H-1B Visa Cloud Security Engineer Jobs
Cloud Security Engineer roles qualify as H-1B specialty occupations because they require at least a bachelor's degree in computer science, information security, or a related field. Employers file the LCA with DOL and petition USCIS on your behalf. Most active sponsors have recurring H-1B filing history across cloud infrastructure and security teams.
See All Cloud Security Engineer JobsOverview
Showing 5 of 815+ Cloud Security Engineer jobs


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?
See all 815+ Cloud Security Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Cloud Security Engineer roles.
Get Access To All Jobs
INTRODUCTION
Zimperium® is an industry leader in enterprise mobile security, being the first and only company to provide a complete mobile threat defense system that offers real-time, on device world-class protection against both known and unknown next generation of advanced mobile cyberattacks and malware.
Our MTD and award-winning machine learning-based engine protects against device, network, phishing and application attacks for IOS, Android and Windows devices, using a non-intrusive approach to always protect privacy of users.
Position Summary:
We are seeking a highly experienced and self-directed Senior Cloud Security Engineer to join our team. This critical role is responsible for designing, implementing, and maintaining robust security controls across our multi-cloud environment. The ideal candidate will possess deep technical knowledge, a proactive, automation-first mindset, and the ability to operate independently, taking full ownership of security responsibilities in a fast-paced environment.
Location: Dallas, TX preferred
Key Responsibilities:
Multi-Cloud Security Architecture: Design, implement, and manage security best practices and controls for services hosted across AWS, Azure, GCP, and OCI environments.
Infrastructure as Code (IaC) & Automation: Act as the subject matter expert for security automation, leveraging CloudFormation and/or Terraform to deploy secure infrastructure consistently and at scale.
System Hardening: Implement and enforce rigorous security configuration benchmarks, specifically CIS Level 2 and DISA STIGs, across all compute environments, including various flavors of Linux and Kubernetes clusters.
Security Tooling & Operations: Configure, manage, and optimize cloud-native and third-party security tools such as Palo Alto Prisma Cloud, Orca, Google SecOps, and Palo Alto Next Generation Firewalls.
Application & Network Defense: Deploy and manage Web Application Firewalls (WAFs), including F5 and other cloud-native WAF solutions, to protect critical applications.
DevSecOps & Pipeline Security: Integrate security testing tools (SAST, DAST, SCA) into CI/CD pipelines to enable "shift-left" security practices.
Secrets and Key Management: Design and maintain solutions for the secure storage and rotation of credentials, API keys, and secrets using tools like HashiCorp Vault or equivalent cloud-native services.
Risk & Design Review: Conduct threat modeling and perform security reviews for new applications and services to proactively identify and mitigate risks in the design phase.
Incident Response & On-Call: Participate in a rotating on-call schedule to address security incidents and operational issues promptly.
Compliance & Reporting: Support internal and external audits by generating evidence, writing detailed reports, and delivering clear, concise technical presentations to leadership.
Leadership & Mentorship: Operate with minimal oversight, taking the initiative to identify and suggest security improvements and drive projects to completion.
Required Qualifications & Experience:
-
8+ years of progressive experience in IT, with at least 5 years dedicated to Cloud Security Engineering in a multi-cloud environment.
-
Expert-level proficiency in Infrastructure as Code (IaC) for security automation using Terraform and/or CloudFormation.
-
Deep practical experience securing at least three of the following major cloud providers: AWS, Azure, GCP, and OCI.
-
Proven expertise in system hardening using industry standards like CIS Level 2 and DISA STIGs.
-
Extensive experience with Linux administration and securing containerization technologies, specifically Kubernetes.
-
Hands-on experience with advanced security platforms, including at least two of the following: Palo Alto Prisma Cloud, Orca, Google SecOps, and Palo Alto Next Generation Firewalls.
-
Demonstrated experience with WAF solutions, such as F5 or equivalent cloud-native services.
-
Strong working knowledge of DevSecOps principles, including integrating security tools into CI/CD pipelines.
-
Proven experience with Secret Management solutions (e.g., HashiCorp Vault, AWS Secrets Manager).
-
Excellent written and verbal communication skills, including the ability to write executive-level reports and deliver technical presentations.
-
Proven ability to operate independently and take ownership of critical responsibilities.
Preferred Requirements:
-
Experience working within highly regulated environments, such as FedRAMP, DoD, or similar government/financial sectors.
-
Demonstrated experience with implementing and maintaining controls for security frameworks such as ISO 27001 and SOC 2.
