MongoDB Visa Sponsorship USA
MongoDB is a leading database technology company known for building the tools that power modern applications. It has a strong track record of sponsoring work visas across multiple categories, making it a well-regarded option for international candidates pursuing roles in engineering, data, and product.
See All MongoDB JobsOverview
Showing 5 of 510+ MongoDB Visa Sponsorship USA jobs


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?
See all 510+ MongoDB Visa Sponsorship USA jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new MongoDB Visa Sponsorship USA roles.
Get Access To All Jobs
INTRODUCTION
The Information Security Risk Team at MongoDB is the operational engine of the internal and third-party risk programs. Situated within the Assurance, Risk, and Compliance (ARC) organization, the team is responsible for the "Reduction of Uncertainty" across the enterprise. We view this team as the "Operational Commander" of the risk function. The team oversees the entire lifecycle of risk identification, assessment, and treatment, ensuring that MongoDB’s leadership has a clear, quantified view of the top risks facing the organization. We are not just a compliance function; we are a "Risk Intelligence" unit that empowers the business to "Think Big" while keeping our eyes wide open to the risks we accept.
As the Senior Information Risk Analyst, you will serve as the subject matter expert and primary executor of our risk function. Reporting directly to the Risk Director, you will be responsible for conducting and owning the lifecycle of internal security assessments (annual + ad-hoc), applying risk methodology, producing risk memos and working with asset/risk owners across the business that powers MongoDB’s growth. This is a pivotal moment for our Risk function as we scale operations to meet the demands of a $100B+ database market while navigating an increasingly rigorous regulatory landscape (DORA, FedRAMP, NIS2). This role can be based remotely in the United States.
Responsibilities
Program Maturity
- Risk Assessment Methodology Implementation: Lead the strategic roadmap to integrate the risk matrix into the risk framework.
- Regulatory Governance: Ensure the risk program complies with global regulations, specifically DORA (EU) regarding ICT registers and FedRAMP Rev 5 supply chain controls. Maintain the Supply Chain Risk Management (SCRM) plan and oversee strict boundary protections for the "Atlas for Government" environment.
- Policy & Procedure Ownership: Maintain the Information Risk Management Procedure (ISQMS), ensuring that risk identification, assessment, and treatment processes are documented, updated annually, and followed consistently across the organization.
Operational Execution
- Experience conducting technical security risk assessments (infrastructure, cloud, application-level). Including experience in evaluating control effectiveness through technical evidence (configurations, logs, architecture diagrams).
- Workflow Orchestration: Own the end-to-end risk assessment process.
- Inherent Risk Scoring: Validate the team’s application of the Risk Scoring formula. Apply the risk scoring formula for baseline scores based on breach history (last 12 months) and weighted impact.
- Ensure the risk acceptance process has the right level of information and the appropriate stakeholders.
- Ticket Hygiene: Actively manage the Jira backlog to prevent "frozen tickets."
Monitoring and Reporting
- Conduct annual enterprise security risk assessments and ad-hoc assessments as triggered by material changes, incidents, or new initiatives.
- Identify risk scenarios for the in-scope assets by working with the asset and risk owners.
- Assess the inherent risk and residual risk based on established risk assessment methodology and control assessments.
- Synthesize the analysis into high-quality, Risk Assessment Memos. These documents must tell a cohesive story, moving from the "Risk Statement" to the "Calculation Logic" to the final "Risk Rating."
- Manage the risk acceptance process in JIRA, review for appropriateness and accuracy.
- Maintain the Risk Management Dashboard and report on accurate risk metrics.
REQUIREMENTS
- Professional Experience: 10+ years of experience in Information Security, Governance, Risk & Compliance (GRC).
- Hands-on experience conducting enterprise-level security risk assessments end-to-end, including scoping, threat modeling, control evaluation, and executive reporting.
- Evaluate control effectiveness using technical evidence (configs, logs, architecture diagrams).
- Perform threat modeling using established methodologies (STRIDE, MITRE ATT&CK).
- Deep operational understanding of risk assessment methodologies (NIST SP 800-30) and standard control frameworks (NIST CSF, NIST SP 800-53, ISO 27001, SOC 2, SIG Core/Lite, CAIQ).
