H-1B Visa Identity And Access Management Iam Jobs
Identity and Access Management (IAM) roles sit squarely in USCIS's specialty occupation category, requiring a bachelor's degree or higher in computer science, information security, or a related field. Enterprises managing cloud infrastructure, compliance mandates, and zero-trust architectures actively file H-1B visa petitions for IAM engineers, architects, and analysts year-round.
Find H-1B Visa Identity And Access Management Iam JobsOverview
Showing 5 of 11+ Identity And Access Management Iam jobs










See all Identity And Access Management Iam Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Identity And Access Management Iam roles.
Get Access To All Jobs
Do you want your voice heard and your actions to count?
Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world’s leading financial groups. Across the globe, we’re 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.
With a vision to be the world’s most trusted financial group, it’s part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.
Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.
The selected colleague will work at an MUFG office or client sites four days per week and work remotely one day. A member of our recruitment team will provide more details.
Job Summary:
The Identity and Access Management (IAM) Linux Engineering role supports MUFG Bank’s governance, safety, and soundness objectives by maintaining secure, compliant Linux access controls. This engineering position helps ensure IAM Linux capabilities align with regulatory requirements, industry standards, internal policies, and established risk tolerances.
The ideal candidate has strong Linux engineering experience, can operate at an AVP level, and is interested in broadening their IAM skillset across Identity Governance and Administration (IGA), Microsoft Entra ID, and privileged access technologies. This role requires close collaboration with global security, business, and technology teams.
Responsibilities:
- Implement and maintain Centrify least-privilege access controls and role-based access models
- Automate operational and control processes using scripting
- Enforce IAM policies across Linux, Active Directory, and cloud-integrated environments
- Support Centrify upgrades, patching, troubleshooting, and disaster recovery activities
- Resolve escalations related to Active Directory bridging and Linux authentication issues
- Maintain clear documentation for Centrify processes, procedures, and operating standards
- Support audits and compliance reviews by providing accurate evidence and documentation
Required Skills:
- 5+ years of Linux system administration or engineering experience, including Name Service Switch (NSS), Pluggable Authentication Modules (PAM), and SUDO policy management
- 5+ years supporting Active Directory or cloud bridging solutions such as Centrify or CyberArk Endpoint Privilege Manager (EPM)
- 5+ years automating tasks with PowerShell, Python, Bash, or similar scripting languages
- Self-motivated and able to take ownership of assigned work, independently drive tasks to completion, identify gaps or risks, and proactively learn new Identity and Access Management (IAM) technologies with limited day-to-day direction
Desired Skills:
- Experience with Privileged Access Management (PAM) platforms such as CyberArk, CA ePAM, or similar tools
- Experience with Active Directory authentication, Kerberos, LDAP, and related security protocols
- Knowledge of IAM and PAM industry standards and best practices
- Experience integrating with cloud service providers such as AWS, Microsoft Azure, or Google Cloud Platform
- Experience managing Microsoft Entra ID capabilities such as Single Sign-On (SSO), Conditional Access, and Access Packages
- Experience operating in a financial services company
- Excellent verbal and written communication skills
Education:
Bachelor’s degree in a related field or equivalent work experience
The typical base pay range for this role is as follows:
- New York / New Jersey: $134k - $168k
- Non-New York / New Jersey: $126k - $150k
depending on job-related knowledge, skills, experience, and location. This role may also be eligible for certain discretionary performance-based bonus and/or incentive compensation. Additionally, our Total Rewards program provides colleagues with a competitive benefits package (in accordance with the eligibility requirements and respective terms of each) that includes comprehensive health and wellness benefits, retirement plans, educational assistance and training programs, income replacement for qualified employees with disabilities, paid maternity and parental bonding leave, and paid vacation, sick days, and holidays.
We will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws (including (i) the San Francisco Fair Chance Ordinance, (ii) the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance, (iii) the Los Angeles County Fair Chance Ordinance, and (iv) the California Fair Chance Act) to the extent that (a) an applicant is not subject to a statutory disqualification pursuant to Section 3(a)(39) of the Securities and Exchange Act of 1934 or Section 8a(2) or 8a(3) of the Commodity Exchange Act, and (b) they do not conflict with the background screening requirements of the Financial Industry Regulatory Authority (FINRA) and the National Futures Association (NFA). The major responsibilities listed above are the material job duties of this role for which the Company reasonably believes that criminal history may have a direct, adverse and negative relationship potentially resulting in the withdrawal of conditional offer of employment, if any.
