Green Card Cloud Security Engineer Jobs
Cloud Security Engineer roles qualify for EB-2 and EB-3 green card sponsorship through PERM labor certification, which requires your employer to document that no qualified U.S. worker is available for the position. Roles involving cloud infrastructure security, zero-trust architecture, and compliance frameworks consistently meet the specialty occupation threshold that supports permanent residency sponsorship.
Find Green Card Cloud Security Engineer JobsOverview
Showing 5 of 207+ Cloud Security Engineer jobs










See all 207+ Cloud Security Engineer Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Cloud Security Engineer roles.
Get Access To All Jobs
INTRODUCTION
GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.
ABOUT THE JOB
We are looking for a skilled Associate Cloud Security Engineer - AWS to support cloud security consulting engagements within the Cloud practice. This early-career role focuses on assisting with security assessments, architecture reviews, compliance mapping, and cloud-native control implementation in AWS environments. You will work alongside senior consultants on diverse client engagements while providing "Wow Them" service to clients and internal teammates.
The Associate Cloud Security Engineer - AWS will be expected to demonstrate foundational AWS security skills, a strong willingness to learn, and effective communication abilities. This role offers hands-on mentorship, exposure to diverse client environments, and a clear path to professional growth within a leading cybersecurity consultancy.
ABOUT THE CLOUD SECURITY (AWS) PRACTICE
The Cloud Security (AWS) practice is responsible for delivering security consulting services to clients operating in Amazon Web Services environments. We design, assess, and implement secure cloud architectures across the organization.
Our team of cloud security engineers and consultants focuses on architecture design, risk assessments, compliance, and cloud-native security control implementation. We partner with clients across industries to strengthen their cloud security posture.
- Focus on AWS-native security tooling and cloud security best practices
- Hands-on consulting engagements from assessment through implementation
- Growing practice with strong mentorship and professional development opportunities
ROLE AND RESPONSIBILITIES:
- Support delivery teams by assisting with cloud security assessments, documentation, and client deliverable preparation under the guidance of senior consultants
- Participate in client meetings, workshops, and discovery sessions to develop consulting and communication skills
- Assist with AWS security assessments to help identify misconfigurations, operational risks, and compliance gaps
- Help document findings, recommendations, and remediation steps for client deliverables
- Support the development of security roadmaps, gap analyses, architecture diagrams, and other deliverables
- Assist with AWS security configurations including IAM policies, CloudTrail, GuardDuty, Security Hub, and Config
- Contribute to internal methodologies, templates, and reusable assessment frameworks
- Actively participate in knowledge sharing and mentorship opportunities within the team
BASIC QUALIFICATIONS:
- 1 year of related experience
- Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes.
- AWS Certified Cloud Practitioner certification (required)
- Minimum of 1 year of hands-on experience with AWS cloud services (internships, lab environments, and project-based experience count)
- Foundational understanding of AWS IAM including roles, policies, and MFA configuration
- Familiarity with AWS security services such as CloudTrail, GuardDuty, Security Hub, and AWS Config
- Exposure to Infrastructure as Code tools (Terraform, CloudFormation, or CDK)
- Understanding of core network security concepts including VPCs, security groups, and NACLs
- Basic scripting ability (Python preferred; Bash or PowerShell also acceptable)
- Awareness of multi-account AWS environment concepts
- Strong written and verbal communication skills
PREFERRED QUALIFICATIONS:
- Bachelor's degree in Cybersecurity, Computer Science, Engineering, or related field
- AWS Certified Solutions Architect – Associate or AWS Certified Security – Specialty certification
- Exposure to AWS Organizations, SCPs, or permission boundaries
- Familiarity with CI/CD pipeline security concepts and preventive guardrails
- Experience with CSPM, CWPP, or CIEM tools
- Prior internship, co-op, or project experience in a cybersecurity or cloud engineering role
- CompTIA Security+ or CCSK (Certificate of Cloud Security Knowledge) certification
TRAVEL REQUIREMENTS:
- Up to 10% travel
Physical Requirements:
- Sedentary work
- Substantial movement of the wrists, hands, and/or fingers for a minimum of 8 hours a day
- Required to have close visual acuity to view computer terminal and/or extensive reading for a minimum of 8 hours a day
Why GuidePoint?
GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1,300 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 6,200 customers.
Firmly-defined core values drive all aspects of the business, which have been paramount to the company's success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity.
