E-3 Visa IT Security Engineer Jobs
IT Security Engineer roles in the U.S. qualify as E-3 specialty occupations, requiring a bachelor's degree in computer science, information security, or a related field. Australian professionals can secure E-3 visa sponsorship without competing in the H-1B lottery, making it faster to get to work.
See All IT Security Engineer JobsOverview
Showing 5 of 90+ IT Security Engineer jobs


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?
See all 90+ IT Security Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new IT Security Engineer roles.
Get Access To All Jobs
We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time.
Position Summary
As an Staff Security Engineer – Active Directory on our team, you will serve as a technical authority responsible for the design, security, and long‑term health of a large enterprise, multi‑domain Active Directory environment in a hybrid on‑prem and Azure cloud configuration. This role is primarily focused on Microsoft Entra ID, with Active Directory serving as a foundational dependency within a hybrid identity architecture rather than the center of gravity.
You will lead cloud identity security initiatives, drive Entra ID architecture and governance decisions, and act as a senior escalation point for identity‑related incidents and risks. In addition to hands‑on engineering, you will partner closely with Cybersecurity, IAM, Infrastructure, and Audit teams to ensure Entra ID and hybrid identity services are resilient, compliant, and aligned with Zero Trust with enterprise security objectives.
Key Duties and Responsibilities
- Architect, secure, and oversee enterprise multi‑domain Active Directory environments in hybrid configurations with Azure, including Azure AD Connect and identity synchronization strategies
- Provide senior‑level administration and security engineering for Azure Active Directory (Microsoft Entra ID), including identity protection, authentication methods, and access governance
- Design, implement, and continuously improve Entra ID Conditional Access, privileged access models, and identity security controls
- Lead analysis and response efforts for complex identity‑related security incidents, including root cause analysis and long‑term remediation
- Oversee and harden hybrid identity integrations, including Entra ID Connect / Cloud Sync, ensuring secure synchronization and minimal on‑prem dependency exposure
- Monitor, investigate, and respond to cloud‑based identity threats and anomalous authentication activity using Entra ID logs, risk detections, and SIEM tooling
- Lead root cause analysis and long‑term remediation for identity‑related security incidents spanning Entra ID, SaaS applications, and hybrid authentication flows
- Establish and enforce Entra ID security standards, including tenant configuration, role management, identity lifecycle controls, and service principal governance
- Proactively identify architectural weaknesses and attack paths within cloud and hybrid identity and drive modernization and risk‑reduction initiatives
- Lead and support internal and external audits (SOX, PCI, HIPAA, etc.) related to identity, access management, and authentication controls
- Partner with Cybersecurity, IAM, Application, and Platform teams to ensure secure Entra ID integration with enterprise SaaS, Azure, and on‑prem applications
- Develop and maintain enterprise documentation, architecture standards, and operational runbooks for Entra ID and hybrid identity services
- Evaluate new Microsoft Entra capabilities and identity security features, making informed recommendations for adoption
Required Qualifications
- 7+ years of experience engineering enterprise identity solutions, with increasing focus on cloud‑based identity platforms
- 7+ years of advanced experience administering and securing Microsoft Entra ID (Azure AD) in large enterprise environments
- 7+ years of experience administering and securing Azure and Azure Active Directory
- 5+ years of experience using PowerShell and automation to manage, audit, and secure identity platforms
- 5+ years of experience in security hardening, vulnerability remediation, and identity‑related risk reduction
Preferred Qualifications
- Expert level understanding of cloud identity and access management concepts: Tiered administrative models, Privileged access management and credential protection, Group Policy design and hardening, and Secure authentication and authorization architectures
- Experience leading identity‑related security investigations and incident response
- Strong experience with monitoring and security tools such as Splunk and Microsoft Systems Center Operations Manager (SCOM)
- Experience with vulnerability and attack‑path analysis tools such as Microsoft Assessment tools, CrowdStrike, BloodHound, or similar
- Proven experience designing and remediating controls for SOX, PCI, HIPAA, or similar regulatory frameworks
- Ability to translate business and security requirements into scalable, secure technical solutions
- Strong leadership, collaboration, and communication skills, including the ability to influence technical direction
Education
Bachelor’s degree or equivalent experience (High School Diploma and 4 years relevant experience).
