H-1B Visa Security Architect Jobs
Security Architect roles qualify as H-1B visa specialty occupations because they require at least a bachelor's degree in computer science, information security, or a related field. Employers filing H-1B petitions for this role must certify a prevailing wage through the DOL before USCIS adjudicates the petition.
Find H-1B Visa Security Architect JobsOverview
Showing 5 of 282+ Security Architect jobs










See all 282+ Security Architect Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Security Architect roles.
Get Access To All Jobs
INTRODUCTION
The Data Security Architect role presents a foundational opportunity to establish and lead IQVIA’s Data Security Architecture practice. As a data-driven global life sciences company, IQVIA manages one of the world’s most complex and sensitive healthcare data estates — spanning clinical research, real-world evidence, commercial analytics, and patient-level health information across dozens of markets worldwide.
IQVIA’s data environment reflects the scale and complexity of a global enterprise with a significant M&A history: a hybrid estate encompassing on-premises data centers, multi-cloud infrastructure, modern analytical platforms, and a broad portfolio of operational and data movement technologies. Sensitive data — including PHI, PII, pharmaceutical client intellectual property, and clinical trial data — is distributed across this estate and must be protected consistently, at scale, and in alignment with a growing set of global regulatory requirements.
The Data Security Architect will define how IQVIA discovers, classifies, governs, and protects its data assets across the enterprise — building the architecture, standards, and program foundations that underpin regulatory compliance, vendor governance, and AI security as IQVIA advances its data platform strategy.
This role sits within the global Information Security organization and operates in close partnership with the Data Office, Cloud Security, Application Security, IAM, Legal, Privacy, and Compliance. It carries direct engagement with senior data platform and business stakeholders across IQVIA’s global business units.
Principal Responsibilities
- Define and own IQVIA’s Data Security Architecture strategy, establishing a formal program from the ground up that is aligned to IQVIA’s hybrid, multi-cloud, and post-M&A data environment and the Data Office’s strategic platform direction.
- Lead the evaluation, selection, and implementation of a Data Security Posture Management (DSPM) platform, encompassing sensitive data discovery, classification, exposure analysis, access risk assessment, and continuous posture monitoring across on-premises and cloud-hosted data environments.
- Develop and maintain a comprehensive data security architecture covering data classification frameworks, data access governance, encryption standards, tokenization, masking, and data loss prevention controls across structured and unstructured data at scale.
- Partner closely with the Data Office to align data security architecture with enterprise data governance and platform strategy, ensuring security controls are embedded in data lifecycle management across analytical, operational, and AI workloads.
- Define security architecture standards and guardrails for IQVIA’s strategic data platforms, including cloud-native analytical environments (Snowflake, Databricks), data movement and transformation tooling, and operational database platforms, ensuring consistent security posture across a diverse and evolving estate.
- Provide data security architecture input and oversight for platform migrations, legacy system decommissions, and M&A integration programs — assessing inherited data estates for sensitive data exposure, access control gaps, and regulatory risk, and defining remediation roadmaps aligned to integration timelines.
- Define IQVIA’s data security approach for AI and LLM-integrated platforms, establishing policy and technical controls governing the safe use of AI capabilities embedded in or connected to data platforms, including controls around data inputs, model outputs, and prevention of regulated data exposure in AI workflows.
- Architect data security controls for advanced analytics and AI/ML pipelines, including protection of training datasets, model pipeline integrity, RAG data source governance, and controls preventing unauthorized use of sensitive data in AI-connected systems.
- Develop and govern IQVIA’s enterprise data classification taxonomy and policy framework, working with Legal, Privacy, Compliance, and business data owners to define classification tiers, handling requirements, and technical enforcement mechanisms across business units and regions.
- Establish data access governance principles across IQVIA’s data platforms, including least-privilege access models, periodic entitlement reviews, and integration with IAM and PAM controls at the data tier.
- Define encryption and key management architecture for data at rest and in transit across on-premises databases, cloud storage, data warehouses, and analytical environments, with particular attention to PHI and cross-border data transfer requirements.
- Provide security architecture input to data platform vendor evaluations and contract negotiations, ensuring security requirements, data-use restrictions, telemetry controls, and audit rights are appropriately represented.
- Support regulatory compliance requirements across GDPR, HIPAA, CCPA, GxP, and applicable regional data protection regimes, translating regulatory obligations into architectural controls and providing assurance evidence for audits and assessments.
- Define metrics, KPIs, and reporting frameworks for data security posture, providing actionable visibility to CISO leadership and Data Office stakeholders on data risk, program coverage, and maturity progression.
Required Experience and Qualifications
- 6–10 years of progressive experience in Information Security, Data Security, Security Architecture, or related technical roles, with demonstrated ownership of data-centric security programs or initiatives.
- Deep knowledge of data security architecture principles, including data classification, access governance, encryption, tokenization, masking, and data loss prevention across hybrid environments spanning on-premises data centers and multi-cloud platforms.
- Hands-on experience with enterprise-scale cloud data platforms (such as Snowflake, Databricks, or equivalent), with the ability to design and assess security controls including governance, access policy, and data sharing frameworks.
- Experience with cloud environments (Microsoft Azure and/or Amazon AWS), including securing data services across IaaS, PaaS, and cloud-native analytical platforms.
- Experience evaluating or deploying DSPM, data governance, or data classification platforms such as Varonis, Securiti, Cyera, Microsoft Purview, BigID, or equivalent.
- Working knowledge of IAM and access governance principles as applied to data platforms, including RBAC, ABAC, and entitlement management across analytical and operational environments.
