H-1B Visa Security And Compliance Jobs
Security and compliance roles qualify as H-1B visa specialty occupations when they require a bachelor's degree or higher in information security, computer science, or a related field. Employers in financial services, healthcare, and tech regularly file LCAs for these positions, making them a reliable category for H-1B sponsorship.
Find H-1B Visa Security And Compliance JobsOverview
Showing 5 of 26+ Security And Compliance jobs










See all Security And Compliance Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Security And Compliance roles.
Get Access To All Jobs
INTRODUCTION
Vestwell is the financial technology company powering the new savings economy. Our platform redefines how people save for the critical aspects of life across retirement, education, and healthcare savings needs. Today, Vestwell enables over 350,000 businesses and over 2M active savers, with over $50B in assets saved across all 50 states. Vestwell's platform serves a diverse clientele, including financial advisers, employers, third-party administrators, financial institutions, payroll providers, government agencies, and individual savers.
ABOUT THE ROLE
The Vestwell Corporate Information Technology team is looking for an experienced, meticulous and detail-oriented Information Security compliance analyst to be responsible for monitoring the compliance systems in our rapidly scaling organization. The compliance analyst's responsibilities include reviewing our SOC controls and comparing them to actions today, coming up with new automations to confirm compliance, responding to RFPs, and building a library of knowledge to speed up the RFP response program. You will work cross-functionally with teams such as Security and Engineering to identify and correct any flaws in our Compliance systems as well as Legal and Compliance to advise on best practices and policies. You should have a sound working knowledge of compliance, including audits and RFPs. You should be detail oriented with strong analytical skills and have good communication, interpersonal, and leadership skills.
YOUR ROLE AND RESPONSIBILITIES
- Manage cybersecurity risk processes, including risk registers, findings, vulnerabilities, remediation plans, ownership, escalation, and business acceptance within the Vestwell Governance, Risk and Compliance (GRC) solution.
- Manage cybersecurity compliance obligations across regulatory, contractual, and customer requirements, including NIST, ISO and SOC 1&2, and other applicable cybersecurity standards and frameworks.
- Coordinate cybersecurity audits, assessments, evidence requests, customer reviews, and remediation tracking in partnership with Legal, Compliance, IT, and business leaders.
- Support customer, vendor, supplier, and subcontractor cybersecurity risk management, including questionnaires, contract reviews, security expectations, and customer-facing services.
BASIC QUALIFICATIONS
The Necessities
- Experience with SOC, ISO, and other audits
- Experience responding to RFPs
- Experience working cross-teams to implement new compliance processes
- Vendor management, review experience
The Extras
- Familiarity with software such as:
+ Crowdstrike
+ Vanta
+ Responsive
- Led an audit response
LOCATION
This role will be based in our New York City or Austin office, and will be part of Vestwell's hybrid in-office operation.
COMPENSATION
- Salary Range: $90K - $105K base
This position is eligible to participate in the Company Bonus Pool and is eligible to receive new hire equity in the Company. Please note that salary bands are based on NY and other similar metro areas and may differ based on where the role is ultimately hired.
EMPLOYEE BENEFITS
We’re an innovative, high-growth company with an exciting future ahead. At Vestwell, we prioritize employee wellbeing through comprehensive health benefits, generous time off, and a dedicated Employee Wellbeing Committee. Our hybrid work model offers flexibility while providing access to our collaborative offices in Midtown Manhattan, Austin, King of Prussia, and Scottsdale. And, of course, as a company focused on helping people save for the future, we offer a competitive 401(k) plan.
INTERVIEW PROCESS
Our interview process starts the same for every candidate with 1-2 introductory conversations to learn more about your background, interests, and what you're looking for, while also giving you the opportunity to learn more about Vestwell and the team. From there, the process varies by role but typically includes a skills or experience-based assessment, such as a coding interview, portfolio review, or deeper discussion of your relevant experience. Successful candidates then move on to a virtual or in-person interview panel. Before extending an offer, we complete a reference check with a current or former manager and a peer. Throughout the process, we prioritize transparency, clear communication, and minimizing surprises. For your awareness you will only receive correspondence from recruiting@vestwell.com; any other domain not ending in vestwell.com is not our Recruitment team.
