E-3 Visa Cybersecurity Engineer Jobs
Cybersecurity Engineer roles qualify as E-3 specialty occupations, meaning Australian nationals can secure U.S. employer sponsorship without entering an H-1B lottery. The E-3 is renewable indefinitely in two-year increments, and demand for security talent across finance, defense, and tech means sponsoring employers are easier to find than many candidates expect.
See All Cybersecurity Engineer JobsOverview
Showing 5 of 1,676+ Cybersecurity Engineer jobs


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?
See all 1,676+ Cybersecurity Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Cybersecurity Engineer roles.
Get Access To All Jobs
INTRODUCTION
At American Express, our mission is to deliver the world’s best customer experience every day. At the heart of this mission is our Information Security organization, enabling exceptional experiences built on a foundation of trust, service, and security. We leverage advanced technologies and data-driven insights to stay ahead of an evolving threat landscape. We foster a culture of passion, curiosity, and courage—empowering you to innovate, grow, and help shape the future of a Fortune 100 company.
Trust. Service. Security.
The Cloud and SaaS Security mission is to enable secure, rapid cloud and SaaS transformation that accelerates business growth and innovation. We provide trusted, real-time visibility and high-quality security intelligence, empowering leaders to make informed, risk-aware decisions at speed. By positioning security as a strategic enabler, we help the enterprise modernize with confidence, resilience, and agility.
ROLE AND RESPONSIBILITIES
The Engineer will be part of mainstream to establish comprehensive, end-to-end visibility across all cloud and SaaS environments by integrating with core systems of record into CNAPP, delivering a unified and consistent telemetry layer across platforms. Our focus is to provide accurate, prioritized, and actionable insights that reduce noise and enable effective decision-making. Democratize access to security intelligence, ensuring teams have the right context to act quickly and independently, while maintaining alignment with enterprise risk and governance standards. By embedding security leveraging Policy-as-a-Code capability seamlessly into cloud and SaaS adoption journeys, we enable speed without compromise driving scalable, secure, and efficient operations across the organization.
How will you make an impact in this role?
As part of this transformation, we are building a next-generation multi-cloud security platform and are seeking a CNAPP-focused engineer to drive visibility, risk reduction, and secure cloud adoption at scale. This role will play a critical part in shaping the enterprise security posture across AWS, Azure, GCP, and private cloud environments (e.g., OpenShift).
In this role, you will operate within a DevSecOps model, partnering closely with Technology Risk and Information Security (TRIS), Cloud Security Governance, Cloud Security Operations, and engineering teams across the organization. You will help identify, design, and deliver scalable security capabilities that are deeply integrated into cloud platforms and developer workflows.
You will drive a strong automation-first mindset, enabling zero-touch, idempotent, and scalable solutions through everything-as-code across infrastructure, security controls, and platform services. Success in this role requires the ability to operate across multiple initiatives, prioritize effectively, and translate evolving security and cloud technologies into practical, enterprise-ready solutions.
We are looking for a highly motivated, forward-thinking engineer who can balance technical depth with execution discipline, contribute to the maturation of end-to-end security capabilities, and ensure a seamless and secure experience for our engineering community.
BASIC QUALIFICATIONS
- 3+ years of experience in cloud security engineering across AWS, GCP, and/or Azure, with exposure to hybrid or private cloud environments (e.g., OpenShift).
- Experience in leading the design, hands-on implementation, and scaling of CNAPP capabilities (e.g., Palo Cortex) across multi-cloud environments including AWS, Azure, GCP, and OpenShift-based private cloud.
- Strong understanding and enabled end-to-end:
- CSPM, CWPP, CIEM, container security, and runtime protection posture management
- Cloud misconfiguration management and remediation automation
- Experience securing Kubernetes/OpenShift environments, including container security, workload isolation, and OPA policy enforcement.
- Define and developing policy-as-code frameworks (e.g., Cloud Native, Hashi Sentinel) and Infrastructure-as-Code tools (e.g., Terraform).
- Analyzing and prioritize security findings across cloud environments, correlating misconfigurations, vulnerabilities, identity risks, and runtime threats by leveraging XQL and automation playbooks to drive remediation strategies.
- Experience in integrating Palo Cortex with on-prem capabilities such as SIEM/SOAR and observability platforms for continuous monitoring and threat detection with CNAPP signals.
- Experience in evaluating, onboard, and optimize CNAPP tools (Palo Alto Cortex, Wiz, or similar), ensuring full integration across cloud accounts, Kubernetes environments, and CI/CD pipelines.
PREFERRED QUALIFICATIONS
- Knowledge of cloud security frameworks and benchmarks such as CIS Benchmarks, NIST, and Cloud Control Matrix (CCM).
- Having an understanding of network security, identity, and data protection domain and technical implementation framework across cloud platforms.