- Regulatory Knowledge: Comprehensive knowledge of DORA, NIS2, FedRAMP Rev 5 (specifically Supply Chain/SCRM), GDPR, and PCI-DSS requirements.
- Ability to write executive-level risk reports that translate technical flaws into business risks.
- A strong track record of collaborating effectively across teams and levels to influence change.
- Education: Bachelor’s degree in a relevant field (Cybersecurity, Business, Information Systems).
- Certifications: CRISC, CCSP, CISSP, CISA, relevant cloud certifications.
ABOUT MONGODB
MongoDB is built for change, empowering our customers and our people to innovate at the speed of the market. We have redefined the database for the AI era, enabling innovators to create, transform, and disrupt industries with software. MongoDB’s unified database platform, the most widely available, globally distributed database on the market, helps organizations modernize legacy workloads, embrace innovation, and unleash AI. Our cloud-native platform, MongoDB Atlas, is the only globally distributed, multi-cloud database and is available across AWS, Google Cloud, and Microsoft Azure. With offices worldwide and over 60,000 customers, including 75% of the Fortune 100 and AI-native startups, relying on MongoDB for their most important applications, we’re powering the next era of software.
Our compass at MongoDB is our Leadership Commitment, guiding how and why we make decisions, show up for each other, and win. It’s what makes us MongoDB. To drive the personal growth and business impact of our employees, we’re committed to developing a supportive and enriching culture for everyone. From employee affinity groups, to fertility assistance and a generous parental leave policy, we value our employees’ wellbeing and want to support them along every step of their professional and personal journeys.
MongoDB is committed to providing any necessary accommodations for individuals with disabilities within our application and interview process. To request an accommodation due to a disability, please inform your recruiter.
MongoDB, Inc. provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type and makes all hiring decisions without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.
COMPENSATION
MongoDB’s base salary range for this role is posted below. Compensation at the time of offer is unique to each candidate and based on a variety of factors such as skill set, experience, qualifications, and work location. Salary is one part of MongoDB’s total compensation and benefits package. Other benefits for eligible employees may include: equity, participation in the employee stock purchase program, flexible paid time off, 20 weeks fully-paid gender-neutral parental leave, fertility and adoption assistance, 401(k) plan, mental health counseling, access to transgender-inclusive health insurance coverage, and health benefits offerings. Please note, the base salary range listed below and the benefits in this paragraph are only applicable to U.S.-based candidates. MongoDB’s base salary range for this role in the U.S. is: $97,000—$189,000 USD.

INTRODUCTION
The Information Security Risk Team at MongoDB is the operational engine of the internal and third-party risk programs. Situated within the Assurance, Risk, and Compliance (ARC) organization, the team is responsible for the "Reduction of Uncertainty" across the enterprise. We view this team as the "Operational Commander" of the risk function. The team oversees the entire lifecycle of risk identification, assessment, and treatment, ensuring that MongoDB’s leadership has a clear, quantified view of the top risks facing the organization. We are not just a compliance function; we are a "Risk Intelligence" unit that empowers the business to "Think Big" while keeping our eyes wide open to the risks we accept.
As the Senior Information Risk Analyst, you will serve as the subject matter expert and primary executor of our risk function. Reporting directly to the Risk Director, you will be responsible for conducting and owning the lifecycle of internal security assessments (annual + ad-hoc), applying risk methodology, producing risk memos and working with asset/risk owners across the business that powers MongoDB’s growth. This is a pivotal moment for our Risk function as we scale operations to meet the demands of a $100B+ database market while navigating an increasingly rigorous regulatory landscape (DORA, FedRAMP, NIS2). This role can be based remotely in the United States.
Responsibilities
Program Maturity
- Risk Assessment Methodology Implementation: Lead the strategic roadmap to integrate the risk matrix into the risk framework.
- Regulatory Governance: Ensure the risk program complies with global regulations, specifically DORA (EU) regarding ICT registers and FedRAMP Rev 5 supply chain controls. Maintain the Supply Chain Risk Management (SCRM) plan and oversee strict boundary protections for the "Atlas for Government" environment.