Pay Range
The typical pay range for this role is:
$106,605.00 - $284,280.00
This pay range represents the base hourly rate or base annual full‑time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short‑term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program.
Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong.
Great benefits for great people
We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families.
This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility.
Additional details about available benefits are provided during the application process and on Benefits Moments.
We anticipate the application window for this opening will close on: 05/04/2026
Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time.
Position Summary
As an Staff Security Engineer – Active Directory on our team, you will serve as a technical authority responsible for the design, security, and long‑term health of a large enterprise, multi‑domain Active Directory environment in a hybrid on‑prem and Azure cloud configuration. This role is primarily focused on Microsoft Entra ID, with Active Directory serving as a foundational dependency within a hybrid identity architecture rather than the center of gravity.
You will lead cloud identity security initiatives, drive Entra ID architecture and governance decisions, and act as a senior escalation point for identity‑related incidents and risks. In addition to hands‑on engineering, you will partner closely with Cybersecurity, IAM, Infrastructure, and Audit teams to ensure Entra ID and hybrid identity services are resilient, compliant, and aligned with Zero Trust with enterprise security objectives.
Key Duties and Responsibilities
- Architect, secure, and oversee enterprise multi‑domain Active Directory environments in hybrid configurations with Azure, including Azure AD Connect and identity synchronization strategies
- Provide senior‑level administration and security engineering for Azure Active Directory (Microsoft Entra ID), including identity protection, authentication methods, and access governance
- Design, implement, and continuously improve Entra ID Conditional Access, privileged access models, and identity security controls
- Lead analysis and response efforts for complex identity‑related security incidents, including root cause analysis and long‑term remediation
- Oversee and harden hybrid identity integrations, including Entra ID Connect / Cloud Sync, ensuring secure synchronization and minimal on‑prem dependency exposure
- Monitor, investigate, and respond to cloud‑based identity threats and anomalous authentication activity using Entra ID logs, risk detections, and SIEM tooling
- Lead root cause analysis and long‑term remediation for identity‑related security incidents spanning Entra ID, SaaS applications, and hybrid authentication flows
- Establish and enforce Entra ID security standards, including tenant configuration, role management, identity lifecycle controls, and service principal governance
- Proactively identify architectural weaknesses and attack paths within cloud and hybrid identity and drive modernization and risk‑reduction initiatives
- Lead and support internal and external audits (SOX, PCI, HIPAA, etc.) related to identity, access management, and authentication controls
- Partner with Cybersecurity, IAM, Application, and Platform teams to ensure secure Entra ID integration with enterprise SaaS, Azure, and on‑prem applications
- Develop and maintain enterprise documentation, architecture standards, and operational runbooks for Entra ID and hybrid identity services
- Evaluate new Microsoft Entra capabilities and identity security features, making informed recommendations for adoption
Required Qualifications
- 7+ years of experience engineering enterprise identity solutions, with increasing focus on cloud‑based identity platforms
- 7+ years of advanced experience administering and securing Microsoft Entra ID (Azure AD) in large enterprise environments
- 7+ years of experience administering and securing Azure and Azure Active Directory
- 5+ years of experience using PowerShell and automation to manage, audit, and secure identity platforms
- 5+ years of experience in security hardening, vulnerability remediation, and identity‑related risk reduction
Preferred Qualifications
- Expert level understanding of cloud identity and access management concepts: Tiered administrative models, Privileged access management and credential protection, Group Policy design and hardening, and Secure authentication and authorization architectures
- Experience leading identity‑related security investigations and incident response
- Strong experience with monitoring and security tools such as Splunk and Microsoft Systems Center Operations Manager (SCOM)
- Experience with vulnerability and attack‑path analysis tools such as Microsoft Assessment tools, CrowdStrike, BloodHound, or similar
- Proven experience designing and remediating controls for SOX, PCI, HIPAA, or similar regulatory frameworks
- Ability to translate business and security requirements into scalable, secure technical solutions
- Strong leadership, collaboration, and communication skills, including the ability to influence technical direction
Education
Bachelor’s degree or equivalent experience (High School Diploma and 4 years relevant experience).
