OPT Cloud Security Architect Jobs
Cloud Security Architect jobs on OPT require employers willing to sponsor H-1B visas, since your work authorization window is limited to 12 months standard OPT or up to 36 months on STEM OPT extension. Most roles in this field qualify for STEM OPT because they fall under CIP codes tied to computer science or information security.
Find OPT Cloud Security Architect JobsOverview
Showing 5 of 13+ Cloud Security Architect jobs










See all Cloud Security Architect Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Cloud Security Architect roles.
Get Access To All Jobs
INTRODUCTION
At Blue Cross and Blue Shield of Nebraska, we are a mission-driven organization dedicated to championing the health and well-being of our members and the communities we serve.
Our team is the power behind that promise. And, as the industry rapidly evolves and we seek ways to optimize business processes and customer experiences, there’s no greater time for forward-thinking professionals like you to join us in delivering on it! As a member of Team Blue, you’ll find purpose, opportunities and the support you need to build a meaningful career and make a powerful impact in our community.
The ideal candidate will live within driving distance of the Omaha, Nebraska office. This position allows remote flexibility but will have 1 day per week in the office.
If living in one of our approved states (Florida, Iowa, Kansas, Minnesota, Missouri, Nebraska, North Dakota, and Texas) – this person may travel to our headquarters based on business needs.
ROLE AND RESPONSIBILITIES
The Cloud Security Engineer is a hands-on technologist responsible for implementing, operating, and improving cloud security capabilities across the enterprise.
We are looking for a cloud security professional who can take ownership of assigned work, apply sound technical judgment, and translate security requirements into practical solutions. You will partner closely with engineering, architecture, and risk teams to deliver scalable security capabilities that work in real-world environments.
You will also help enable the secure adoption of AI technologies by implementing guardrails, supporting AI-enabled platforms, and helping ensure AI-driven capabilities align with security and compliance requirements.
What you'll do:
- Implement and maintain secure Azure configurations, guardrails, and reference architectures across identity, network, compute, and data
- Implement policy-as-code and secure-by-default deployment patterns using Azure Policy and infrastructure-as-code
- Support the operation and continued improvement of Cloud Security Posture Management (CSPM), including risk prioritization, remediation, and baseline alignment
- Implement, tune, operate, and improve cloud security tooling and core security platforms, including Microsoft Defender, WAF, Microsoft Sentinel, Entra ID, CyberArk, CrowdStrike, and related capabilities
- Implement and maintain security guardrails for AI usage and the secure adoption of AI platforms
- Identify, assess, and help mitigate cloud and AI security risks, including misconfigurations, access risks, and emerging threats
- Partner with platform and application security teams to integrate security into CI/CD pipelines and support secure AI-assisted development practices
- Develop automation to improve remediation, monitoring, and compliance reporting at scale
- Partner with engineering teams to translate security requirements into practical, implemented solutions
- Troubleshoot cloud security issues, document solutions, and collaborate with senior engineers on complex problems
BASIC QUALIFICATIONS
To be considered for this position, you must have:
- Bachelor’s degree in Computer Science, Information Security, or a related field (or equivalent experience).
- 3+ years of experience in cloud security, cybersecurity engineering, cloud engineering, or related fields
- Hands-on experience supporting or securing Azure environments, including identity, network, and platform services
- Experience implementing or operating cloud security controls and tooling
- Working knowledge of cloud security risks and misconfiguration patterns, including identity and access risks
- Experience with or working knowledge of Infrastructure as Code (Terraform, Bicep, ARM) and policy-as-code
- Ability to assess risk, prioritize remediation activities, and drive assigned issues to resolution
- Ability to work independently with general guidance, take ownership of assigned responsibilities, and deliver reliable outcomes
- Experience collaborating with engineering teams to implement practical, scalable security solutions
- Strong communication skills with the ability to work effectively with engineers, architects, risk partners, and leadership
PREFERRED QUALIFICATIONS
The strongest candidates will also have:
- Experience supporting AI/ML or AI-enabled platforms or implementing guardrails for enterprise AI usage
- Familiarity with AI-related threats (e.g., prompt injection, data leakage, model misuse)
- Scripting or automation experience (PowerShell, Python, or similar)
- Familiarity with compliance frameworks (NIST, CIS, HIPAA)
- Experience in healthcare or other regulated industries
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed are representative of the knowledge, skill, and or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. Other duties may be assigned.
