STEM OPT Network Security Engineer Jobs
Network Security Engineer roles qualify for the 24-month STEM OPT extension when your degree falls under an eligible CIP code and your employer is enrolled in E-Verify. You'll need a STEM degree in computer science, information security, or a related field, plus a signed I-983 training plan before your extension starts.
Find STEM OPT Network Security Engineer JobsOverview
Showing 5 of 9+ Network Security Engineer jobs










See all Network Security Engineer Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Network Security Engineer roles.
Get Access To All Jobs
Job Classification:
Technology - Information Security
Are you interested in building capabilities that enable the organization with innovation, speed, agility, scalability, and efficiency? The Global Technology team takes great pride in our culture where digital transformation is built into our DNA. When you join our organization, you will unlock an exciting and impactful career while growing your skills and advancing your profession at one of the world's leading financial services institutions.
Your Team & Role
As a Specialist, Network Security Analyst within the Network Security Strategy & Analysis team within the ISO Infrastructure Security team, you will use network, security, asset, configuration, and vulnerability data to identify risk, quantify technical debt, evaluate control effectiveness, and support strategic network security decisions. You will partner with Network Engineering, Network Security Operations, Infrastructure, Cloud, Identity, Architecture, and other security teams to convert complex data into validated findings, prioritized recommendations, dashboards, and measurable risk-reduction actions. You will explain complex concepts and influence others to adopt data-supported points of view while working on complex problems that require an in-depth evaluation of security controls and business context.
This role does not own day-to-day administration or operations of network security platforms; instead, this team will use analysis to drive environmental hardening and risk reduction. Success requires technical depth, strategic thinking, strong analytical judgment, and the ability to lead work through influence across multiple teams.
Here Is What You Can Expect on a Typical Day
- Collect, normalize, correlate, and analyze data from SIEM, firewall, proxy, ZTNA, NAC, network, vulnerability, asset, CMDB, IPAM, endpoint, and identity sources.
- Identify unmanaged assets, insecure access paths, legacy technologies, control gaps, configuration weaknesses, segmentation issues, and other areas of network security technical debt.
- Build repeatable analytics, queries, dashboards, and reports that measure network security posture, exposure, control coverage, risk-reduction progress, and data quality.
- Perform complex analysis independently with minimal assistance, documenting methods, assumptions, limitations, validation steps, and recommended actions.
- Partner with network, infrastructure, application, cloud, identity, and security teams to validate findings, resolve data discrepancies, and establish accountable remediation plans.
- Support current-state assessments and strategy work for NAC, segmentation, Zero Trust, ZTNA, firewall modernization, proxy transformation, and related capabilities.
- Translate analytical findings into concise risk statements, decision-ready summaries, visualizations, and presentations for technical and leadership audiences.
- Maintain a network security risk and technical-debt inventory, including evidence, ownership, prioritization, dependencies, status, and risk-acceptance information.
- Automate recurring data preparation, quality checks, correlation, and reporting where practical and maintain clear process and query documentation.
- Continuously improve analytical methods, data sources, metrics, and validation processes based on stakeholder feedback and evolving risk priorities.
The Skills & Expertise You Bring
- Bachelor of Computer Science, Engineering, Information Technology, Cybersecurity, Data Analytics, or equivalent experience in related fields.
- Applied experience in cybersecurity, network engineering, security analytics, risk analysis, or a related technical discipline.
- Strong analytical and problem-solving skills, including the ability to work with incomplete or inconsistent enterprise data and produce defensible conclusions.
- Experience developing queries, dashboards, metrics, or reports using security and technology data.
- Ability to independently manage assigned analysis and project work while escalating material risks, blockers, and data-quality concerns appropriately.
- Knowledge of business concepts and information security tools and processes needed to make sound decisions within the company context.
- Experience with agile ways of working and collaboration across geographically and functionally diverse teams.
- Excellent written communication, presentation, documentation, and collaboration skills.
Applied Experience with Several of the Following
- Splunk or comparable SIEM and analytics platforms, including search development, field normalization, lookups, dashboards, and scheduled reporting.
- SQL, Python, PowerShell, or comparable methods for data manipulation, correlation, automation, and quality validation.
- Firewall, proxy, ZTNA, NAC, DNS, flow, routing, switching, authentication, and remote-access telemetry, including Zscaler data where applicable.
- Asset inventories, CMDB, IPAM, endpoint-management, identity, vulnerability-management, and ServiceNow data.
- Network concepts such as IP addressing, subnets, VLANs, routing, ACLs, firewall policy, NAT, segmentation, and application connectivity.
- Information Security risk assessments, control testing, issue management, exception processes, and technical-debt tracking.
- NIST and ISO 27000 standards, CIS Controls, Zero Trust concepts, and information security control standards and engineering specifications.
- Data visualization, KPI/KRI design, trend analysis, executive reporting, and measurement of control effectiveness and remediation outcomes.
Preferred Qualifications
- Security, networking, analytics, cloud, Splunk, Zscaler, or GIAC certification.
- Experience analyzing data in a large enterprise with multiple network and security platforms.
- Experience supporting network segmentation, NAC, Zero Trust, firewall-rule analysis, or technical-debt reduction initiatives.
You'll Love Working Here Because You Can
Join a team and culture where your voice matters and where your work improves security outcomes. As you put your skills to use, we will help you expand both your technical and leadership capabilities through meaningful work and continuous learning.
