provide expert legal services to unaccompanied...  ...Trainings, Wellness Platforms, Employee Assistance and Resilience Programs, Time Away and Office Wellness Activities. For more information... 
    Temporary work
    Work at office
    Local area
    Remote work
    Work from home
    Flexible hours

    KIND

    Boston, MA
    2 days ago
  • $109.22k - $114.22k

     ...'re looking for FlyMates to join the next stage of our journey as we continue to grow. Job Description Job Title: Security Engineer, Application Security Salary Range: $109,221 - $114,221/year Job Location: 141 Tremont St, 10th Floor, Boston, MA 02111; Telecommuting... 
    Local area
    Immediate start
    Remote work

    Flywire

    Boston, MA
    1 day ago
  • $104k - $156k

     ...Remote/Hybrid Job Overview As an Advanced Security Engineer focused on Endpoint Security, you will design, build, and operate...  ...response and endpointrelated investigations in partnership with Cyber teams ~ Continuously improve endpoint security posture... 
    Remote work

    Relativity

    Boston, MA
    2 days ago
  •  ...rapid growth, we are looking for a highly experienced and driven Senior Product Security Engineer to join our Security team. This role is critical to the security, resilience, and operational excellence of our FedRAMP cloud environment and broader SaaS platform.... 
    Work at office
    Immediate start
    Remote work
    Worldwide
    Flexible hours

    Nexthink

    Boston, MA
    23 days ago
  •  ...product suite that provides speed, resilience, and choice in meeting the...  ...opportunities for FRFS staff. The FRFS Enterprise operates...  ...implementation and management of the FRS cyber security framework for the...  ...service. Lead Cyber Risk Engineer reports to Sr Cyber Risk... 
    Work at office

    Federal Reserve Bank of Boston

    Boston, MA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Staff Cyber Resilience Engineer. Be the first to apply!