Green Card Infrastructure Security Engineer Jobs
Infrastructure Security Engineer roles qualify for green card sponsorship under EB-2 and EB-3 when the position requires a bachelor's degree or higher in computer science, information security, or a related field. Employers file a PERM labor certification with DOL before petitioning USCIS, permanently sponsoring you rather than extending a temporary status.
Find Green Card Infrastructure Security Engineer JobsOverview
Showing 5 of 66+ Infrastructure Security Engineer jobs










See all 66+ Infrastructure Security Engineer Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Infrastructure Security Engineer roles.
Get Access To All Jobs
Company Overview
KLA is a global leader in diversified electronics for the semiconductor manufacturing ecosystem. Virtually every electronic device in the world is produced using our technologies. No laptop, smartphone, wearable device, voice-controlled gadget, flexible screen, VR device or smart car would have made it into your hands without us. KLA invents systems and solutions for the manufacturing of wafers and reticles, integrated circuits, packaging, printed circuit boards and flat panel displays. The innovative ideas and devices that are advancing humanity all begin with inspiration, research and development. KLA focuses more than average on innovation and we invest 15% of sales back into R&D. Our expert teams of physicists, engineers, data scientists and problem-solvers work together with the world’s leading technology providers to accelerate the delivery of tomorrow’s electronic devices. Life here is exciting and our teams thrive on tackling really hard problems. There is never a dull moment with us.
Group/Division
The Information Technology (IT) group at KLA is involved in every aspect of the global business. IT’s mission is to enable business growth and productivity by connecting people, process, and technology. It focuses not only on enhancing the technology that enables our business to thrive but also on how employees use and are empowered by technology. This integrated approach to customer service, creativity and technological excellence enables employee productivity, business analytics, and process excellence.
Job Description/Preferred Qualifications
The position of Microsoft 365 Infrastructure & Security Management is responsible for the strategic direction, operational excellence, security posture, and lifecycle management of the organization's Microsoft 365 ecosystem. This role leads the administration, engineering, governance, security, and continuous improvement of Microsoft 365 services with deep skills in Exchange Online. The individual will be accountable for ensuring a secure, highly available, scalable, and compliant Microsoft 365 environment while driving enterprise email security initiatives through Proofpoint, Microsoft Defender, anti-phishing programs, threat prevention, and tenant governance. This role works closely with Cybersecurity, Infrastructure Operations, Enterprise Architecture, Compliance, Risk Management, and business stakeholders to deliver secure modern workplace services for a global enterprise.
Microsoft 365 Infrastructure Platform Leadership
- Own the strategy, roadmap, architecture, and operations of the Microsoft 365 platform.
- Lead Microsoft 365 tenant administration and governance.
- Ensure platform availability, performance, scalability, and reliability.
- Define operational standards, policies, and best practices for Microsoft 365 services.
- Manage service lifecycle planning, upgrades, feature adoption, and platform optimization.
- Develop and maintain M365 governance and operating models.
Exchange Online Administration & Messaging Services
- Lead global administration of Microsoft Exchange Online.
- Manage email routing, mail flow, connectors, transport rules, and SMTP infrastructure.
- Oversee mailbox provisioning, migrations, retention, archiving, and lifecycle management.
- Manage hybrid Exchange environments when applicable.
- Ensure email platform health, performance, uptime, and service availability.
- Troubleshoot complex messaging issues and coordinate escalations with Microsoft support.
- Establish standards for email security, compliance, and operational governance.
Email Security & Anti-Phishing Program
- Own enterprise email security strategy and operations.
- Lead phishing prevention, business email compromise (BEC) protection, and email threat management initiatives.
- Drive troubleshooting, implementation and optimization of:
- Proofpoint Email Security
- Microsoft Defender for Office 365
- Advanced Threat Protection (ATP)
- Anti-phishing policies
- Safe Links
- Safe Attachments
- Impersonation protection
- Monitor and respond to email-based threats.
- Partner with Cybersecurity teams to investigate phishing incidents and threat campaigns.
Email Security Administration
- Serve as technical owner for the email security platform.
- Manage:
- Secure Email Gateway (SEG)
- TAP (Targeted Attack Protection)
- Email DLP
- Threat Intelligence
- Phishing Protection
- URL Defense
- Email Encryption
- Optimize email filtering to reduce false positives and false negatives.