Ready to make an impact? Join a team where your skills, attitude, and ideas are valued—and where you’ll help shape the future of healthcare technology.
We strongly believe that diversity of experience, perspective and background will lead to a better workplace for our employees and a better product for our customers and members.
See all OPT Cloud Security Architect Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new OPT Cloud Security Architect Jobs.
Get Access To All JobsTips for Finding OPT Sponsorship in Cloud Security Architect
Target STEM OPT-eligible roles explicitly
Cloud Security Architect positions almost universally qualify for the STEM OPT extension under CIP codes 11.0101 or 14.0901. Confirm your degree field qualifies before applying so you can accurately tell employers you have up to three years of work authorization.
Prioritize large cloud-first employers
Companies with established cloud infrastructure teams, such as financial institutions, healthcare systems, and technology firms, are far more likely to have H-1B sponsorship pipelines already in place. Smaller startups often lack the legal infrastructure to sponsor efficiently.
Lead with certifications that signal immediate value
Certifications like AWS Security Specialty, CCSP, or Google Professional Cloud Security Engineer reduce employer hesitation about sponsorship costs. They demonstrate job-ready expertise and help justify the business case for sponsoring your H-1B petition.
Address your OPT timeline proactively in interviews
Bring up your authorization window yourself rather than waiting for employers to ask. Framing it clearly, including your STEM extension eligibility, removes ambiguity and positions you as someone who understands the process and has planned accordingly.
Build relationships within cloud security communities
Engage with cloud security professional groups and conferences where hiring managers participate directly. Referrals from trusted colleagues significantly reduce employer skepticism about sponsorship, because the candidate is already a known quantity before the conversation begins.
Research employer H-1B filing history before applying
The Department of Labor publishes LCA disclosure data showing which employers have filed for H-1B workers in cloud and security roles. Applying to employers with a consistent filing history dramatically increases your chances of receiving a sponsorship offer.
Cloud Security Architect OPT: Frequently Asked Questions
Do Cloud Security Architect jobs typically qualify for the STEM OPT extension?
Yes. Cloud Security Architect roles are classified under computer and information systems or engineering fields, which qualify for STEM OPT under CIP codes like 11.0101 (Computer and Information Sciences) and 14.0901 (Computer Engineering). If your degree falls under one of these codes, you're eligible for a 24-month STEM extension on top of your initial 12-month OPT, giving you up to 36 months of work authorization to secure H-1B sponsorship.
How hard is it to find Cloud Security Architect jobs that sponsor H-1B visas?
It's competitive but realistic. Cloud security is a high-demand specialty with a genuine talent shortage, which makes employers more willing to invest in sponsorship compared to generalist IT roles. Focusing your search on employers with a documented history of H-1B filings is the most effective filter. Migrate Mate is built specifically for OPT students and surfaces Cloud Security Architect roles from employers who actively sponsor visas, so you're not applying blind.
Can I work as a Cloud Security Architect on OPT without H-1B sponsorship right away?
Yes. During your OPT period, you're authorized to work full-time for any employer in a role related to your degree field without an H-1B petition. Sponsorship only becomes necessary when your OPT expires. If you qualify for STEM OPT, you have up to 36 months to find an employer who will file your H-1B petition before the deadline. Your employer must also enroll in E-Verify to support your STEM OPT extension.
What degree backgrounds support an OPT application for Cloud Security Architect roles?
The most common qualifying degrees include Computer Science, Cybersecurity, Information Systems, Computer Engineering, and Electrical Engineering. USCIS and employers both look for a direct connection between your degree field and the job duties. Cloud Security Architects who hold degrees in cybersecurity or computer science have the clearest path, but adjacent fields like information assurance or systems engineering can also qualify if the role description maps closely to your academic training.
What should I know about the E-Verify requirement for STEM OPT in this role?
For your STEM OPT extension to be valid, your employer must be enrolled in E-Verify, the federal electronic work authorization verification system. This is a non-negotiable requirement, not a preference. Before accepting a Cloud Security Architect offer contingent on STEM OPT, confirm the employer is actively enrolled in E-Verify. Many large technology and financial employers already are, but smaller firms or newer startups may not be, which would make you ineligible for the STEM extension regardless of your degree.