- Policy & Procedure Ownership: Maintain the Information Risk Management Procedure (ISQMS), ensuring that risk identification, assessment, and treatment processes are documented, updated annually, and followed consistently across the organization.
Operational Execution
- Experience conducting technical security risk assessments (infrastructure, cloud, application-level). Including experience in evaluating control effectiveness through technical evidence (configurations, logs, architecture diagrams).
- Workflow Orchestration: Own the end-to-end risk assessment process.
- Inherent Risk Scoring: Validate the team’s application of the Risk Scoring formula. Apply the risk scoring formula for baseline scores based on breach history (last 12 months) and weighted impact.
- Ensure the risk acceptance process has the right level of information and the appropriate stakeholders.
- Ticket Hygiene: Actively manage the Jira backlog to prevent "frozen tickets."
Monitoring and Reporting
- Conduct annual enterprise security risk assessments and ad-hoc assessments as triggered by material changes, incidents, or new initiatives.
- Identify risk scenarios for the in-scope assets by working with the asset and risk owners.
- Assess the inherent risk and residual risk based on established risk assessment methodology and control assessments.
- Synthesize the analysis into high-quality, Risk Assessment Memos. These documents must tell a cohesive story, moving from the "Risk Statement" to the "Calculation Logic" to the final "Risk Rating."
- Manage the risk acceptance process in JIRA, review for appropriateness and accuracy.
- Maintain the Risk Management Dashboard and report on accurate risk metrics.
REQUIREMENTS
- Professional Experience: 10+ years of experience in Information Security, Governance, Risk & Compliance (GRC).
- Hands-on experience conducting enterprise-level security risk assessments end-to-end, including scoping, threat modeling, control evaluation, and executive reporting.
- Evaluate control effectiveness using technical evidence (configs, logs, architecture diagrams).
- Perform threat modeling using established methodologies (STRIDE, MITRE ATT&CK).
- Deep operational understanding of risk assessment methodologies (NIST SP 800-30) and standard control frameworks (NIST CSF, NIST SP 800-53, ISO 27001, SOC 2, SIG Core/Lite, CAIQ).
- Regulatory Knowledge: Comprehensive knowledge of DORA, NIS2, FedRAMP Rev 5 (specifically Supply Chain/SCRM), GDPR, and PCI-DSS requirements.
- Ability to write executive-level risk reports that translate technical flaws into business risks.
- A strong track record of collaborating effectively across teams and levels to influence change.
- Education: Bachelor’s degree in a relevant field (Cybersecurity, Business, Information Systems).
- Certifications: CRISC, CCSP, CISSP, CISA, relevant cloud certifications.
ABOUT MONGODB
MongoDB is built for change, empowering our customers and our people to innovate at the speed of the market. We have redefined the database for the AI era, enabling innovators to create, transform, and disrupt industries with software. MongoDB’s unified database platform, the most widely available, globally distributed database on the market, helps organizations modernize legacy workloads, embrace innovation, and unleash AI. Our cloud-native platform, MongoDB Atlas, is the only globally distributed, multi-cloud database and is available across AWS, Google Cloud, and Microsoft Azure. With offices worldwide and over 60,000 customers, including 75% of the Fortune 100 and AI-native startups, relying on MongoDB for their most important applications, we’re powering the next era of software.
Our compass at MongoDB is our Leadership Commitment, guiding how and why we make decisions, show up for each other, and win. It’s what makes us MongoDB. To drive the personal growth and business impact of our employees, we’re committed to developing a supportive and enriching culture for everyone. From employee affinity groups, to fertility assistance and a generous parental leave policy, we value our employees’ wellbeing and want to support them along every step of their professional and personal journeys.
MongoDB is committed to providing any necessary accommodations for individuals with disabilities within our application and interview process. To request an accommodation due to a disability, please inform your recruiter.
MongoDB, Inc. provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type and makes all hiring decisions without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.