- Implement email authentication standards including:
- SPF
- DKIM
- DMARC
- Domain Protection
- Create executive reporting on email threat trends and security metrics.
Microsoft 365 Security & Compliance
- Partner with Cybersecurity teams to strengthen M365 security posture.
- Manage Microsoft security controls including:
- Microsoft Defender for Office 365
- Microsoft Defender XDR
- Microsoft Purview
- Conditional Access
- Data Loss Prevention (DLP)
- Information Protection
- Insider Risk Management
- Lead security assessments and remediation efforts.
- Ensure compliance with regulatory and corporate security requirements.
- Implement Zero Trust security principles across Microsoft 365 services.
Tenant Administration & Identity Services
- Administer Microsoft 365 tenant services and configurations.
- Partner with Identity teams supporting:
- Microsoft Entra ID
- Single Sign-On (SSO)
- Federation Services
- Multifactor Authentication (MFA)
- Conditional Access
- Identity Governance
- Manage tenant security baselines and configuration standards.
- Maintain tenant health, security reviews, and governance processes.
Infrastructure & Endpoint Integration
- Oversee integration between Microsoft 365 and enterprise infrastructure services.
- Support:
- Microsoft Intune
- Endpoint Management
- Device Compliance
- Azure Services
- Enterprise Authentication Platforms
- Collaborate with Infrastructure Operations to ensure service resiliency and business continuity.
Operations & Service Management
- Lead day-to-day service operations for the Microsoft 365 environment.
- Establish KPIs, SLAs, operational dashboards, and service reporting.
- Drive incident, problem, change, and capacity management processes.
- Manage vendor relationships including Microsoft and Proofpoint.
- Develop automation strategies for platform administration and support activities.
- Ensure alignment with ITIL and ServiceNow processes.
Risk Management & Governance
- Develop governance controls for Microsoft 365 services.
- Conduct platform risk assessments and remediation planning.
- Support security audits, compliance reviews, and regulatory requirements.
- Maintain disaster recovery and business continuity plans.
- Drive continuous service improvement initiatives.
Minimum Qualifications
Doctorate (Academic) Degree and related work experience of 3 years; Master's Level Degree and related work experience of 6 years; Bachelor's Level Degree and related work experience of 8 years
Base Pay Range: $111,100.00 - $188,900.00 Annually
Primary Location: USA-MI-Ann Arbor-KLA
KLA’s total rewards package for employees may also include participation in performance incentive programs and eligibility for additional benefits including but not limited to: medical, dental, vision, life, and other voluntary benefits, 401(K) including company matching, employee stock purchase program (ESPP), student debt assistance, tuition reimbursement program, development and career growth opportunities and programs, financial planning benefits, wellness benefits including an employee assistance program (EAP), paid time off and paid company holidays, and family care and bonding leave. Interns are eligible for some of the benefits listed. Our pay ranges are determined by role, level, and location. The range displayed reflects the pay for this position in the primary location identified in this posting. Actual pay depends on several factors, including state minimum pay wage rates, location, job-related skills, experience, and relevant education level or training. We are committed to complying with all applicable federal and state minimum wage requirements where applicable. If applicable, your recruiter can share more about the specific pay range for your preferred location during the hiring process.
KLA is proud to be an Equal Opportunity Employer. We will ensure that qualified individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us at talent.acquisition@kla.com or at +1-408-352-2808 to request accommodation. Be aware of potentially fraudulent job postings or suspicious recruiting activity by persons that are currently posing as KLA employees. KLA never asks for any financial compensation to be considered for an interview, to become an employee, or for equipment. Further, KLA does not work with any recruiters or third parties who charge such fees either directly or on behalf of KLA. Please ensure that you have searched KLA’s Careers website for legitimate job postings. KLA follows a recruiting process that involves multiple interviews in person or on video conferencing with our hiring managers. If you are concerned that a communication, an interview, an offer of employment, or that an employee is not legitimate, please send an email to talent.acquisition@kla.com to confirm the person you are communicating with is an employee. We take your privacy very seriously and confidentially handle your information.
See all 66+ Green Card Infrastructure Security Engineer Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Green Card Infrastructure Security Engineer Jobs.
