CPT Principal Cybersecurity Engineer Jobs
Principal Cybersecurity Engineer roles qualify for CPT when your program includes coursework in network security, threat architecture, or risk engineering and your DSO can document the direct curricular tie. Expect employers to run E-Verify and request your I-20 CPT authorization before your start date.
Find CPT Principal Cybersecurity Engineer JobsOverview
Showing 5 of 11+ Principal Cybersecurity Engineer jobs










See all Principal Cybersecurity Engineer Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Principal Cybersecurity Engineer roles.
Get Access To All Jobs
Cybersecurity & AI/Data Governance Intern
- 50294
- Remote, United States
- Full Time
Position Summary:
We are seeking a Cybersecurity & AI/Data Governance Intern to bridge the gap between security compliance and engineering. In this role you will assist in the design, audit, and implement technical guardrails that protect our infrastructure and govern our data and AI systems.
This position is ideal for an engineer who understands full-stack architectures, infrastructure-as-code, and systems administration, and wants to apply those skills to modern security engineering, Identity Governance and Administration (IGA), and secure AI deployment.
By the conclusion of this internship, you will progress beyond basic compliance tasks and actively contribute to the development of solutions addressing enterprise security and AI needs. Through your work, you will gain practical experience in implementing automated identity lifecycle management, conducting security audits for both cloud and on-premises infrastructures, and establishing data governance policies that enable the secure expansion of AI initiatives.
Profile: Cybersecurity & AI / Data Governance Intern
Department: Information Security
Schedule: Full Time
ESSENTIAL DUTIES & RESPONSIBILITIES:
Identity Governance & Secure Architecture
- Audit and refine RBAC permissions across all platforms.
- Integrate and modernize Identity Providers using OIDC/SAML for secure access.
- Develop secure, reusable infrastructure templates with Terraform, Ansible, or AWS CDK to meet compliance standards.
Systems Security & Infrastructure Integrity
- Harden enterprise Linux and containerized environments.
- Configure firewall, VLANs, and network protocols to segment development, production, and HPC environments.
- Monitor logs and patch systems to address vulnerabilities.
AI & Data Governance Frameworks
- Define data workflows and ensure privacy and retention in data pipelines (LDAP/ZFS).
- Set security controls for Vision-Language Models and vector searches to prevent unauthorized data/model access.
- Oversee GPU resources and enforce usage policies to support compliance.
Preferred Technical Experience
- Languages: Python, TypeScript, Java/Kotlin, or C/C++.
- Identity & Networking: Understanding of OIDC, SAML, LDAP, TCP/IP, DNS, and Firewalls.
- Infrastructure & DevOps: Practical experience with Linux systems administration (RHEL preferred), virtualization/containers (Docker, Kubernetes, Proxmox), and CI/CD automation (GitHub Actions, Ansible, Terraform).
- Database & Storage: Familiarity with caching layers (Redis/Valkey), structured/unstructured databases (SQL, MongoDB), and redundant storage file systems (ZFS).
Compensation Range:
$0.01 - $0.00
This range offers an estimate based on the minimum job qualifications. However, our approach to determining base pay is comprehensive, and a broad range of factors is considered when making an offer. This includes education, experience, skills, and certifications/licensures as they directly relate to position requirements; as well as business/organizational needs, internal equity, and market-competitiveness. In addition, BMCHS offers generous total compensation that includes, but is not limited to, benefits (medical, dental, vision, pharmacy), discretionary annual bonuses and merit increases, Flexible Spending Accounts, 403(b) savings matches, paid time off, career advancement opportunities, and resources to support employee and family well-being.
NOTE: This range is based on Boston-area data, and is subject to modification based on geographic location.
Equal Opportunity Employer/Disabled/Veterans
According to the FTC, there has been a rise in employment offer scams. Our current job openings are listed on our website and applications are received only through our website. We do not ask or require downloads of any applications, or “apps” job offers are not extended over text messages or social media platforms. We do not ask individuals to purchase equipment for or prior to employment.
See all CPT Principal Cybersecurity Engineer Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new CPT Principal Cybersecurity Engineer Jobs.
Get Access To All JobsPrincipal Cybersecurity Engineer CPT: Frequently Asked Questions
Does a Principal Cybersecurity Engineer role qualify for CPT authorization?
Yes, if your degree program includes coursework directly related to cybersecurity architecture, threat analysis, or information security engineering. Your DSO must confirm the integral curricular connection. Roles requiring a bachelor's degree or higher in a specific technical field, like network security or computer science, generally meet the specialty occupation standard that supports CPT approval.
Can I do full-time CPT as a Principal Cybersecurity Engineer without affecting OPT?
You can do full-time CPT, but using 12 months or more of full-time CPT eliminates your OPT eligibility entirely. For a senior role like Principal Cybersecurity Engineer, where long-term H-1B visa sponsorship is often the goal, many students limit CPT to part-time or keep full-time CPT under 12 months to preserve post-graduation OPT as a bridge to H-1B.
How do I find Principal Cybersecurity Engineer roles that are open to CPT students?
Browse Migrate Mate to find employers with verified sponsorship history for cybersecurity roles. Many senior security positions, especially those tied to government contracts or cleared environments, require E-Verify enrollment, which also signals employer readiness for work authorization processing. Filtering by employers with prior specialty occupation filings saves significant time at the offer stage.
What documents does my employer need to see for CPT at this level?
Your employer needs your valid F-1 I-20 with CPT authorization endorsed on page two, specifying the employer name, role, and authorized dates. For a Principal-level role, some employers also request your unofficial transcript to confirm advanced coursework alignment. E-Verify employers will complete the I-9 process separately; your CPT I-20 serves as the List C work authorization document.
Can a Principal Cybersecurity Engineer CPT role transition to H-1B sponsorship?
CPT employment doesn't create any legal barrier to H-1B sponsorship, but the employer must file a separate H-1B petition with USCIS after you complete your degree and enter OPT. Principal Cybersecurity Engineer roles typically qualify as specialty occupations under USCIS standards, which strengthens the petition. Confirming the employer's intent to sponsor H-1B before accepting the CPT offer avoids surprises after graduation.