- Experience conducting security architecture reviews in complex, heterogeneous data environments, including post-M&A assessments, legacy platform migrations, or on-premises data center programs.
- Strong understanding of regulatory frameworks governing sensitive data, including HIPAA/HITECH, GDPR, CCPA, and GxP, with the ability to translate regulatory requirements into architectural controls across a diverse platform estate.
- Foundational to intermediate knowledge of AI and ML security considerations, including LLM application risks, model pipeline security, and the data protection implications of AI features embedded in or connected to enterprise data platforms.
- Demonstrated ability to operate at the intersection of security and data platform teams, communicating architecture decisions to data engineers, platform architects, business data owners, and senior stakeholders.
- Experience within regulated industries — life sciences, healthcare, or financial services — with direct exposure to clinical, patient-level, or pharmaceutical data security requirements is preferred.
- Bachelor’s degree in Computer Science, Information Security, Data Management, or equivalent practical experience is preferred.
- Relevant certifications such as CISSP, CISM, CDPSE, CCSP, AWS/Azure Security Specialty, or CIPP/E are preferred but not mandatory.
- Working knowledge of data governance and security frameworks such as NIST Privacy Framework, DAMA-DMBOK, ISO 27001, or similar is an advantage.
- Strong written and verbal communication skills, including experience producing architecture documentation, security standards, and executive-level reporting for senior leadership and governance forums.
COMPENSATION
- The potential base pay range for this role, when annualized, is $112,200.00 - $312,700.00. The actual base pay offered may vary based on a number of factors including job-related qualifications such as knowledge, skills, education, and experience; location; and/or schedule (full or part-time). Dependent on the position offered, incentive plans, bonuses, and/or other forms of compensation may be offered, in addition to a range of health and welfare and/or other benefits.
LOCATION
Durham, United States of America
Full time
Home-based
R1549369
IQVIA is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other status protected by applicable law.
IQVIA is committed to integrity in our hiring process and maintains a zero tolerance policy for candidate fraud. All information and credentials submitted in your application must be truthful and complete. Any false statements, misrepresentations, or material omissions during the recruitment process will result in immediate disqualification of your application, or termination of employment if discovered later, in accordance with applicable law. We appreciate your honesty and professionalism.
See all 282+ H-1B Visa Security Architect Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new H-1B Visa Security Architect Jobs.
Get Access To All JobsTips for Finding H-1B Visa Sponsorship in Security Architect
Align your credentials to SOC code 15-1299
Security Architect maps to SOC code 15-1299 in O*NET, which USCIS uses to evaluate specialty occupation status. Make sure your resume, degree, and job title language match this classification before your employer files the LCA.
Filter employers by active LCA filing history
Use Migrate Mate to search Security Architect roles filtered by verified DOL Labor Condition Application filings. This surfaces employers who have already filed for this exact role, cutting out companies that say they sponsor but haven't done it for this position.
Request the prevailing wage tier in writing
Your employer must file the LCA at Level I, II, III, or IV. Ask for the wage level before signing an offer. Level I filings for senior Security Architect roles draw USCIS scrutiny, so confirm the wage level matches your actual seniority.
Verify your employer is E-Verify enrolled
H-1B employers must participate in E-Verify. Confirm enrollment before your start date, not after. A company that isn't enrolled can't legally employ you on H-1B status and will need to register before USCIS approves the petition.
Document security certifications alongside your degree
USCIS treats CISSP, CISM, or similar credentials as supporting evidence for specialty occupation, not substitutes for a degree. Include them in your petition package alongside transcripts to strengthen the employer's case that the role requires specialized theoretical knowledge.
Time premium processing around your cap-gap window
If you're transitioning from OPT, your work authorization lasts until October 1 under cap-gap rules. Premium processing gets a decision within 15 business days, giving you certainty before that deadline instead of waiting on standard USCIS processing timelines.
H-1B Visa Security Architect: Frequently Asked Questions
Does a Security Architect role qualify as an H-1B specialty occupation?
Yes. Security Architect qualifies because the role requires a bachelor's degree or higher in computer science, information security, or a closely related field as a standard industry requirement. USCIS evaluates this using the DOL's O*NET profile for the role's SOC code. Employers should document that the position normally requires this degree level, not just that a degree is preferred.
How do I find employers who have actually sponsored H-1B visas for Security Architects before?
Migrate Mate filters Security Architect job listings by verified DOL Labor Condition Application filing history, so you can see which employers have filed H-1B petitions for this specific role. This is more reliable than asking recruiters, because LCA records are public data submitted directly to the DOL before each H-1B petition is filed with USCIS.
What wage level should my employer file my LCA at for a Security Architect role?
Most Security Architect roles are senior positions that should be filed at Level III or Level IV on the OFLC Wage Search prevailing wage scale. A Level I or II filing for a senior architect role can trigger an RFE from USCIS questioning whether the position genuinely requires specialty occupation expertise. Review the wage level before your employer submits the LCA.
Can my employer file an H-1B for a Security Architect role if it involves remote work across multiple states?
Yes, but your employer must file a separate LCA for each worksite location where you'll spend more than 30 workdays per year, using the prevailing wage for each location. Security roles with cloud or federal compliance components often involve multiple client sites. Your employer should account for all anticipated work locations when preparing the LCA before submitting to USCIS.
Does holding a CISSP or CISM certification help my H-1B petition as a Security Architect?
Certifications like CISSP or CISM strengthen the petition as supporting evidence but don't replace a qualifying degree in your H-1B package. USCIS uses them to corroborate that the role requires specialized knowledge, which is useful if your degree is in a field adjacent to information security rather than directly in it. Include transcripts and job duties alongside any certifications.