Dassault Systemes

Senior InfoSec Engineer- Remote

Dassault Systemes • $102K — $137K *
US-AnywhereRemote in Houston, TX
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science/Engineering, Information Technology, or a related field required
  • 3-5 years of relevant experience in application security and development
  • AWS or relevant cloud management certification preferred
  • CISSP or equivalent certification is a plus
  • Experience with source code management tools like Git and GitHub
  • Proficiency in continuous integration and deployment pipelines, specifically GitHub Actions
  • Knowledge of scripting languages such as Python and TypeScript

Responsibilities

  • Integrate secure SDLC practices into the development lifecycle, including SAST and DAST
  • Manage source code control systems for secure release pipelines
  • Leverage programming and application engineering knowledge for best-practice architecture
  • Apply knowledge of web technologies and protocols to ensure system communication
  • Support infrastructure deployment using Infrastructure as Code and Kubernetes
  • Review and improve codebase integrity across various programming languages
  • Implement data solutions across relational and non-relational databases

Benefits

  • Medical, dental, life, and disability insurance
  • 401(k) matching
  • Flexible paid time off and family leave
  • 10 paid holidays per year
  • Annual bonuses for eligible non-sales positions
Full Job Description
Location : Remote

Medidata follows a hybrid office policy in which employees who are hired for an in-person position are expected to work on site a certain number of days per week following Company policy.

About the Team :

The Information Security Application Architecture team is responsible for designing, evaluating and enforcing application security in all phases of the Software Development Life Cycle (SDLC).
We work closely with our Engineering, Privacy and DevOps teams to define and implement the application security standards, perform software architecture design reviews, and threat modeling. We conduct white box security testing, and support the identification, interpretation, and remediation of vulnerabilities across a variety of applications, programming languages, and platforms. This role will report to the Manager of Application Security & Sourcing department.

Responsibilities :
  • Integrate secure SDLC practices into the development lifecycle, including conducting static and dynamic code analysis (SAST/DAST), managing open-source components, threat modeling, and performing architectural security reviews
  • Manage and optimize source code control and source code management (SCM) systems to ensure secure, streamlined release pipelines
  • Leverage fundamental knowledge of programming, application engineering, and common coding patterns to guide best-practice architecture and implementation
  • Apply working knowledge of web-related technologies (Web Services, Service-Oriented and Object-Oriented Architectures) and network/web protocols (HTTP) to maintain robust system communication
  • Support modern infrastructure deployment protocols by managing Infrastructure as Code (IaC) and executing Kubernetes Cluster Administration
  • Leverage experience with HTML, JavaScript, and a deep understanding of the HTTP protocol to optimize frontend integrations and web security
  • Utilize hands-on development experience across various coding languages-including .NET (C#), Java, Ruby, Python, JavaScript, TypeScript, AngularJS, and ReactJS-to review and improve codebase integrity
  • Implement and maintain data solutions across both Relational Databases (e.g., MySQL, MS SQL, Oracle) and Non-Relational Databases (e.g., MongoDB, DynamoDB, Redis)
  • Supporting and managing Secure AI workflows in both SDLC (ie. AI code generation, Copilot, ClaudeCode, etc) and in App Features (ie. customer facing functionality backed by AI)
  • Apply a strong understanding of information security principles and web application vulnerabilities to proactively identify, mitigate, and defend against malicious code and common hacker techniques
  • Collaborating with other functions in order to deploy and maintain solutions in an appropriate and cost-effective manner

Qualifications :
  • Bachelor's degree (or above) in Computer Science/Engineering, Information Technology or comparable required 3-5 years of related experience
  • AWS or Vendor Agnostic Cloud Management Certification is a plus
  • CISSP or equivalent certification is a bonus
  • Source Code & Artifact Management: Git, GitHub, Artifactory
  • CI & CD Pipelines: GitHub Actions
  • Scripting languages: Python, Typescript
  • Programming languages: Java, .NET
  • Hosting Architectures: Cloud & Self Hosted
  • Security Exercises: SAST, DAST

As with all roles, Medidata sets ranges based on a number of factors including function, level, candidate expertise and experience, and geographic location. Pay ranges for candidates in locations other than New York City, may differ based on the local market data in that region.

The salary range for positions that will be physically based in the NYC Metro Area is $114,750-153,000.

The salary range for positions that will be physically based in all other locations within the United States is $102,750-137,000.

Base pay is one part of the Total Rewards that Medidata provides to compensate and recognize employees for their work. Most sales positions are eligible for a commission on the terms of applicable plan documents, and many of Medidata's non-sales positions are eligible for annual bonuses. Medidata believes that benefits should connect you to the support you need when it matters most and provides benefits, including medical, dental, life and disability insurance, 401(k) matching, family leave, flexible paid time off; and 10 paid holidays per year.

We will accept applications on an ongoing basis until we fill the position.

#LI-EM1

#LI-Hybrid

Salary Pay Transparency

Compensation for the role will be commensurate with experience. The total expected compensation range will be between $102750 and $137000, representing the base salary (or annualized salary based on estimated hourly compensation) and target bonus.

About Dassault Systemes

Dassault Systemes SE is a French software company that specializes in the production of 3D design software, 3D digital mock-up and product lifecycle management (PLM) solutions. The company was founded in 1981 by Avions Marcel Dassault to develop computer-aided design (CAD) software for their own use. The company's software is used by a variety of industries, including aerospace, automotive, consumer goods, and industrial machinery. Dassault Systemes is headquartered in Velizy-Villacoublay, France and has offices in over 80 countries.
Learn more about Dassault Systemes
Size
20,000 employees
Industry

Similar Jobs

More Jobs at Dassault Systemes

More Information Technology Jobs

Find similar Senior InfoSec Engineer- Remote jobs: