Infrastructure Security Engineer Green Card Jobs
Infrastructure Security Engineer roles qualify for green card sponsorship under EB-2 and EB-3 when the position requires a bachelor's degree or higher in computer science, information security, or a related field. Employers file a PERM labor certification with DOL before petitioning USCIS, permanently sponsoring you rather than extending a temporary status.
See All Infrastructure Security Engineer JobsOverview
Showing 5 of 81+ Infrastructure Security Engineer jobs


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?
See all 81+ Infrastructure Security Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Infrastructure Security Engineer roles.
Get Access To All Jobs
About this role
Join an exciting, fast-paced organization working on cutting edge encryption, tokenization and key management technologies, leveraged to protect information companywide. Wells Fargo is seeking a Lead Information Security Engineer working with CipherTrust Transparent Data Encryption. This role requires strong Information Technology and Information Security foundational knowledge, as well as experience with and awareness of encryption and key management technologies and engineering practices. The role closely partners with stakeholders across Wells Fargo Technology Infrastructure, Cybersecurity and lines of business to drive information protection product delivery, support business priorities and oversees the allocation of people and financial resources to ensure commitments are met and align with strategic objectives.
In this role, you will:
- Focus on delivering commitments aligned to enterprise strategic priorities
- Build support for strategies with business and technology leaders
- Guide development of actionable roadmaps and plans
- Identify opportunities and strategies for continuous improvement of product delivery practices
- Set risk management guidelines and partner with stakeholders to implement key risk initiatives
- Collaborate and influence all levels of professionals including more experienced managers
- Interface with external agencies, regulatory bodies, or industry forums
- Interpret and develop range of policies and procedures for functions with moderate to higher complexity and risk
- Lead efforts to facilitate/manage projects, products, strategic plans and execute other operational aspects on behalf of leader
- Lead efforts to define/manage required business plans (i.e. draft proposals & plans) and support related initiatives across products - including analyzing & identifying opportunities for efficiencies and innovation across internal processes and the tools to support.
- Support the product line general manager to solve problems, manage disputes and deal with any issues impacting the TI organization.
Required Qualifications:
- 5+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
- Hands-on experience designing, deploying, and operating Thales CipherTrust Transparent Encryption (CTE) for unstructured data at rest, including file, folder, and volume-level encryption
- Deep understanding of CTE agent architecture, GuardPoints, policies, and In-Place / Live Data Transformation (IDT/LDT) concepts and trade-offs
- Proven experience administering CipherTrust Manager (formerly DSM/Vormetric) for: Centralized key lifecycle management, Policy enforcement and Audit and access logging
- Strong engineering experience with Linux (RHEL, SLES), Windows, and AIX in enterprise environments
- Practical knowledge of supported file systems (e.g., ext3/ext4, NTFS, NFS, raw disk encryption scenarios) and their interaction with CTE agents
- Ability to assess kernel compatibility, AES-NI requirements, and host readiness prior to encryption enablement
- Strong understanding of data-at-rest encryption principles, including: Threat models beyond disk theft (privileged user access, data exfiltration), Why file/folder-level encryption is required in addition to disk encryption, Knowledge of AES-256 encryption, hardware acceleration (AES-NI), and performance considerations in high-IO workloads and Experience operating encryption solutions in regulated environments
- Experience deploying and managing CTE agents using automation frameworks (e.g., Ansible) rather than manual installs
- Ability to design repeatable, scalable onboarding patterns for thousands of hosts and large NAS environments
- Familiarity with change management constraints (reboots, maintenance windows, encryption sequencing) in production systems
Desired Qualifications:
- 5+ years of advanced information security architecture, design, or consulting experience
- Strong knowledge of hardware security modules (HSMs) and/or security appliances
- Strong knowledge of certificate ciphers and encryption algorithms.
- Strong knowledge, understanding and prior experiences with regulatory drivers impacting a complex and dynamic global technology environment.
- MS or MBA degree in Business, Finance, Computer Science, Engineering, or related fields
- CISSP or CISM or CISA certifications
- Microsoft Azure and/or Google Cloud certifications
- Practical experience building security solutions through abstraction layer and automation practices.
- Policy development experience
- Experience with the development and execution of strategy in a large enterprise
- Experience creating visually dynamic presentations
Job Expectations:
- Ability to work on-site in one of the listed locations in a hybrid environment
- This position is not available for visa sponsorship
Pay Range
Reflected is the base pay range offered for this position. Pay may vary depending on factors including but not limited to demonstrated examples of prior performance, skills, experience, or work location. Employees may also be eligible for incentive opportunities.
$119,000.00 - $187,000.00
Benefits
Wells Fargo provides eligible employees with a comprehensive set of benefits, many of which are listed below. Visit Benefits - Wells Fargo Jobs for an overview of the following benefit plans and programs offered to employees.
- Health benefits
- 401(k) Plan
- Paid time off
- Disability benefits
- Life insurance, critical illness insurance, and accident insurance
- Parental leave
- Critical caregiving leave
- Discounts and savings
- Commuter benefits
- Tuition reimbursement
- Scholarships for dependent children
- Adoption reimbursement
Posting End Date:
17 Apr 2026
- Job posting may come down early due to volume of applicants.
We Value Equal Opportunity
Wells Fargo is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.
Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit's risk appetite and all risk and compliance program requirements.
Applicants with Disabilities
To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo.
Drug and Alcohol Policy
Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy to learn more.
Wells Fargo Recruitment and Hiring Requirements:
a. Third-Party recordings are prohibited unless authorized by Wells Fargo.
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.

About this role
Join an exciting, fast-paced organization working on cutting edge encryption, tokenization and key management technologies, leveraged to protect information companywide. Wells Fargo is seeking a Lead Information Security Engineer working with CipherTrust Transparent Data Encryption. This role requires strong Information Technology and Information Security foundational knowledge, as well as experience with and awareness of encryption and key management technologies and engineering practices. The role closely partners with stakeholders across Wells Fargo Technology Infrastructure, Cybersecurity and lines of business to drive information protection product delivery, support business priorities and oversees the allocation of people and financial resources to ensure commitments are met and align with strategic objectives.
In this role, you will:
- Focus on delivering commitments aligned to enterprise strategic priorities
- Build support for strategies with business and technology leaders
- Guide development of actionable roadmaps and plans
- Identify opportunities and strategies for continuous improvement of product delivery practices
- Set risk management guidelines and partner with stakeholders to implement key risk initiatives
- Collaborate and influence all levels of professionals including more experienced managers
- Interface with external agencies, regulatory bodies, or industry forums
- Interpret and develop range of policies and procedures for functions with moderate to higher complexity and risk
- Lead efforts to facilitate/manage projects, products, strategic plans and execute other operational aspects on behalf of leader
- Lead efforts to define/manage required business plans (i.e. draft proposals & plans) and support related initiatives across products - including analyzing & identifying opportunities for efficiencies and innovation across internal processes and the tools to support.
- Support the product line general manager to solve problems, manage disputes and deal with any issues impacting the TI organization.
Required Qualifications:
- 5+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
- Hands-on experience designing, deploying, and operating Thales CipherTrust Transparent Encryption (CTE) for unstructured data at rest, including file, folder, and volume-level encryption
- Deep understanding of CTE agent architecture, GuardPoints, policies, and In-Place / Live Data Transformation (IDT/LDT) concepts and trade-offs
- Proven experience administering CipherTrust Manager (formerly DSM/Vormetric) for: Centralized key lifecycle management, Policy enforcement and Audit and access logging
- Strong engineering experience with Linux (RHEL, SLES), Windows, and AIX in enterprise environments
- Practical knowledge of supported file systems (e.g., ext3/ext4, NTFS, NFS, raw disk encryption scenarios) and their interaction with CTE agents
- Ability to assess kernel compatibility, AES-NI requirements, and host readiness prior to encryption enablement
- Strong understanding of data-at-rest encryption principles, including: Threat models beyond disk theft (privileged user access, data exfiltration), Why file/folder-level encryption is required in addition to disk encryption, Knowledge of AES-256 encryption, hardware acceleration (AES-NI), and performance considerations in high-IO workloads and Experience operating encryption solutions in regulated environments
- Experience deploying and managing CTE agents using automation frameworks (e.g., Ansible) rather than manual installs
- Ability to design repeatable, scalable onboarding patterns for thousands of hosts and large NAS environments
- Familiarity with change management constraints (reboots, maintenance windows, encryption sequencing) in production systems
Desired Qualifications:
- 5+ years of advanced information security architecture, design, or consulting experience
- Strong knowledge of hardware security modules (HSMs) and/or security appliances
- Strong knowledge of certificate ciphers and encryption algorithms.
- Strong knowledge, understanding and prior experiences with regulatory drivers impacting a complex and dynamic global technology environment.
- MS or MBA degree in Business, Finance, Computer Science, Engineering, or related fields
- CISSP or CISM or CISA certifications
- Microsoft Azure and/or Google Cloud certifications
- Practical experience building security solutions through abstraction layer and automation practices.
- Policy development experience
- Experience with the development and execution of strategy in a large enterprise
- Experience creating visually dynamic presentations
Job Expectations:
- Ability to work on-site in one of the listed locations in a hybrid environment
- This position is not available for visa sponsorship
Pay Range
Reflected is the base pay range offered for this position. Pay may vary depending on factors including but not limited to demonstrated examples of prior performance, skills, experience, or work location. Employees may also be eligible for incentive opportunities.
$119,000.00 - $187,000.00
Benefits
Wells Fargo provides eligible employees with a comprehensive set of benefits, many of which are listed below. Visit Benefits - Wells Fargo Jobs for an overview of the following benefit plans and programs offered to employees.
- Health benefits
- 401(k) Plan
- Paid time off
- Disability benefits
- Life insurance, critical illness insurance, and accident insurance
- Parental leave
- Critical caregiving leave
- Discounts and savings
- Commuter benefits
- Tuition reimbursement
- Scholarships for dependent children
- Adoption reimbursement
Posting End Date:
17 Apr 2026
- Job posting may come down early due to volume of applicants.