Vestwell’s Privacy Policy.
Attention California residents: In the course of conducting our business and complying with federal, state, and local government regulations governing such matters as employment, tax, insurance, etc., we must collect Personal Information from you. Should you accept employment with Vestwell you may view our California Privacy Rights Act here: Vestwell’s California Privacy Rights Policy.
See all H-1B Visa Security And Compliance Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new H-1B Visa Security And Compliance Jobs.
Get Access To All JobsTips for Finding H-1B Visa Sponsorship in Security And Compliance
Align your credentials to SOC codes
Security and compliance roles span multiple Standard Occupational Classification codes. Check O*NET to confirm which SOC code matches your duties, this determines the prevailing wage level USCIS and DOL will apply to your petition.
Target regulated-industry employers first
Financial services firms, healthcare networks, and federal contractors face mandatory compliance obligations, which drives consistent H-1B demand for security roles. These employers sponsor more reliably than general tech companies where compliance headcount fluctuates with budget cycles.
Verify LCA wage levels before accepting offers
Run your job title and location through the OFLC Wage Search before negotiating. Employers must certify the offered wage meets the prevailing wage for your role's Level I through Level IV designation, a mismatch is a common RFE trigger.
Search verified H-1B sponsors on Migrate Mate
Filter by security and compliance job titles on Migrate Mate to see which employers have active LCA filing history for these roles. This lets you focus applications on companies with a documented pattern of sponsoring your specific occupation.
Obtain relevant certifications before your petition
CISSP, CISM, or CISA credentials strengthen the specialty occupation argument in your I-129 petition. USCIS adjudicators scrutinize whether the role genuinely requires a degree, industry certifications tied to your degree field reinforce that connection.
Clarify cap-exempt status if your employer qualifies
Universities, nonprofit research organizations, and government-affiliated entities are cap-exempt, meaning your H-1B petition can be filed any time without entering the lottery. Security and compliance roles at these institutions skip the annual April registration window entirely.
H-1B Visa Security And Compliance: Frequently Asked Questions
Do security and compliance roles qualify as H-1B specialty occupations?
Yes, provided the position requires at least a bachelor's degree in a directly related field such as information security, computer science, cybersecurity, or a related discipline. Roles that accept any degree regardless of field, or that treat the degree as a preference rather than a requirement, can face specialty occupation challenges during USCIS adjudication. Job descriptions that specify a relevant field of study are stronger candidates.
Which industries sponsor H-1B visas most consistently for security and compliance professionals?
Financial services, healthcare, federal contracting, and enterprise software companies file LCAs for these roles most consistently because they operate under regulatory frameworks like SOX, HIPAA, and FedRAMP that create standing demand for compliance headcount. You can browse employers with verified H-1B LCA filing history for security and compliance positions on Migrate Mate.
How does the H-1B prevailing wage requirement apply to compliance analyst roles?
DOL assigns your role a wage level from I to IV based on experience, supervision, and complexity. A compliance analyst performing routine tasks under close supervision typically falls at Level I or II, while a senior security architect setting policy independently lands at Level III or IV. Your employer certifies the offered salary meets that level in the LCA, an offer below the certified wage level is grounds for a USCIS denial.
Can a security and compliance professional change employers mid-H-1B without losing status?
Yes, through H-1B portability. If you've been in valid H-1B status, the new employer files an H-1B transfer petition before your last day with your current employer, and you can start the new role once the petition is received by USCIS, you don't need to wait for approval. The new employer must file a fresh LCA and I-129 reflecting the new role's duties and wage level.
Does holding a CISSP or CISM certification help with an H-1B petition for a security role?
It strengthens the petition but doesn't replace the degree requirement. USCIS evaluates whether the role requires a specific academic degree, not just professional certifications. A CISSP or CISM credential tied to a bachelor's in information security or computer science supports the specialty occupation argument by demonstrating the technical depth of the position, particularly when the job description is broadly written.