COMPENSATION
MongoDB’s base salary range for this role is posted below. Compensation at the time of offer is unique to each candidate and based on a variety of factors such as skill set, experience, qualifications, and work location. Salary is one part of MongoDB’s total compensation and benefits package. Other benefits for eligible employees may include: equity, participation in the employee stock purchase program, flexible paid time off, 20 weeks fully-paid gender-neutral parental leave, fertility and adoption assistance, 401(k) plan, mental health counseling, access to transgender-inclusive health insurance coverage, and health benefits offerings. Please note, the base salary range listed below and the benefits in this paragraph are only applicable to U.S.-based candidates. MongoDB’s base salary range for this role in the U.S. is: $97,000—$189,000 USD.
Job Roles at MongoDB Companies
How to Get Visa Sponsorship in MongoDB Visa Sponsorship USA
Target engineering and data roles first
MongoDB's sponsorship activity is concentrated in technical disciplines, software engineering, data infrastructure, and platform roles. If your background is in these areas, you're applying into the part of the organization with the strongest sponsorship track record.
Understand which visa categories MongoDB supports
MongoDB sponsors H-1B, E-3, TN, and Green Card pathways, along with F-1 OPT and CPT. Knowing which category fits your situation before applying lets you have a more focused conversation with their recruiting team about your timeline and authorization needs.
Apply early in MongoDB's hiring cycles
For H-1B dependent roles, timing matters. MongoDB typically prepares petitions ahead of the April filing window. Connecting with their team in Q1 gives you the best chance of being included in that cycle rather than waiting another year.
Australian nationals should ask about the E-3 directly
MongoDB has sponsored E-3 visas, making it a viable route for Australian citizens in qualifying specialty occupation roles. The E-3 has no lottery, so it's worth flagging your nationality early in the process, recruiters may not raise it proactively.
Use Migrate Mate to find verified MongoDB openings
Not every job posting on the open web accurately reflects a company's sponsorship willingness. Migrate Mate surfaces verified sponsors so you can filter by real sponsorship history and find MongoDB roles confirmed to be open to visa candidates.
Prepare your sponsorship conversation before the first call
MongoDB's recruiting team handles international candidates regularly, but coming in with clarity, your visa type, your current status, and your work authorization timeline, signals professionalism and keeps the process moving without unnecessary back-and-forth.
MongoDB jobs are hiring across the US. Find yours.
Find MongoDB JobsSee all 510+ MongoDB jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new MongoDB roles.
Get Access To All JobsFrequently Asked Questions
Does MongoDB sponsor H-1B visas?
Yes, MongoDB sponsors H-1B visas and has been an active H-1B sponsor over multiple years. Sponsorship is most common for technical roles in software engineering and data infrastructure. If you're on OPT or another status that requires H-1B cap sponsorship, MongoDB is worth targeting, their recruiting team is experienced with the process.
Which visa types does MongoDB sponsor?
MongoDB sponsors a range of visa categories including H-1B, E-3, and TN visas, as well as Green Card pathways through EB-2 and EB-3. They also support F-1 OPT and CPT for students. The breadth of visa types they work with makes MongoDB a strong option regardless of your nationality or current immigration status.
Which roles at MongoDB are most likely to receive visa sponsorship?
Sponsorship at MongoDB is most heavily concentrated in technical roles, software engineers, database engineers, site reliability engineers, and data-focused positions. Product and solutions roles with strong technical requirements are also common. Corporate and administrative functions are sponsored less frequently, though MongoDB's overall posture toward international hiring is positive across the organization.
How do I find MongoDB jobs that are open to visa sponsorship?
The most reliable approach is to use Migrate Mate, which surfaces MongoDB job listings verified against real sponsorship history, so you're not guessing based on generic job board postings. Filter by visa type to match your situation, then apply directly. MongoDB's careers page is also worth checking, and it's worth contacting their recruiting team early if you have authorization questions.
How do I time my MongoDB application if I need H-1B sponsorship?
The H-1B cap filing window opens in April, with USCIS typically accepting petitions in the first two weeks. MongoDB prepares petitions in advance, so the ideal time to begin the recruiting process is January through March. Starting earlier gives their immigration and HR teams enough runway to include you in that filing cycle without rushing the process.
See which MongoDB employers are hiring and sponsoring visas right now.
Search MongoDB Jobs