We Value Equal Opportunity
Wells Fargo is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.
Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit's risk appetite and all risk and compliance program requirements.
Applicants with Disabilities
To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo.
Drug and Alcohol Policy
Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy to learn more.
Wells Fargo Recruitment and Hiring Requirements:
a. Third-Party recordings are prohibited unless authorized by Wells Fargo.
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.
See all 81+ Infrastructure Security Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Infrastructure Security Engineer roles.
Get Access To All JobsTips for Finding Green Card Sponsorship as an Infrastructure Security Engineer
Document your security credentials before applying
PERM requires proof your qualifications match the job requirements exactly. Gather CISSP, CISM, or CCSP certificates, degree transcripts, and employer letters that tie your experience to specific infrastructure security functions like firewall management, SIEM administration, or zero-trust architecture.
Target employers with active PERM filing history
Search DOL PERM disclosure data for infrastructure security job titles at companies you're targeting. Firms that have filed PERM for similar roles before have established internal processes, which shortens your timeline and reduces the risk of a first-time employer abandoning the petition mid-process.
Verify the job description matches EB-2 or EB-3 requirements
EB-2 requires the employer to justify why the role needs an advanced degree or specialized expertise beyond a standard bachelor's. For infrastructure security, roles requiring deep expertise in cloud security architecture or advanced threat modeling typically support EB-2; general network security analyst duties usually align with EB-3.
Use Migrate Mate to find sponsoring employers faster
Searching broadly wastes time on employers who won't sponsor. Migrate Mate filters infrastructure security roles by green card sponsorship history, so every application you send goes to an employer already familiar with the PERM process and willing to cover its costs.
Confirm the prevailing wage tier before accepting an offer
PERM requires your employer to pay the DOL prevailing wage for the role's location and skill level. Use the OFLC Wage Search to check which wage level your duties fall under before negotiating. A mismatch between your offer and the certified wage level will require an amended LCA filing.
Plan around PERM recruitment timelines during offer negotiations
Before USCIS reviews your I-140 petition, your employer must complete a DOL-mandated recruitment process lasting at least 30 days, plus additional advertising steps. Factor six to twelve months for PERM certification into your start date discussions so neither party is surprised by the mandatory waiting period.
Infrastructure Security Engineer jobs are hiring across the US. Find yours.
Find Infrastructure Security Engineer JobsInfrastructure Security Engineer Green Card Sponsorship: Frequently Asked Questions
Does an Infrastructure Security Engineer role qualify for EB-2 or EB-3 sponsorship?
Most infrastructure security roles qualify for EB-3 as skilled professionals requiring a bachelor's degree in computer science, information security, or a closely related field. EB-2 is available when the position genuinely requires an advanced degree or when the employer can demonstrate the role demands a level of specialized knowledge beyond a standard four-year degree. Your employer's attorney will determine the appropriate category based on the actual job duties listed in the PERM application.
How does PERM green card sponsorship differ from H-1B for this role?
The H-1B is a temporary status capped at 85,000 new visas annually, subject to a lottery that denies many qualified candidates regardless of merit. PERM-based EB-2 and EB-3 sponsorship has no annual lottery and leads to permanent residency rather than a renewable temporary status. The tradeoff is time: PERM labor certification alone can take six to twelve months before USCIS even reviews the I-140 petition, making early employer conversations critical for infrastructure security professionals planning long-term U.S. careers.
Where can I find Infrastructure Security Engineer jobs that offer green card sponsorship?
Migrate Mate is built specifically to surface roles where employers have a documented history of green card sponsorship. Rather than filtering thousands of generic job listings, you can search directly for infrastructure security positions at companies that have already filed PERM applications, which signals both sponsorship willingness and the operational capacity to manage the process. This saves significant time compared to asking HR teams whether they sponsor after you've already applied.
What happens to my green card case if I change employers during the process?
If you switch employers after USCIS approves your I-140 petition and your priority date becomes current, you may be able to port your petition to a new employer in a same or similar occupational classification under AC21 portability rules. Changing employers before I-140 approval, or before 180 days in adjustment of status, typically requires the new employer to restart the PERM process from the beginning. Infrastructure security roles generally qualify as same or similar to adjacent cybersecurity and network engineering positions, but your new employer's attorney will need to confirm the occupational match.
What security-specific documentation strengthens a PERM application for this role?
DOL requires the employer to show that the job genuinely requires the stated minimum qualifications and that no minimally qualified U.S. worker was available during the recruitment period. For infrastructure security, detailed technical requirements tied to specific platforms, compliance frameworks like NIST or ISO 27001, or specialized tools like Palo Alto, Splunk, or CrowdStrike make it harder to argue that a generic candidate could fill the role. Your employer's attorney uses O*NET to benchmark the occupation, and your credentials should map clearly to the specific duties listed in the certified job description.
See which Infrastructure Security Engineer employers are hiring and sponsoring visas right now.
Search Infrastructure Security Engineer Jobs