What we offer you:
Prudential is required by state specific laws to include the salary range for this role when hiring a resident in applicable locations. The salary range for this role is from $89,000.00 to $147,000.00. Specific pricing for the role may vary within the above range based on many factors including geographic location, candidate experience, and skills.
- Market competitive base salaries, with a yearly bonus potential at every level.
- Medical, dental, vision, life insurance, disability insurance, Paid Time Off (PTO), and leave of absences, such as parental and military leave.
- 401(k) plan with company match (up to 4%).
- Company-funded pension plan.
- Wellness Programs including up to $1,600 a year for reimbursement of items purchased to support personal wellbeing needs.
- Work/Life Resources to help support topics such as parenting, housing, senior care, finances, pets, legal matters, education, emotional and mental health, and career development.
- Education Benefit to help finance traditional college enrollment toward obtaining an approved degree and many accredited certificate programs.
- Employee Stock Purchase Plan: Shares can be purchased at 85% of the lower of two prices (Beginning or End of the purchase period).
Eligibility to participate in a discretionary annual incentive program is subject to the rules governing the program, whereby an award, if any, depends on various factors including, without limitation, individual and organizational performance. To find out more about our Total Rewards package, visit Work Life Balance | Prudential Careers. Some of the above benefits may not apply to part-time employees scheduled to work less than 20 hours per week.
Prudential Financial, Inc. of the United States is not affiliated with Prudential plc. which is headquartered in the United Kingdom.
Prudential is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, ancestry, sex, sexual orientation, gender identity, national origin, genetics, disability, marital status, age, veteran status, domestic partner status, medical condition or any other characteristic protected by law.
If you need an accommodation to complete the application process, please email accommodations.hw@prudential.com.
If you are experiencing a technical issue with your application or an assessment, please email careers.technicalsupport@prudential.com to request assistance.
See all STEM OPT Network Security Engineer Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new STEM OPT Network Security Engineer Jobs.
Get Access To All JobsTips for Finding STEM OPT Authorization as a Network Security Engineer
Verify your CIP code qualifies first
Check your degree's Classification of Instructional Programs code against the DHS STEM Designated Degree Program List before applying. Computer science, cybersecurity, and information assurance codes typically qualify, but electrical engineering or mathematics degrees may require your DSO to confirm eligibility.
Confirm E-Verify enrollment before accepting offers
Your employer must be actively enrolled in E-Verify before your STEM OPT extension can begin. Search the E-Verify employer search tool or ask the recruiter for their E-Verify Company ID number during the offer stage, not after signing.
Build a network security credential portfolio early
Certifications like CISSP, CompTIA Security+, or CEH signal to hiring managers that your skills transfer directly to U.S. enterprise security environments. Employers filing I-983 training plans for network security roles expect documented technical competencies tied to specific learning objectives.
Target employers with active LCA filings in security roles
Search Migrate Mate to identify employers who have filed Labor Condition Applications for network security or information security positions. LCA filing history shows which companies have already navigated STEM OPT and H-1B visa sponsorship for similar roles.
Draft your I-983 training objectives before the offer stage
Network security engineers can map training goals to specific NIST frameworks, SOC operations, or penetration testing projects your employer will assign. Having a draft ready speeds up the employer sign-off process and signals you understand the STEM OPT training plan requirement.
Time your extension filing to protect cap-gap coverage
If your employer files an H-1B petition before your OPT expires, cap-gap rules extend your work authorization through September 30 of that year. File your STEM OPT extension at least 90 days before your initial OPT end date to avoid any gap in authorization.
Frequently Asked Questions
Does my degree qualify me for the STEM OPT extension as a network security engineer?
Your degree qualifies if it appears on the DHS STEM Designated Degree Program List. Degrees in computer science, cybersecurity, information assurance, electrical engineering, and applied mathematics commonly support network security roles. Check the specific Classification of Instructional Programs code on your degree with your DSO, since the job title alone doesn't determine eligibility.
What does the I-983 training plan need to cover for a network security engineer role?
Your I-983 must describe specific learning objectives tied to your actual job duties, not a generic job description. For network security engineers, that means outlining training in areas like intrusion detection, firewall management, vulnerability assessment, or incident response. Your employer signs the plan and must evaluate your progress at the six-month and twelve-month marks throughout the extension period.
How do I confirm my employer is enrolled in E-Verify before my STEM OPT extension starts?
Ask the recruiter or HR contact for the company's E-Verify Company ID number during the offer stage. You can also search the E-Verify employer search tool using the company name to confirm active enrollment. If the employer isn't enrolled, they cannot legally employ you on a STEM OPT extension, and enrollment must be completed before your extension begins.
How does cap-gap work if I'm on STEM OPT and my employer files an H-1B petition?
If your employer files a timely H-1B petition before your STEM OPT expires, cap-gap provisions automatically extend your work authorization through September 30 of the fiscal year the petition is pending. You can continue working in your network security engineer role during this period. USCIS provides guidance on the specific timely filing requirements that trigger cap-gap protection.
Where can I find network security engineer jobs where employers are already familiar with STEM OPT?
Migrate Mate filters network security engineer listings by employers with verified E-Verify enrollment and LCA filing history, so you can target companies that have already sponsored STEM OPT and H-1B workers in security roles. This reduces the back-and-forth of explaining authorization requirements to employers who haven't hired international graduates before.