This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation.
Some added perks….
- Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
- Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family). If you choose the High Deductible / HSA plan, GPS will contribute in 4 equal quarterly installments: ($850 per EE annually / $1750 per family annually (includes spouse/children/family options)
- Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans
- 12 corporate holidays and a Flexible Time Off (FTO) program
- Healthy mobile phone and home internet allowance
- Eligibility for retirement plan after 2 months at open enrollment
- Pet Benefit Option
We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application.
See all 207+ Green Card Cloud Security Engineer Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Green Card Cloud Security Engineer Jobs.
Get Access To All JobsTips for Finding Green Card Sponsorship as a Cloud Security Engineer
Document your cloud certifications strategically
PERM petitions for Cloud Security Engineers often hinge on the degree-job nexus. Certifications like CCSP, CISSP, or AWS Security Specialty don't replace a bachelor's degree, but they strengthen the EB-2 specialty occupation argument when your degree field doesn't directly map to security.
Target employers with active PERM filing history
Search OFLC disclosure data to identify employers who have filed PERM applications for Cloud Security Engineer or related SOC codes. Past filings signal an established sponsorship workflow, which cuts negotiation time once you receive an offer.
Use Migrate Mate to find green card sponsoring roles
Filter your Cloud Security Engineer job search by employers with verified green card sponsorship history. Migrate Mate surfaces roles where PERM sponsorship is confirmed, so you're not guessing at employer willingness mid-process.
Clarify the EB-2 versus EB-3 path before accepting an offer
If your role requires an advanced degree or you can demonstrate specialized expertise, push for EB-2 classification. EB-3 has slower priority date movement for India and China nationals, so the category filed can affect your wait by years, not months.
Request the prevailing wage determination early
Your employer must file a Prevailing Wage Determination with DOL before starting PERM. Use the OFLC Wage Search to benchmark your offer against Level I through Level IV wages for cloud security roles in your metro area before negotiations close.
Protect your status during the I-485 waiting period
Once your I-140 is approved and your priority date is current, you can file to adjust status. If your I-485 has been pending for 180 days, AC21 portability lets you change employers without restarting PERM, provided the new role is in the same or similar occupational classification.
Green Card Cloud Security Engineer: Frequently Asked Questions
Does a Cloud Security Engineer role qualify for EB-2 or EB-3 green card sponsorship?
Cloud Security Engineer positions typically qualify for both EB-2 and EB-3 depending on how your employer structures the job requirements. EB-2 applies when the role requires a master's degree or the equivalent in education plus experience. EB-3 covers positions requiring a bachelor's degree as the minimum, which describes most cloud security postings. Your employer's attorneys will determine the classification based on the actual duties and requirements listed in the PERM application.
How does PERM green card sponsorship differ from H-1B for Cloud Security Engineers?
H-1B visa is a temporary work visa subject to an annual lottery cap, while PERM is the first stage of permanent residency with no annual cap at the EB-3 level for most nationalities. PERM requires your employer to run a supervised recruitment process demonstrating no qualified U.S. worker is available. The full PERM-to-green card timeline typically runs two to four years for most nationals, but it leads to permanent status rather than a visa requiring repeated renewal.
What does the PERM recruitment process look like for a Cloud Security Engineer position?
Your employer must post the Cloud Security Engineer role using DOL-mandated recruitment steps, including print advertisements, job postings, and internal notices, over a 30-day supervised recruitment window. If no qualified U.S. applicant accepts the position, the employer files the ETA 9089 form with DOL. USCIS then adjudicates the I-140 immigrant petition once PERM is certified. The job duties and requirements in those ads become binding, so the role description should match your actual work.
How do I find Cloud Security Engineer jobs where employers are willing to sponsor a green card?
Search specifically for employers with documented PERM filing history for security roles rather than relying on job postings that mention sponsorship vaguely. Migrate Mate filters Cloud Security Engineer roles by verified green card sponsorship history, so you can focus your applications on employers who have already run the PERM process for similar positions, which significantly reduces the risk of a sponsorship conversation falling apart after an offer.
Can I change employers while my green card application is in progress?
Yes, under AC21 portability you can change employers after your I-485 adjustment of status application has been pending for at least 180 days and your I-140 has been approved. The new role must be in the same or a similar occupational classification as the one your PERM was filed under. Cloud security roles with overlapping duties and the same SOC code typically qualify, but you'll want USCIS to confirm portability before resigning from your current employer.