Get Access To All JobsTips for Finding Green Card Sponsorship as an Infrastructure Security Engineer
Document your security credentials before applying
PERM requires proof your qualifications match the job requirements exactly. Gather CISSP, CISM, or CCSP certificates, degree transcripts, and employer letters that tie your experience to specific infrastructure security functions like firewall management, SIEM administration, or zero-trust architecture.
Target employers with active PERM filing history
Search DOL PERM disclosure data for infrastructure security job titles at companies you're targeting. Firms that have filed PERM for similar roles before have established internal processes, which shortens your timeline and reduces the risk of a first-time employer abandoning the petition mid-process.
Verify the job description matches EB-2 or EB-3 requirements
EB-2 requires the employer to justify why the role needs an advanced degree or specialized expertise beyond a standard bachelor's. For infrastructure security, roles requiring deep expertise in cloud security architecture or advanced threat modeling typically support EB-2; general network security analyst duties usually align with EB-3.
Use Migrate Mate to find sponsoring employers faster
Searching broadly wastes time on employers who won't sponsor. Migrate Mate filters infrastructure security roles by green card sponsorship history, so every application you send goes to an employer already familiar with the PERM process and willing to cover its costs.
Confirm the prevailing wage tier before accepting an offer
PERM requires your employer to pay the DOL prevailing wage for the role's location and skill level. Use the OFLC Wage Search to check which wage level your duties fall under before negotiating. A mismatch between your offer and the certified wage level will require an amended LCA filing.
Plan around PERM recruitment timelines during offer negotiations
Before USCIS reviews your I-140 petition, your employer must complete a DOL-mandated recruitment process lasting at least 30 days, plus additional advertising steps. Factor six to twelve months for PERM certification into your start date discussions so neither party is surprised by the mandatory waiting period.
Green Card Infrastructure Security Engineer: Frequently Asked Questions
Does an Infrastructure Security Engineer role qualify for EB-2 or EB-3 sponsorship?
Most infrastructure security roles qualify for EB-3 as skilled professionals requiring a bachelor's degree in computer science, information security, or a closely related field. EB-2 is available when the position genuinely requires an advanced degree or when the employer can demonstrate the role demands a level of specialized knowledge beyond a standard four-year degree. Your employer's attorney will determine the appropriate category based on the actual job duties listed in the PERM application.
How does PERM green card sponsorship differ from H-1B for this role?
The H-1B visa is a temporary status capped at 85,000 new visas annually, subject to a lottery that denies many qualified candidates regardless of merit. PERM-based EB-2 and EB-3 sponsorship has no annual lottery and leads to permanent residency rather than a renewable temporary status. The tradeoff is time: PERM labor certification alone can take six to twelve months before USCIS even reviews the I-140 petition, making early employer conversations critical for infrastructure security professionals planning long-term U.S. careers.
Where can I find Infrastructure Security Engineer jobs that offer green card sponsorship?
Migrate Mate is built specifically to surface roles where employers have a documented history of green card sponsorship. Rather than filtering thousands of generic job listings, you can search directly for infrastructure security positions at companies that have already filed PERM applications, which signals both sponsorship willingness and the operational capacity to manage the process. This saves significant time compared to asking HR teams whether they sponsor after you've already applied.
What happens to my green card case if I change employers during the process?
If you switch employers after USCIS approves your I-140 petition and your priority date becomes current, you may be able to port your petition to a new employer in a same or similar occupational classification under AC21 portability rules. Changing employers before I-140 approval, or before 180 days in adjustment of status, typically requires the new employer to restart the PERM process from the beginning. Infrastructure security roles generally qualify as same or similar to adjacent cybersecurity and network engineering positions, but your new employer's attorney will need to confirm the occupational match.
What security-specific documentation strengthens a PERM application for this role?
DOL requires the employer to show that the job genuinely requires the stated minimum qualifications and that no minimally qualified U.S. worker was available during the recruitment period. For infrastructure security, detailed technical requirements tied to specific platforms, compliance frameworks like NIST or ISO 27001, or specialized tools like Palo Alto, Splunk, or CrowdStrike make it harder to argue that a generic candidate could fill the role. Your employer's attorney uses O*NET to benchmark the occupation, and your credentials should map clearly to the specific duties listed in the certified job description.