- Experience in developing and maintain cloud security reference architectures, detection patterns, and response playbooks aligned with enterprise governance and regulatory requirements.
- Strong analytical and problem-solving skills, with the ability to prioritize risks based on impact and exploitability.
- Experience working in Agile environments, collaborating across engineering, platform, and security teams.
At American Express, our culture is built on a 175-year history of innovation, shared values and Leadership Behaviors, and an unwavering commitment to back our customers, communities, and colleagues. From delivering differentiated products to providing world-class customer service, we operate with a strong risk mindset, ensuring we continue to uphold our brand promise of trust, security, and service.
As part of Team Amex, you’ll experience our powerful backing with comprehensive support for your holistic well-being and many opportunities to learn new skills, develop as a leader, and grow your career. Here, your voice and ideas matter, your work makes an impact, and together, you will help us define the future of American Express.

INTRODUCTION
At American Express, our mission is to deliver the world’s best customer experience every day. At the heart of this mission is our Information Security organization, enabling exceptional experiences built on a foundation of trust, service, and security. We leverage advanced technologies and data-driven insights to stay ahead of an evolving threat landscape. We foster a culture of passion, curiosity, and courage—empowering you to innovate, grow, and help shape the future of a Fortune 100 company.
Trust. Service. Security.
The Cloud and SaaS Security mission is to enable secure, rapid cloud and SaaS transformation that accelerates business growth and innovation. We provide trusted, real-time visibility and high-quality security intelligence, empowering leaders to make informed, risk-aware decisions at speed. By positioning security as a strategic enabler, we help the enterprise modernize with confidence, resilience, and agility.
ROLE AND RESPONSIBILITIES
The Engineer will be part of mainstream to establish comprehensive, end-to-end visibility across all cloud and SaaS environments by integrating with core systems of record into CNAPP, delivering a unified and consistent telemetry layer across platforms. Our focus is to provide accurate, prioritized, and actionable insights that reduce noise and enable effective decision-making. Democratize access to security intelligence, ensuring teams have the right context to act quickly and independently, while maintaining alignment with enterprise risk and governance standards. By embedding security leveraging Policy-as-a-Code capability seamlessly into cloud and SaaS adoption journeys, we enable speed without compromise driving scalable, secure, and efficient operations across the organization.
How will you make an impact in this role?
As part of this transformation, we are building a next-generation multi-cloud security platform and are seeking a CNAPP-focused engineer to drive visibility, risk reduction, and secure cloud adoption at scale. This role will play a critical part in shaping the enterprise security posture across AWS, Azure, GCP, and private cloud environments (e.g., OpenShift).
In this role, you will operate within a DevSecOps model, partnering closely with Technology Risk and Information Security (TRIS), Cloud Security Governance, Cloud Security Operations, and engineering teams across the organization. You will help identify, design, and deliver scalable security capabilities that are deeply integrated into cloud platforms and developer workflows.
You will drive a strong automation-first mindset, enabling zero-touch, idempotent, and scalable solutions through everything-as-code across infrastructure, security controls, and platform services. Success in this role requires the ability to operate across multiple initiatives, prioritize effectively, and translate evolving security and cloud technologies into practical, enterprise-ready solutions.
We are looking for a highly motivated, forward-thinking engineer who can balance technical depth with execution discipline, contribute to the maturation of end-to-end security capabilities, and ensure a seamless and secure experience for our engineering community.
BASIC QUALIFICATIONS
- 3+ years of experience in cloud security engineering across AWS, GCP, and/or Azure, with exposure to hybrid or private cloud environments (e.g., OpenShift).
- Experience in leading the design, hands-on implementation, and scaling of CNAPP capabilities (e.g., Palo Cortex) across multi-cloud environments including AWS, Azure, GCP, and OpenShift-based private cloud.
- Strong understanding and enabled end-to-end:
- CSPM, CWPP, CIEM, container security, and runtime protection posture management
- Cloud misconfiguration management and remediation automation
- Experience securing Kubernetes/OpenShift environments, including container security, workload isolation, and OPA policy enforcement.
- Define and developing policy-as-code frameworks (e.g., Cloud Native, Hashi Sentinel) and Infrastructure-as-Code tools (e.g., Terraform).
- Analyzing and prioritize security findings across cloud environments, correlating misconfigurations, vulnerabilities, identity risks, and runtime threats by leveraging XQL and automation playbooks to drive remediation strategies.
- Experience in integrating Palo Cortex with on-prem capabilities such as SIEM/SOAR and observability platforms for continuous monitoring and threat detection with CNAPP signals.
- Experience in evaluating, onboard, and optimize CNAPP tools (Palo Alto Cortex, Wiz, or similar), ensuring full integration across cloud accounts, Kubernetes environments, and CI/CD pipelines.
PREFERRED QUALIFICATIONS
- Knowledge of cloud security frameworks and benchmarks such as CIS Benchmarks, NIST, and Cloud Control Matrix (CCM).