The above statements are intended to describe the general nature and level of work being performed. They are not intended to be construed as an exhaustive list of all responsibilities duties and skills required of personnel so classified.
We are proud to be an Equal Opportunity Employer and committed to leveraging the diverse backgrounds, perspectives and experience of our workforce to create opportunities for our colleagues and our business. We do not discriminate on the basis of race, color, national origin, religion, gender expression, gender identity, sex, age, ancestry, marital status, protected veteran and military status, disability, medical condition, sexual orientation, genetic information, or any other status of an individual or that individual’s associates or relatives that is protected under applicable federal, state, or local law.
See all H-1B Visa Identity And Access Management Iam Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new H-1B Visa Identity And Access Management Iam Jobs.
Get Access To All JobsTips for Finding H-1B Visa Sponsorship in Identity And Access Management Iam
Align your credentials to SOC codes
IAM roles map to multiple SOC codes depending on seniority. Pull the O*NET profile for your target title to confirm the exact degree requirements USCIS expects, then make sure your resume and credentials match that framing before applying.
Target employers with compliance-driven IAM teams
Financial institutions, healthcare systems, and federal contractors face HIPAA, SOX, and FedRAMP mandates that require dedicated IAM headcount. These employers file H-1B petitions more consistently because IAM isn't discretionary for them.
Search verified H-1B sponsors on Migrate Mate
Filter by IAM-related job titles to see which employers have active DOL Labor Condition Application filings for your role type. This confirms real sponsorship history before you invest time in the application process.
Verify prevailing wage before negotiating your offer
Your employer's LCA must certify a wage at or above the DOL prevailing wage for your role and location. Run the OFLC Wage Search for your SOC code and metro area so you enter salary discussions knowing the legal floor.
Document tool-specific certifications for the H-1B petition
Certifications in platforms like Okta, CyberArk, SailPoint, or Microsoft Entra ID strengthen the specialty occupation argument in your I-129 petition. Gather these credentials before your employer's attorney drafts the support letter.
Clarify cap-exempt status if changing employers mid-year
If you're transferring to a university, nonprofit research organization, or government-affiliated entity, your new employer may be cap-exempt. This means they can file your H-1B transfer at any point in the year without waiting for the April lottery window.
H-1B Visa Identity And Access Management Iam: Frequently Asked Questions
Does an IAM role qualify as a specialty occupation for H-1B purposes?
Yes. IAM positions require theoretical and practical application of highly specialized knowledge in information security, identity governance, or directory services, and a bachelor's degree or higher in a directly related field. USCIS consistently classifies these roles as specialty occupations. Your employer's petition should include a detailed position description tying IAM duties to the degree requirement to reduce the risk of a Request for Evidence.
Which types of employers sponsor H-1B visas most consistently for IAM roles?
Employers with heavy regulatory exposure file the most H-1B petitions for IAM talent. That includes large banks, healthcare networks, defense contractors, cloud service providers, and managed security service providers. These organizations need IAM engineers to maintain continuous compliance, so headcount isn't easily cut. You can search employers with verified H-1B LCA filing history for IAM titles directly on Migrate Mate.
Can I work in IAM on OPT while waiting for my H-1B to be approved?
Yes, provided your OPT employment authorization is still valid and your role qualifies under your degree field. If you're on STEM OPT and your employer is E-Verify enrolled, you get a 24-month extension, giving you up to three years of post-graduation work authorization to bridge multiple H-1B lottery cycles. Confirm your employer's E-Verify enrollment status before accepting the offer.
What happens to my H-1B status if my IAM role changes significantly after approval?
A material change in job duties, location, or employer may require an amended H-1B petition. If your role shifts from hands-on IAM engineering to a primarily managerial function, or if you're redeployed to a new worksite outside the metro area covered by the original LCA, your employer must file an amendment with USCIS before the change takes effect. Unreported material changes create compliance risk for both you and your employer.
How does H-1B portability work if I want to move to a different IAM employer?
Under AC21, you can transfer your H-1B to a new employer and begin working immediately once the new I-129 petition is filed, provided your current H-1B has been approved for at least 180 days. The new role must be in the same or a similar occupational classification. IAM transfers generally satisfy this requirement as long as the core identity and access duties remain consistent across both positions.