Green Card Application Security Engineer Jobs
Application Security Engineer roles qualify for EB-2 and EB-3 green card sponsorship through the PERM labor certification process, which requires employers to document that no qualified U.S. workers are available before filing your I-140 petition. Security engineering's specialized degree and skills requirements make PERM approvals straightforward for most sponsoring employers.
Find Green Card Application Security Engineer JobsOverview
Showing 5 of 907+ Application Security Engineer jobs










See all 907+ Application Security Engineer Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Application Security Engineer roles.
Get Access To All Jobs
Company Description
About AbbVie
AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas including immunology, oncology, and neuroscience - and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at www.abbvie.com. Follow @abbvie on LinkedIn, Facebook, Instagram, X and YouTube.
Job Description
Become a key player in our Information Security team as a Junior Application Security Engineer, where you will leverage your expertise in application security, security engineering, and software development to support and enhance our inline code testing and reporting processes. This role involves the implementation and administration of application security tooling, integration into CI/CD pipelines, and providing support for development teams using these products and consuming their findings.
Responsibilities:
- Implementing and maintaining Application Security Testing (AST) tools (SAST, DAST, IAST, SCA, etc.) to identify code and dependency vulnerabilities during the software development lifecycle.
- Implementing and maintaining Application Security Posture Management (ASPM) tools to centralize and deduplicate findings from multiple solutions and integrate into software development processes.
- Acting as the first line of support for users by helping resolve false positives, providing guidance on finding remediation, and evaluating security exception requests.
- Integrating security tooling with Continuous Integration/Continuous Deployment (CICD) pipelines.
- Developing detailed reports on security findings and remediation efforts.
- Demonstrate high proficiency across a wide range of technologies and platforms related to application security, software design and development, containerization, and cloud environments.
- Communicate security risks and evangelize secure development practices to development teams and their management.
- Lean/understand vulnerabilities, triage security risks at scale in disparate application development environments and business units.
Qualifications Required:
- Bachelor’s Degree and 5 years' experience; or Master's Degree and 4 years' experience
- Experience in application security and software development
- Experience implementing, administering, and supporting application security tooling such as SAST/DAST/IAST/SCA
- Knowledge of secure coding practices across multiple programming languages (esp. Java, Node.js)
- Experience integrating security testing into CICD pipelines
- Knowledge of application security principles along with common vulnerabilities (e.g., OWASP Top 10, CWE, etc.) and associated mitigations
- Experience supporting developers with assessing and mitigating application security test findings
- Ability to effectively communicate technical findings to both technical and non-technical stakeholders
- Demonstrated ability to function as a principal engineer, generating original technical ideas and strategies. Demonstrated creative 'out of the box' thinking to solve difficult technical problems and champion new technologies to achieve program goals.
- Excellent written and oral English communication skills, as demonstrated by presenting at leading scientific or technical conferences.
- Experience coaching and supporting the development of junior engineers
Preferred:
- Experience implementing tooling to consolidate application security test findings from multiple sources to facilitate developer engagement and integrate with development workflows and tracking systems
- Experience administering Snyk and Endor Labs
- Experience integrating Cloud Security Posture Management (CSPM) tooling with application security pipelines
- Experience automating workflows via programming and scripting languages such as Python
- Experience building logging into DevSecOps pipelines to gain insights into pipeline performance
- Experience collaborating with vulnerability and risk management partners to interface with risk management and acceptance processes
Additional Information
Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or local law:
- The compensation range described below is the range of possible base pay compensation that the Company believes in good faith it will pay for this role at the time of this posting based on the job grade for this position. Individual compensation paid within this range will depend on many factors including geographic location, and we may ultimately pay more or less than the posted range. This range may be modified in the future.
- We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick), medical/dental/vision insurance and 401(k) to eligible employees.
- This job is eligible to participate in our short-term incentive programs.
Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, incentive, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole and absolute discretion unless and until paid and may be modified at the Company’s sole and absolute discretion, consistent with applicable law.
AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community. Equal Opportunity Employer/Veterans/Disabled.
US & Puerto Rico only - to learn more, visit https://www.abbvie.com/join-us/equal-employment-opportunity-employer.html
US & Puerto Rico applicants seeking a reasonable accommodation, click here to learn more:
https://www.abbvie.com/join-us/reasonable-accommodations.html
See all 907+ Green Card Application Security Engineer Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Green Card Application Security Engineer Jobs.
Get Access To All JobsTips for Finding Green Card Sponsorship as an Application Security Engineer
Match your credentials to EB-2 requirements
EB-2 requires a master's degree or a bachelor's plus five years of progressive experience in a related field. Document your appsec specialization, penetration testing certifications, and any advanced coursework before your employer starts the PERM audit.
Target employers with active PERM filings
Search the DOL's OFLC disclosure data for employers who have previously filed PERM certifications for security engineering titles. Companies with a filing history have established internal processes, meaning your case moves faster than at first-time sponsors.
Find green card sponsors using Migrate Mate
Filter Application Security Engineer roles by green card sponsorship history on Migrate Mate. You'll see which employers have sponsored foreign workers for similar titles, saving weeks of manual research before your first outreach.
Clarify job duties to satisfy PERM specificity
PERM requires your employer to advertise the exact role being sponsored. If your duties span both software development and security, work with HR to draft a job description that reflects the appsec scope accurately, or a misclassified posting risks DOL rejection.
Understand the PERM recruitment window before accepting an offer
Your employer must run a mandatory 30-day DOL recruitment period and then wait 30 days before filing. Confirm this timeline during offer negotiations so your start date, any OPT or H-1B visa expiration, and the PERM filing window align without a gap in authorization.
Request concurrent I-485 filing if your priority date is current
If the Visa Bulletin shows your EB-2 or EB-3 priority date is current at the time your I-140 is approved, ask your employer to file your I-485 adjustment of status concurrently. This can cut months off your wait for a green card.
Green Card Application Security Engineer: Frequently Asked Questions
Does an Application Security Engineer role qualify for EB-2 or EB-3 sponsorship?
Most Application Security Engineer positions qualify for both categories. EB-2 applies when the role requires a master's degree or equivalent experience in a specialized security discipline. EB-3 covers roles requiring at least a bachelor's degree. Your employer chooses the category when filing the PERM labor certification, so the job description's stated minimum requirements are what determines eligibility, not your personal credentials alone.
How is the green card process different from H-1B sponsorship for this role?
H-1B is a temporary status subject to annual cap lotteries and six-year limits. Green card sponsorship through PERM and an I-140 petition leads to permanent residency with no renewal concerns. There is no cap on EB-2 and EB-3 filings themselves, though per-country backlogs can extend wait times for nationals of India and China. The PERM process also requires your employer to run active recruitment, which H-1B does not.
What documentation do I need to support a PERM filing as an Application Security Engineer?
You'll need degree transcripts, any professional certifications like CISSP, CEH, or OSCP, and a detailed employment history showing progressive responsibility in application security. If your foreign degree is not from a U.S. institution, a credential evaluation from a NACES-member organization is typically required. USCIS and DOL both review these records during the I-140 and PERM audit stages.
How do I find employers who actively sponsor green cards for security engineering roles?
Search for Application Security Engineer positions filtered by green card sponsorship on Migrate Mate. The platform surfaces employers with a documented history of PERM filings for similar titles, so you can prioritize outreach to companies that have already navigated the process rather than starting conversations with employers who are unfamiliar with it.
Can my employer start the PERM process while I'm on an H-1B, and will my status be protected?
Yes. Employers can file a PERM labor certification and an I-140 petition while you're in valid H-1B status. Under AC21 portability rules, once your I-140 is approved and your priority date is more than 180 days old, you gain significant flexibility to change employers or roles without losing your place in the green card queue. USCIS administers the I-140 stage after DOL certifies the PERM.