Incident Response Engineer Green Card Jobs
Incident Response Engineer roles qualify for EB-2 and EB-3 green card sponsorship through PERM labor certification, which requires employers to document that no qualified U.S. worker is available before filing your I-140 petition. Cybersecurity specialization, hands-on forensics experience, and certifications like GCIH or CISSP strengthen your PERM documentation and support EB-2 classification.
See All Incident Response Engineer JobsOverview
Showing 5 of 39+ Incident Response Engineer jobs


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?
See all 39+ Incident Response Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Incident Response Engineer roles.
Get Access To All Jobs
COMPENSATION
- The pay range is $98,000.00 - $176,000.00
Pay is based on several factors which vary based on position. These include labor markets and in some instances may include education, work experience and certifications. In addition to your pay, Target cares about and invests in you as a team member, so that you can take care of yourself and your family. Target offers eligible team members and their dependents comprehensive health benefits and programs, which may include medical, vision, dental, life insurance and more, to help you and your family take care of your whole selves. Other benefits for eligible team members include 401(k), employee discount, short term disability, long term disability, paid sick leave, paid national holidays, and paid vacation. Find competitive benefits from financial and education to well-being and beyond at https://corporate.target.com/careers/benefits.
About us:
Working at Target means helping all families discover the joy of everyday life. We bring that vision to life through our values and culture. Learn more about Target here.
JOIN TARGET CYBERSECURITY AS A SENIOR ENGINEER – INCIDENT RESPONSE ENGINEERING
As a Senior Engineer, you serve as a specialist in the engineering team that supports the product. You help develop and gain insight into the application architecture. You can distill an abstract architecture into concrete design and influence the implementation. You show expertise in applying the appropriate software engineering patterns to build robust and scalable systems. You are an expert in programming and apply your skills in developing the product. You have the skills to design and implement solutions on your own, but choose to influence your fellow engineers by proposing software designs, providing feedback on software designs and implementation, and partnering closely with engineers and analysts to solve operational problems. You show strong problem-solving skills and can help the team triage operational issues. You leverage your expertise in eliminating repeat occurrences.
We are looking for a highly skilled and self-motivated Senior Engineer to support the Incident Response Engineering team, with a primary focus on SOAR engineering, automation, integrations, workflows, and supporting data pipeline capabilities. You will help create and enhance the tooling that enables security teams to investigate, respond to, and scale operational processes more effectively. You will work closely with end users to create innovative solutions that bridge the gap between security operations needs and practical engineering outcomes, while also supporting broader Incident Response Engineering tools and platforms as business needs evolve. Core responsibilities of this job are described within this job description.
As a Sr. Engineer, you’ll take the lead as you…
- Use your technology acumen to apply and maintain knowledge of current and emerging technologies within specialized areas of the technology domain
- Design, build, and maintain SOAR automations, integrations, workflows, and internal engineering solutions that improve the speed, consistency, and scale of incident response operations
- Evaluate new technologies and participate in decision-making, accounting for factors such as viability within Target’s technical environment, maintainability, and cost of ownership
- Participate in design, code review, testing, debugging, and implementation activities at the application level
- Partner with engineers, analysts, and cross-functional teams to translate operational needs into scalable technical solutions
- Support the development and maintenance of internal tools, applications, and services used across Incident Response Engineering
- Contribute to data pipeline and workflow capabilities that improve operational visibility and help close gaps in existing tooling
- Help troubleshoot and resolve operational issues while improving reliability and reducing repeat work through engineering improvements
About you:
- 4 year degree or equivalent experience
- 5+ years of software development experience with at least one full cycle implementation from requirement to production
- Strong problem solving and thought partnership skills
- Demonstrated sense of ownership and the ability to work with a limited set of requirements
- Expertise in frontend and backend development
- Expertise in JavaScript or TypeScript, React, and Python
- Experience designing and integrating REST APIs and web-based services
- Experience building automations, workflows, or internal applications
- Experience with SOAR platforms or security automation tools preferred
- Familiarity with data pipelines or data-processing workflows is a strong plus
- Strong communication and collaboration skills
- Ability to navigate ambiguity and contribute across multiple Incident Response Engineering tools and platforms
Work Arrangement:
This position will operate as a Hybrid/Flex for Your Day work arrangement based on Target’s needs. A Hybrid/Flex for Your Day work arrangement means the team member’s core role will need to be performed both onsite at the Target HQ MN location the role is assigned to and virtually, depending upon what your role, team and tasks require for that day. Work duties cannot be performed outside of the country of the primary work location, unless otherwise prescribed by Target. Click here if you are curious to learn more about Minnesota.