- Having an understanding of network security, identity, and data protection domain and technical implementation framework across cloud platforms.
- Experience in developing and maintain cloud security reference architectures, detection patterns, and response playbooks aligned with enterprise governance and regulatory requirements.
- Strong analytical and problem-solving skills, with the ability to prioritize risks based on impact and exploitability.
- Experience working in Agile environments, collaborating across engineering, platform, and security teams.
At American Express, our culture is built on a 175-year history of innovation, shared values and Leadership Behaviors, and an unwavering commitment to back our customers, communities, and colleagues. From delivering differentiated products to providing world-class customer service, we operate with a strong risk mindset, ensuring we continue to uphold our brand promise of trust, security, and service.
As part of Team Amex, you’ll experience our powerful backing with comprehensive support for your holistic well-being and many opportunities to learn new skills, develop as a leader, and grow your career. Here, your voice and ideas matter, your work makes an impact, and together, you will help us define the future of American Express.
See all 1,676+ Cybersecurity Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Cybersecurity Engineer roles.
Get Access To All JobsTips for Finding E-3 Visa Sponsorship as a Cybersecurity Engineer
Align your credentials to U.S. cybersecurity frameworks
USCIS evaluates specialty occupation against U.S. standards, so translate your Australian CISM, CISSP, or ASD Essential Eight experience into NIST and CMMC terminology before applying. Credential alignment reduces RFE risk significantly.
Target federal contractors with active security clearances
Defense and intelligence contractors filing E-3 LCAs are among the most experienced E-3 sponsors. A company already processing clearances has legal and HR infrastructure to run your sponsorship without treating it as an unusual request.
Use Migrate Mate to identify E-3-ready employers
Search Migrate Mate for Cybersecurity Engineer roles filtered by E-3 sponsorship history. Use Migrate Mate's E-3 filing service to handle your LCA and visa paperwork once you have an offer, so the process doesn't stall after acceptance.
Confirm the job description requires a specific degree field
E-3 specialty occupation requires that the role normally demands a degree in a specific discipline, not any bachelor's degree. Roles listing 'relevant degree' without naming a field can create consular problems, so ask hiring managers to specify information security or computer science.
Negotiate your start date around LCA certification timelines
The DOL typically certifies LCAs within seven business days, but your employer needs that certification before you can apply for your E-3 at the consulate. Build at least three weeks between offer acceptance and your intended start date to avoid a compressed timeline.
Prepare documentation of your Australian work tenure
If your degree is in a different but related field, three years of verifiable cybersecurity experience can substitute for one year of formal education. Gather employer reference letters, payslips, and project documentation before your consulate appointment, not after.
Cybersecurity Engineer jobs are hiring across the US. Find yours.
Find Cybersecurity Engineer JobsCybersecurity Engineer E-3 Visa: Frequently Asked Questions
How do I find Cybersecurity Engineer jobs that offer E-3 visa sponsorship?
Migrate Mate is built specifically for this search. It surfaces Cybersecurity Engineer roles from employers with documented E-3 or H-1B sponsorship history, so you're not cold-applying to companies that will decline once they learn you need a visa. Filter by role, location, and sponsorship status to find employers already set up to hire Australian professionals.
How much does it cost to get an E-3 visa?
Migrate Mate's E-3 filing service covers the entire process for $499, including the Labor Condition Application, visa document preparation, and consulate appointment guidance. Traditional immigration lawyers charge $2,000–$5,000+ for the same work. The E-3 has less paperwork than most work visas, so paying thousands for legal help is usually unnecessary.
Does a Cybersecurity Engineer role qualify as an E-3 specialty occupation?
Yes, provided the employer's job description requires a bachelor's degree or higher in a specific field such as computer science, information security, or a related discipline. Roles that accept any degree regardless of field can fail the specialty occupation test at the consulate. Ask your employer to specify the required degree field in the offer letter and LCA before you apply.
How does the E-3 compare to the H-1B for Cybersecurity Engineers?
The E-3 has no lottery, no annual cap bottleneck, and can be filed directly for consular processing without a multi-month USCIS wait. H-1B registration opens once a year in March with a roughly 25% selection rate and a filing cycle that can push your start date past October. For Australian cybersecurity professionals, the E-3 is a direct path that doesn't depend on luck.
Can I switch cybersecurity employers while on an E-3 visa?
Yes, but each new employer must file a fresh LCA with the DOL and you'll need a new E-3 visa stamp if yours specifies the previous employer. You can start work with the new employer once their LCA is certified and you've obtained the updated visa, or by filing a change of status if you're already inside the United States. There's no portability provision like the H-1B has, so plan the transition carefully.
See which Cybersecurity Engineer employers are hiring and sponsoring visas right now.
Search Cybersecurity Engineer Jobs