Security Operations Analyst Jobs for OPT Students
Security Operations Analyst jobs are among the more OPT-friendly roles in tech because employers filing H-1B petitions for cybersecurity positions consistently rank among the highest-volume sponsors. Your OPT gives you up to 12 months of work authorization, with a 24-month STEM extension available if your degree is in computer science, information technology, or a related CIP-coded field.
See All Security Operations Analyst JobsOverview
Showing 5 of 68+ Security Operations Analyst jobs


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?
See all 68+ Security Operations Analyst jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Security Operations Analyst roles.
Get Access To All Jobs
Why Vagaro?
At Vagaro, we believe in fostering a collaborative and inclusive work environment where every team member can thrive. Our culture is built on innovation, continuous learning, and a passion for making a positive impact. We support our employees' growth and vision for themselves, offering opportunities for professional development and career advancement. Join us and be part of a team that values creativity, teamwork, and a commitment to excellence. Plus, we know how to have fun while getting the job done!
What you'll Be Doing:
The Security Operations Analyst (Support & Fraud Triage) supports Vagaro's Security team by triaging and investigating security-related escalations originating from Customer Support and Fraud. This role focuses on identifying common threats such as phishing, account takeover (ATO), suspicious account activity, and abuse patterns, and executing standardized containment actions using established playbooks.
This position strengthens Vagaro's ability to respond quickly and consistently to customer-impacting security concerns while ensuring that only well-documented, high-confidence issues are escalated to Engineering.
This role is based onsite in Pleasanton, CA Monday through Friday
Compensation
- Base Annual Salary: $75000 - $90000
- Annual Bonus: Up to 10%
Your Impact:
Security Triage & Investigation
- Investigate and triage security-related escalations from Zendesk, Fraud team and Vulnerability Disclosure Program (VDP)
- Apply consistent severity classification and prioritization using established guidelines.
- Validate reported security concerns and determine appropriate next steps.
Threat Identification & Containment
- Identify and respond to phishing attempts, account takeover (ATO), credential stuffing indicators, suspicious automation, and abnormal account or payment behavior.
- Execute containment actions using approved runbooks (account restrictions, session resets, blocking indicators, customer guidance).
- Collect artifacts and escalate complex or high-risk threats to senior Security personnel.
Case Management & Documentation
- Maintain clear, thorough case documentation including evidence, actions taken, and final resolution.
- Track follow-ups to ensure timely closure and customer communication where required.
- Maintain audit-ready records for security review.
Escalation & Cross-Functional Coordination
- Escalate high-confidence issues to Engineering with clear reproduction steps and impact summaries.
- Collaborate with Fraud and Customer Support to clarify security signals and reduce duplicate escalations.
- Support senior analysts during active incidents.
Metrics & Process Improvement
- Track intake volume, resolution time, and recurring issue themes.
- Contribute to updates on runbooks, triage checklists, and response templates.
- Identify opportunities to improve detection quality and reduce repetitive workload.
What you Bring:
Required
- 1+ years of experience in Security Operations, Fraud Investigation, Technical Support, or a related field.
- Familiarity with phishing, account takeover (ATO), and common online fraud patterns.
- Experience working in ticketing systems (Zendesk or similar).
- Strong written documentation skills.
- Ability to analyze account activity and identify suspicious patterns.
- Detail-oriented with strong organizational skills.
- Ability to work in a fast-paced environment with shifting priorities.
Preferred
- Security+, CompTIA CySA+, GIAC or equivalent certification preferred.
- Preferred knowledge of common web attacks including OWASP Top 10 vulnerabilities.
- Experience in SaaS, fintech, or payments environments.
- Exposure to basic log analysis or security monitoring tools.
- Familiarity with incident response workflows.
Why You'll Love Working Here:
- Attractive Compensation & Performance Bonuses: Enjoy a competitive salary paired with performance-based bonuses
- Generous PTO: 15 accrued days, plus 10 company holidays annually.
- Health & Wellness: Comprehensive healthcare, dental, and vision plans for you and your family.
- Exclusive Perks: Discounts on attractions, theme parks, shows, sports events, movies, hotels, and more through TicketsAtWork.
- Beauty Perks: $30/month reimbursement for any Vagaro service, including health, beauty, or wellness treatments.
- Food Perks: $50 monthly stipend for our onsite microkitchen and a complimentary DoorDash DashPass subscription.
- Growth Opportunities: College Assistance Reimbursement, access to EAP & Work/Life Programs, and a LinkedIn Learning account.
- Financial Security: 401k program with 4% matching and optional life/supplemental insurance.
- Stay Active: Access to our on-site gym, flavored water dispenser, and basketball court to keep you fit and energized!