Benefits Eligibility
Please paste this url into your preferred browser to learn about benefits eligibility for this role: https://tgt.biz/BenefitsForYou_D
Americans with Disabilities Act (ADA)
In compliance with state and federal laws, Target will make reasonable accommodations for applicants with disabilities. If a reasonable accommodation is needed to participate in the job application or interview process, please reach out to candidate.accommodations@HRHelp.Target.com. Non-accommodation-related requests, such as application follow-ups or technical issues, will not be addressed through this channel.

COMPENSATION
- The pay range is $98,000.00 - $176,000.00
Pay is based on several factors which vary based on position. These include labor markets and in some instances may include education, work experience and certifications. In addition to your pay, Target cares about and invests in you as a team member, so that you can take care of yourself and your family. Target offers eligible team members and their dependents comprehensive health benefits and programs, which may include medical, vision, dental, life insurance and more, to help you and your family take care of your whole selves. Other benefits for eligible team members include 401(k), employee discount, short term disability, long term disability, paid sick leave, paid national holidays, and paid vacation. Find competitive benefits from financial and education to well-being and beyond at https://corporate.target.com/careers/benefits.
About us:
Working at Target means helping all families discover the joy of everyday life. We bring that vision to life through our values and culture. Learn more about Target here.
JOIN TARGET CYBERSECURITY AS A SENIOR ENGINEER – INCIDENT RESPONSE ENGINEERING
As a Senior Engineer, you serve as a specialist in the engineering team that supports the product. You help develop and gain insight into the application architecture. You can distill an abstract architecture into concrete design and influence the implementation. You show expertise in applying the appropriate software engineering patterns to build robust and scalable systems. You are an expert in programming and apply your skills in developing the product. You have the skills to design and implement solutions on your own, but choose to influence your fellow engineers by proposing software designs, providing feedback on software designs and implementation, and partnering closely with engineers and analysts to solve operational problems. You show strong problem-solving skills and can help the team triage operational issues. You leverage your expertise in eliminating repeat occurrences.
We are looking for a highly skilled and self-motivated Senior Engineer to support the Incident Response Engineering team, with a primary focus on SOAR engineering, automation, integrations, workflows, and supporting data pipeline capabilities. You will help create and enhance the tooling that enables security teams to investigate, respond to, and scale operational processes more effectively. You will work closely with end users to create innovative solutions that bridge the gap between security operations needs and practical engineering outcomes, while also supporting broader Incident Response Engineering tools and platforms as business needs evolve. Core responsibilities of this job are described within this job description.
As a Sr. Engineer, you’ll take the lead as you…
- Use your technology acumen to apply and maintain knowledge of current and emerging technologies within specialized areas of the technology domain
- Design, build, and maintain SOAR automations, integrations, workflows, and internal engineering solutions that improve the speed, consistency, and scale of incident response operations
- Evaluate new technologies and participate in decision-making, accounting for factors such as viability within Target’s technical environment, maintainability, and cost of ownership
- Participate in design, code review, testing, debugging, and implementation activities at the application level
- Partner with engineers, analysts, and cross-functional teams to translate operational needs into scalable technical solutions
- Support the development and maintenance of internal tools, applications, and services used across Incident Response Engineering
- Contribute to data pipeline and workflow capabilities that improve operational visibility and help close gaps in existing tooling
- Help troubleshoot and resolve operational issues while improving reliability and reducing repeat work through engineering improvements
About you:
- 4 year degree or equivalent experience
- 5+ years of software development experience with at least one full cycle implementation from requirement to production
- Strong problem solving and thought partnership skills
- Demonstrated sense of ownership and the ability to work with a limited set of requirements
- Expertise in frontend and backend development
- Expertise in JavaScript or TypeScript, React, and Python
- Experience designing and integrating REST APIs and web-based services
- Experience building automations, workflows, or internal applications
- Experience with SOAR platforms or security automation tools preferred
- Familiarity with data pipelines or data-processing workflows is a strong plus
- Strong communication and collaboration skills
- Ability to navigate ambiguity and contribute across multiple Incident Response Engineering tools and platforms
Work Arrangement:
This position will operate as a Hybrid/Flex for Your Day work arrangement based on Target’s needs. A Hybrid/Flex for Your Day work arrangement means the team member’s core role will need to be performed both onsite at the Target HQ MN location the role is assigned to and virtually, depending upon what your role, team and tasks require for that day. Work duties cannot be performed outside of the country of the primary work location, unless otherwise prescribed by Target. Click here if you are curious to learn more about Minnesota.