-
Experience conducting formal threat modeling and risk analysis.
-
Experience gained from both a large enterprise environment (for process and scale) and a fast-paced startup/tech company (for agility and innovation).
-
Relevant industry certifications (e.g., CISSP, CCSP, AWS/Azure/GCP Security Specializations).
Zimperium® is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex including sexual orientation and gender identity, national origin, disability, protected veteran status, or any other characteristic protected by applicable federal, state, or local law.
See all 815+ Cloud Security Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Cloud Security Engineer roles.
Get Access To All JobsTips for Finding H-1B Visa Sponsorship as a Cloud Security Engineer
Align your certifications with LCA job codes
Cloud Security Engineer roles are filed under specific SOC codes that determine your prevailing wage level. Holding certifications like CCSP, AWS Security Specialty, or CISSP signals the specialized knowledge USCIS expects for a Level 3 or Level 4 wage classification.
Search LCA filings by security job title
Use the OFLC Wage Search to filter H-1B Labor Condition Applications by job title and location. Employers who filed LCAs for Cloud Security Engineer or Information Security Engineer roles in the past two years are your most actionable targets.
Target employers with cloud-native security teams
Financial services, healthcare SaaS, and defense contractors regularly sponsor H-1B holders for cloud security roles due to compliance mandates like FedRAMP and HIPAA. These industries file year-round, not just during cap season, because many qualify as cap-exempt research organizations or government contractors.
Use Migrate Mate to find verified H-1B sponsors
Filter by Cloud Security Engineer roles on Migrate Mate to see employers with confirmed DOL LCA filing history. This cuts out the guesswork of cold-applying to companies that have never sponsored the H-1B before.
Clarify specialty occupation documentation early
Cloud Security Engineer roles occasionally receive USCIS Requests for Evidence questioning whether the position requires a degree in a specific field rather than any bachelor's degree. Work with your employer's counsel to document that the role requires security-specific coursework, not just general IT knowledge.
Confirm premium processing availability before accepting
If your current OPT or other status expires before standard USCIS adjudication concludes, ask the employer whether they'll file Form I-907 for premium processing. A 15-business-day adjudication window can be the difference between starting on time and losing your offer.
Cloud Security Engineer jobs are hiring across the US. Find yours.
Find Cloud Security Engineer JobsCloud Security Engineer H-1B Visa: Frequently Asked Questions
Does a Cloud Security Engineer role qualify as an H-1B specialty occupation?
Yes. Cloud Security Engineer positions require a bachelor's degree or higher in computer science, cybersecurity, information systems, or a closely related field, which satisfies the USCIS specialty occupation standard. Roles involving cloud architecture, security engineering, or compliance frameworks like FedRAMP consistently meet this requirement. If the job description lists only general IT experience as sufficient, the employer's counsel should tighten the language before filing.
Which employers sponsor H-1B visas for Cloud Security Engineer roles?
Employers with active cloud infrastructure, financial services compliance teams, healthcare technology platforms, and federal contractors are the most consistent H-1B sponsors for this role. You can verify filing history by searching DOL LCA disclosure data or browsing Cloud Security Engineer positions on Migrate Mate, which filters listings by employers with confirmed H-1B sponsorship records.
What SOC code does USCIS use for Cloud Security Engineer petitions?
Most Cloud Security Engineer petitions are filed under SOC 15-1212 (Information Security Analysts) or 15-1299 (Computer Occupations, All Other), depending on how the employer frames the role. The SOC code drives the prevailing wage level, so the choice affects your minimum salary. You can verify wage levels for each code by location using the OFLC Wage Search before negotiating your offer.
Can a Cloud Security Engineer role receive an H-1B RFE?
Requests for Evidence are more common when the job description is broadly written or when the employer is a staffing firm placing you at a client site. USCIS may question whether the position genuinely requires a degree in a specific security-related field. Detailed documentation of the role's technical requirements, the employer's internal org structure, and the applicant's relevant degree significantly reduces RFE risk.
What happens to H-1B status if a Cloud Security Engineer is laid off?
H-1B holders have a 60-day grace period after an involuntary job loss to find a new sponsor, file a change of status, or depart the United States. A new employer can file an H-1B transfer petition during this window, and you can begin working as soon as USCIS receives the petition. Starting your job search immediately is critical since the 60-day clock doesn't pause during processing.
See which Cloud Security Engineer employers are hiring and sponsoring visas right now.
Search Cloud Security Engineer Jobs