Equal Opportunity Employer:
Vagaro is proud to be an Equal Employment Opportunity and affirmative action employer. We foster an inclusive environment where individuals are evaluated without discrimination based on gender, race, ethnicity, age, disability, religion, sexual orientation, gender identity, veteran status, or any other characteristics protected by law.
Privacy Policy:
Your privacy matters! At Vagaro, we are committed to protecting your personal information. Before proceeding with your application, please review our Employee and Applicant Privacy Notice here. By submitting your application, you acknowledge that you have read and understood our Privacy Notice, which outlines how we collect, use, disclose, and protect your information during the recruitment and employment process.
Vagaro is an E-Verify employer. Learn more at www.e-verify.gov.
Learn More About Vagaro:
Visit us at vagaro.com/pro and vagaro.com to learn more.

Why Vagaro?
At Vagaro, we believe in fostering a collaborative and inclusive work environment where every team member can thrive. Our culture is built on innovation, continuous learning, and a passion for making a positive impact. We support our employees' growth and vision for themselves, offering opportunities for professional development and career advancement. Join us and be part of a team that values creativity, teamwork, and a commitment to excellence. Plus, we know how to have fun while getting the job done!
What you'll Be Doing:
The Security Operations Analyst (Support & Fraud Triage) supports Vagaro's Security team by triaging and investigating security-related escalations originating from Customer Support and Fraud. This role focuses on identifying common threats such as phishing, account takeover (ATO), suspicious account activity, and abuse patterns, and executing standardized containment actions using established playbooks.
This position strengthens Vagaro's ability to respond quickly and consistently to customer-impacting security concerns while ensuring that only well-documented, high-confidence issues are escalated to Engineering.
This role is based onsite in Pleasanton, CA Monday through Friday
Compensation
- Base Annual Salary: $75000 - $90000
- Annual Bonus: Up to 10%
Your Impact:
Security Triage & Investigation
- Investigate and triage security-related escalations from Zendesk, Fraud team and Vulnerability Disclosure Program (VDP)
- Apply consistent severity classification and prioritization using established guidelines.
- Validate reported security concerns and determine appropriate next steps.
Threat Identification & Containment
- Identify and respond to phishing attempts, account takeover (ATO), credential stuffing indicators, suspicious automation, and abnormal account or payment behavior.
- Execute containment actions using approved runbooks (account restrictions, session resets, blocking indicators, customer guidance).
- Collect artifacts and escalate complex or high-risk threats to senior Security personnel.
Case Management & Documentation
- Maintain clear, thorough case documentation including evidence, actions taken, and final resolution.
- Track follow-ups to ensure timely closure and customer communication where required.
- Maintain audit-ready records for security review.
Escalation & Cross-Functional Coordination
- Escalate high-confidence issues to Engineering with clear reproduction steps and impact summaries.
- Collaborate with Fraud and Customer Support to clarify security signals and reduce duplicate escalations.
- Support senior analysts during active incidents.
Metrics & Process Improvement
- Track intake volume, resolution time, and recurring issue themes.
- Contribute to updates on runbooks, triage checklists, and response templates.
- Identify opportunities to improve detection quality and reduce repetitive workload.
What you Bring:
Required
- 1+ years of experience in Security Operations, Fraud Investigation, Technical Support, or a related field.
- Familiarity with phishing, account takeover (ATO), and common online fraud patterns.
- Experience working in ticketing systems (Zendesk or similar).
- Strong written documentation skills.
- Ability to analyze account activity and identify suspicious patterns.
- Detail-oriented with strong organizational skills.
- Ability to work in a fast-paced environment with shifting priorities.
Preferred
- Security+, CompTIA CySA+, GIAC or equivalent certification preferred.
- Preferred knowledge of common web attacks including OWASP Top 10 vulnerabilities.
- Experience in SaaS, fintech, or payments environments.
- Exposure to basic log analysis or security monitoring tools.
- Familiarity with incident response workflows.
Why You'll Love Working Here:
- Attractive Compensation & Performance Bonuses: Enjoy a competitive salary paired with performance-based bonuses
- Generous PTO: 15 accrued days, plus 10 company holidays annually.
- Health & Wellness: Comprehensive healthcare, dental, and vision plans for you and your family.
- Exclusive Perks: Discounts on attractions, theme parks, shows, sports events, movies, hotels, and more through TicketsAtWork.
- Beauty Perks: $30/month reimbursement for any Vagaro service, including health, beauty, or wellness treatments.
- Food Perks: $50 monthly stipend for our onsite microkitchen and a complimentary DoorDash DashPass subscription.