Benefits Eligibility
Please paste this url into your preferred browser to learn about benefits eligibility for this role: https://tgt.biz/BenefitsForYou_D
Americans with Disabilities Act (ADA)
In compliance with state and federal laws, Target will make reasonable accommodations for applicants with disabilities. If a reasonable accommodation is needed to participate in the job application or interview process, please reach out to candidate.accommodations@HRHelp.Target.com. Non-accommodation-related requests, such as application follow-ups or technical issues, will not be addressed through this channel.
See all 39+ Incident Response Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Incident Response Engineer roles.
Get Access To All JobsTips for Finding Green Card Sponsorship as an Incident Response Engineer
Align your certifications to PERM job requirements
PERM requires the employer to define minimum qualifications before advertising the role. Certifications like GCIH, GCFE, or CISSP that appear in your offer letter's requirements directly support your I-140 and reduce RFE risk.
Target employers with dedicated security operations centers
Organizations running 24/7 SOC teams file PERM for Incident Response Engineers far more regularly than generalist IT shops. Financial services, healthcare systems, and defense contractors are the sectors with the most consistent sponsorship pipelines for this role.
Search green card sponsors using Migrate Mate
Use Migrate Mate to filter for employers who have sponsored Incident Response or cybersecurity roles through PERM. Seeing a company's actual green card filing history tells you far more than a job posting that says sponsorship is available.
Confirm the role is classified under the right SOC code
Incident Response Engineers are typically filed under SOC 15-1212 (Information Security Analysts). Ask your employer's immigration counsel to verify this before the PERM prevailing wage determination is submitted, because misclassification delays the entire process.
Request the PERM timeline before accepting an offer
DOL's PERM audit backlog means labor certification alone can take six to eighteen months. Knowing where the employer is in the PERM queue, or whether they'll file concurrently, is critical before you commit to a role and start a clock on your current status.
Use the OFLC Wage Search to benchmark your offer
PERM wages must meet DOL prevailing wage levels for your SOC code and work location. Run the OFLC Wage Search yourself before negotiations so you know the minimum the employer must pay and can push for a wage that won't stall certification.
Incident Response Engineer jobs are hiring across the US. Find yours.
Find Incident Response Engineer JobsIncident Response Engineer Green Card Sponsorship: Frequently Asked Questions
Does an Incident Response Engineer role qualify for EB-2 or EB-3 sponsorship?
Most Incident Response Engineer positions qualify for EB-3 as skilled workers requiring a bachelor's degree in computer science, information security, or a related field. Roles requiring a master's degree or involving highly specialized forensics research may support EB-2 classification. Your employer's immigration counsel determines the category based on the job requirements they document for PERM.
How does green card sponsorship differ from H-1B for this role?
Green card sponsorship through PERM leads to permanent residency, not a temporary status that must be renewed every three years. There's no annual cap lottery at the EB-3 level for most countries, so your employer files when ready rather than waiting for a random selection window. The tradeoff is timeline: PERM plus I-140 plus adjustment of status typically takes two to four years even without a backlog, compared to H-1B which grants status within months.
What makes an Incident Response Engineer role harder or easier to get PERM approved?
PERM approval depends on whether the employer can document that no qualified U.S. worker applied during the mandatory recruitment period. Roles requiring highly specific tools, incident frameworks like NIST 800-61, or forensic platforms that aren't widely taught in standard degree programs tend to attract fewer competing domestic candidates. Overly broad job descriptions that accept any IT bachelor's degree create the most recruitment risk.
How do I find employers actively sponsoring green cards for cybersecurity roles?
Migrate Mate lets you search for employers who have filed PERM labor certifications for Incident Response, information security, or related cybersecurity job titles. Reviewing a company's actual PERM filing history is more reliable than reading a job description that mentions sponsorship, because it shows you which organizations have completed the process before and understand the commitment involved.
Can my employer start PERM while I'm on H-1B, and what happens to my status?
Yes. Employers frequently begin PERM labor certification while you're working on H-1B status. The two processes run independently, and PERM filing doesn't affect your H-1B. Once your I-140 is approved and you've been in the PERM queue for 365 days, USCIS can grant H-1B extensions beyond the normal six-year cap limit, protecting your status while your green card case progresses.
See which Incident Response Engineer employers are hiring and sponsoring visas right now.
Search Incident Response Engineer Jobs