Pay Range
The typical pay range for this role is:
$106,605.00 - $284,280.00
This pay range represents the base hourly rate or base annual full‑time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short‑term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program.
Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong.
Great benefits for great people
We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families.
This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility.
Additional details about available benefits are provided during the application process and on Benefits Moments.
We anticipate the application window for this opening will close on: 05/04/2026
Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.
See all 90+ IT Security Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new IT Security Engineer roles.
Get Access To All JobsTips for Finding E-3 Visa Sponsorship as an IT Security Engineer
Translate your Australian credentials clearly
Your three-year Australian bachelor's degree satisfies the E-3 specialty occupation requirement when it's in a field directly tied to the role. Get a credential evaluation if your degree is in a adjacent field like electrical engineering or applied science.
Target employers with active security clearance programs
Federal contractors and defense-adjacent tech firms routinely sponsor E-3 visas for security engineers because cleared roles are hard to fill domestically. Search for positions listing clearance eligibility or government contract work in the job description.
Use Migrate Mate to find verified sponsors
Not every employer who posts an IT Security Engineer role understands E-3 sponsorship. Use Migrate Mate to filter for companies with confirmed E-3 filing history so you're not spending weeks educating HR from scratch.
Confirm the role meets DOL specialty occupation standards
Before accepting an offer, verify your job title maps to a recognized specialty occupation under DOL definitions. Roles blending IT security with general IT support or helpdesk duties can complicate LCA approval if the degree requirement isn't clearly documented.
Start the LCA process immediately after signing
Your employer must file a Labor Condition Application with DOL before you can book your consulate appointment. Delays here push back your start date, so align with your employer on timing the day you receive your signed offer letter.
Handle your full filing through Migrate Mate's E-3 filing service
Once you have an offer, Migrate Mate's E-3 filing service manages the LCA filing, visa paperwork, and consulate preparation end-to-end, reducing the risk of documentation errors that could delay your security engineer role start date.
IT Security Engineer jobs are hiring across the US. Find yours.
Find IT Security Engineer JobsIT Security Engineer E-3 Visa: Frequently Asked Questions
How do I find IT Security Engineer jobs with E-3 visa sponsorship?
Use Migrate Mate to search IT Security Engineer roles filtered by employers who have sponsored E-3 visas before. Generic job boards don't surface sponsorship history, so you can waste significant time applying to companies that don't understand the E-3 process or won't initiate an LCA for a new hire.
How much does it cost to get an E-3 visa?
Migrate Mate's E-3 filing service covers the entire process for $499, including the Labor Condition Application, visa document preparation, and consulate appointment guidance. Traditional immigration lawyers charge $2,000–$5,000+ for the same work. The E-3 has less paperwork than most work visas, so paying thousands for legal help is usually unnecessary.
Does an IT Security Engineer role qualify as an E-3 specialty occupation?
Yes. IT Security Engineer positions consistently qualify as E-3 specialty occupations because they require at minimum a bachelor's degree in computer science, information security, cybersecurity, or a closely related field. Roles that bundle security responsibilities with general IT support may face more scrutiny, so your offer letter should clearly define the security engineering scope of the position.
How does the E-3 visa compare to the H-1B for IT Security Engineers?
The E-3 visa has no lottery and no annual cap, so Australian security engineers can apply any time of year and receive a decision within weeks of the consulate interview. The H-1B requires entering a lottery with roughly a one-in-four selection rate. Both require a specialty occupation and a Labor Condition Application, but E-3 processing is significantly faster and more predictable for planning a start date.
Can I change employers on an E-3 while working as a security engineer?
Yes, but your new employer must file a fresh LCA and you'll need to obtain a new E-3 visa stamp at an Australian consulate or a U.S. consulate abroad. You can begin working for the new employer as soon as your new E-3 is approved, but you can't transfer the visa from one employer to another the way an H-1B portability rule operates.
See which IT Security Engineer employers are hiring and sponsoring visas right now.
Search IT Security Engineer Jobs