- Growth Opportunities: College Assistance Reimbursement, access to EAP & Work/Life Programs, and a LinkedIn Learning account.
- Financial Security: 401k program with 4% matching and optional life/supplemental insurance.
- Stay Active: Access to our on-site gym, flavored water dispenser, and basketball court to keep you fit and energized!
Equal Opportunity Employer:
Vagaro is proud to be an Equal Employment Opportunity and affirmative action employer. We foster an inclusive environment where individuals are evaluated without discrimination based on gender, race, ethnicity, age, disability, religion, sexual orientation, gender identity, veteran status, or any other characteristics protected by law.
Privacy Policy:
Your privacy matters! At Vagaro, we are committed to protecting your personal information. Before proceeding with your application, please review our Employee and Applicant Privacy Notice here. By submitting your application, you acknowledge that you have read and understood our Privacy Notice, which outlines how we collect, use, disclose, and protect your information during the recruitment and employment process.
Vagaro is an E-Verify employer. Learn more at www.e-verify.gov.
Learn More About Vagaro:
Visit us at vagaro.com/pro and vagaro.com to learn more.
How to Get Visa Sponsorship as a Security Operations Analyst
Verify your degree qualifies for STEM OPT extension
Security Operations Analyst roles typically qualify for the 24-month STEM extension if your degree is in computer science, information systems, or cybersecurity. Confirm your program's CIP code with your DSO before accepting an offer.
Pursue relevant certifications before applying
CompTIA Security+, CySA+, or a SOC-specific certification like the Certified SOC Analyst credential strengthens your application and signals hands-on readiness. Employers sponsoring OPT students expect technical competency to offset the administrative overhead.
Ask about the E-Verify requirement during screening
OPT employment requires your employer to be enrolled in E-Verify. Confirm this early in the hiring process to avoid accepting an offer from an employer who cannot legally employ you on OPT status.
Apply early relative to your OPT start date
Security clearance roles can involve onboarding timelines of four to eight weeks. Starting your job search at least 90 days before your OPT authorization begins gives you time to clear background checks and complete required forms.
Highlight incident response and SIEM tool experience specifically
Employers scanning OPT applicants for Security Operations Analyst roles prioritize hands-on exposure to SIEM platforms like Splunk or Microsoft Sentinel. Naming specific tools in your resume moves you past automated screening filters faster.
Security Operations Analyst jobs are hiring across the US. Find yours.
Find Security Operations Analyst JobsSee all 68+ Security Operations Analyst jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Security Operations Analyst roles.
Get Access To All JobsFrequently Asked Questions
Can I work as a Security Operations Analyst on OPT without a STEM extension?
Yes. Standard OPT gives you 12 months of work authorization after graduation, which is enough to work as a Security Operations Analyst. If your degree is in a STEM-designated field such as computer science, information technology, or cybersecurity, you can apply for a 24-month STEM extension through your DSO, giving you up to 36 months total. Most employers sponsoring security analysts for H-1B prefer candidates who have or will qualify for the STEM extension.
Do Security Operations Analyst roles typically lead to H-1B sponsorship?
Security Operations Analyst is a specialty occupation under USCIS guidelines because it requires a bachelor's degree in a specific technical field. Employers in financial services, healthcare, and defense contracting file H-1B petitions for this role at consistent volumes. That said, H-1B sponsorship is employer-dependent, not guaranteed by the job title. You should confirm sponsorship intent before accepting an offer, ideally in writing.
Does a security clearance affect my ability to work as an OPT student?
Most entry-level Security Operations Analyst roles do not require a security clearance. Roles that do require one, particularly at defense contractors or federal agencies, are generally restricted to U.S. citizens or permanent residents. Focus your search on commercial sector SOC positions, where clearance is rarely a prerequisite and OPT status is not a disqualifying factor.
Where can I find Security Operations Analyst jobs that are open to OPT candidates?
Migrate Mate is built specifically for F-1 OPT students and filters roles by employers with demonstrated sponsorship history. Searching on Migrate Mate lets you focus on Security Operations Analyst positions at companies that already file H-1B petitions for this role, which is a stronger signal of long-term sponsorship intent than a generic job posting that mentions visa sponsorship.
What happens to my OPT authorization if I lose my Security Operations Analyst job?
F-1 OPT allows a cumulative unemployment period of 90 days during standard OPT and 150 days during the STEM extension. If you lose your position, that clock starts immediately. You should notify your DSO, update your SEVP Portal record, and begin your job search right away. OPT students who exceed the unemployment limit fall out of status, so acting quickly after any job loss is essential.
See which Security Operations Analyst employers are hiring and sponsoring visas right now.
Search Security Operations Analyst Jobs