STEM OPT Security Architect Jobs
Security Architect roles qualify for the 24-month STEM OPT extension if your degree falls under an eligible CIP code in computer science, information security, or a related engineering field. Your employer must be enrolled in E-Verify, and you'll need a signed I-983 training plan before your extension begins.
Find STEM OPT Security Architect JobsOverview
Showing 5 of 147+ Security Architect jobs










See all 147+ Security Architect Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Security Architect roles.
Get Access To All Jobs
The application window will be open until at least August 06th, 2026. This opportunity will remain online based on business needs which may be before or after the specified date.
Applicants in the County of Los Angeles: Qualified applications with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act.
Applicants in San Francisco: Qualified applications with arrest or conviction records will be considered for employment in accordance with the San Francisco Fair Chance Ordinance for Employers and the California Fair Chance Act.
Note: Google's hybrid workplace includes remote roles. By applying to this position you will have an opportunity to share your preferred working location from the following:
Remote locations: California, USA; United States.
MINIMUM QUALIFICATIONS:
- Bachelor's degree in Computer Science, Information Systems, Cybersecurity or related technical field or equivalent practical experience.
- 3 years of experience in information security, engineering, and cloud-based infrastructure environments.
- 2 years of experience in identity and access management (IAM), enterprise architecture, or cloud architecture using directory services, cloud computing platforms, or network security tools.
PREFERRED QUALIFICATIONS:
- Certification in one or more of the following: CompTIA Security+; CompTIA Network+; ISC2 (CISSP); SANS-GIAC certification (GSEC, GCIH, GCED, GCFA, GCIA, GNFA, GPEN, GWAPT); CISCO (CCNA); EC-Council (CEH, LPT).
- Experience communicating remediation recommendations and strategies to technical staff, executive leadership, legal counsel, and internal and external clients.
- Experience in incident response remediation or disaster recovery.
- Ability to travel up to 25%.
- Excellent written and verbal communication skills, with the ability to develop documentation and explain technical details in a concise manner.
- Excellent attention to detail and time management skills.
ABOUT THE JOB
In this role, you will be responsible for helping clients effectively prepare to mitigate, and respond to cyber security threats. You will identify enterprise security requirements and provide guidance to enterprise initiatives. You will serve as technical support for security tools and assist with security tool implementation and integration into the customer environment. You will also provide guidance on the development of containment and remediation plans for cyber security incidents.
In addition, you will be the technical advocate for information security requirements and provide information of the security domain. You will execute on both strategic and tactical plans, including direct engagement and delivery in technical matters. You will articulate and present complex concepts to business stakeholders, executive leadership, and technical contributors.
Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone. Individual pay is determined by factors including job-related skills, experience, and relevant education or training.
US: $112000 - $162000 (USD) + 15% bonus target + equity + benefits
Learn more about benefits at Google.
Responsibilities
- Lead, coordinate, and conduct technical security assessments for cloud-based security infrastructures and platforms.
- Assist clients with designing and implementing architecture enhancements, security configurations, identity protections, cloud workflows, and appropriate countermeasures to defend against threats and attacker techniques.
- Build scripts, tools, or methodologies to enhance Mandiant's on-premise Active Directory or Cloud Assessment processes.
- Develop and present comprehensive and accurate reports, training, and presentations for technical and executive audiences.
- Develop comprehensive and accurate reports and presentations for both technical and executive audiences. Communicate strategies and roadmap initiatives to client stakeholders including technical staff, executive leadership, and legal counsel.
Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See also Google's EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know by completing our Accommodations for Applicants form.
See all 147+ STEM OPT Security Architect Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new STEM OPT Security Architect Jobs.
Get Access To All JobsTips for Finding STEM OPT Authorization in Security Architect
Confirm your CIP code covers security
Degrees in computer science, cybersecurity, or electrical engineering typically qualify, but information systems degrees vary by institution. Pull your transcript and cross-reference your exact CIP code against the STEM OPT designated degree program list before applying to roles.
Filter employers by E-Verify enrollment
Any employer hiring you on STEM OPT must be enrolled in E-Verify, not just willing to enroll later. Ask recruiters directly and confirm enrollment status through the E-Verify employer search tool before investing time in any application process.
Build your I-983 training plan early
Security Architect roles involve broad responsibilities, so your I-983 must map specific learning objectives to concrete tasks like threat modeling, zero-trust architecture design, or cloud security controls. A vague plan risks DSO rejection and delays your extension start date.
Target companies with active security LCA filings
Use the OFLC Wage Search to identify employers who have filed Labor Condition Applications for security architect or information security roles. Recent LCA activity signals that a company has the compliance infrastructure to hire and maintain STEM OPT employees without friction.
Use Migrate Mate to find verified STEM OPT employers
Search for Security Architect roles on Migrate Mate to surface employers whose hiring history confirms they work with STEM OPT students. This cuts out companies that are unfamiliar with the E-Verify requirement or the I-983 process.
Negotiate your offer letter before the I-983 is drafted
Your job title, duties, and supervision structure in the offer letter must align with what you put in your I-983 training plan. Get those terms finalized in writing before your DSO prepares the plan to avoid inconsistencies that USCIS could flag during an audit.
Frequently Asked Questions
Does my degree qualify me for the STEM OPT extension as a Security Architect?
Your degree qualifies if it appears on the STEM OPT designated degree program list, which includes most computer science, cybersecurity, information assurance, and electrical engineering programs. The qualifying factor is your CIP code, not your job title. If your degree is in a field like information systems or management information systems, confirm your institution's specific CIP code against the published list before applying for the extension.
What does the I-983 training plan need to include for a Security Architect role?
Your I-983 must connect your Security Architect duties to specific learning goals tied to your STEM degree. For this role, that means documenting objectives around areas like network security architecture, risk frameworks, or cloud security design, not just listing your job description. Your employer must sign it, and your DSO must approve it before USCIS processes your extension. Vague or mismatched objectives are a common reason DSOs send plans back for revision.
How do I confirm my employer is enrolled in E-Verify?
You can search employer enrollment status directly through the E-Verify employer search tool, which is publicly accessible. Enrollment must be active at the time you begin working on the STEM OPT extension, not just promised for later. If a company says it will enroll after you join, that's a compliance risk for your status. Always verify before accepting an offer.
Does the cap-gap rule protect me while waiting for H-1B approval as a Security Architect?
Yes, if your OPT or STEM OPT end date falls before October 1 and your H-1B visa petition is filed and accepted under cap, the cap-gap rule extends your work authorization through September 30 of that fiscal year. Your F-1 status and employment authorization remain valid during this period. USCIS provides guidance on cap-gap eligibility and documentation requirements on their official pages.
Where can I find Security Architect jobs from employers who already work with STEM OPT students?
Migrate Mate lists Security Architect roles from employers with verified STEM OPT hiring history, so you're not starting from zero on E-Verify and I-983 education. You can filter by role and see which companies have the compliance background to hire F-1 students on the extension. The O*NET profile for Security Architect roles also outlines the competencies and tasks that map well to I-983 training objectives.