TN Visa Infrastructure Security Engineer Jobs
Infrastructure Security Engineer roles qualify for TN visa sponsorship under the USMCA treaty's Computer Systems Analyst and Engineer categories. Canadian citizens can enter at the port of entry with employer documentation, while Mexican citizens apply at a U.S. consulate. Employers file no lottery paperwork, making sponsorship faster than H-1B for most candidates.
See All Infrastructure Security Engineer JobsOverview
Showing 5 of 58+ Infrastructure Security Engineer jobs


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?
See all 58+ Infrastructure Security Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Infrastructure Security Engineer roles.
Get Access To All Jobs
About this role
Join an exciting, fast-paced organization working on cutting edge encryption, tokenization and key management technologies, leveraged to protect information companywide. Wells Fargo is seeking a Lead Information Security Engineer working with CipherTrust Transparent Data Encryption. This role requires strong Information Technology and Information Security foundational knowledge, as well as experience with and awareness of encryption and key management technologies and engineering practices. The role closely partners with stakeholders across Wells Fargo Technology Infrastructure, Cybersecurity and lines of business to drive information protection product delivery, support business priorities and oversees the allocation of people and financial resources to ensure commitments are met and align with strategic objectives.
In this role, you will:
- Focus on delivering commitments aligned to enterprise strategic priorities
- Build support for strategies with business and technology leaders
- Guide development of actionable roadmaps and plans
- Identify opportunities and strategies for continuous improvement of product delivery practices
- Set risk management guidelines and partner with stakeholders to implement key risk initiatives
- Collaborate and influence all levels of professionals including more experienced managers
- Interface with external agencies, regulatory bodies, or industry forums
- Interpret and develop range of policies and procedures for functions with moderate to higher complexity and risk
- Lead efforts to facilitate/manage projects, products, strategic plans and execute other operational aspects on behalf of leader
- Lead efforts to define/manage required business plans (i.e. draft proposals & plans) and support related initiatives across products - including analyzing & identifying opportunities for efficiencies and innovation across internal processes and the tools to support.
- Support the product line general manager to solve problems, manage disputes and deal with any issues impacting the TI organization.
Required Qualifications:
- 5+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
- Hands-on experience designing, deploying, and operating Thales CipherTrust Transparent Encryption (CTE) for unstructured data at rest, including file, folder, and volume-level encryption
- Deep understanding of CTE agent architecture, GuardPoints, policies, and In-Place / Live Data Transformation (IDT/LDT) concepts and trade-offs
- Proven experience administering CipherTrust Manager (formerly DSM/Vormetric) for: Centralized key lifecycle management, Policy enforcement and Audit and access logging
- Strong engineering experience with Linux (RHEL, SLES), Windows, and AIX in enterprise environments
- Practical knowledge of supported file systems (e.g., ext3/ext4, NTFS, NFS, raw disk encryption scenarios) and their interaction with CTE agents
- Ability to assess kernel compatibility, AES-NI requirements, and host readiness prior to encryption enablement
- Strong understanding of data-at-rest encryption principles, including: Threat models beyond disk theft (privileged user access, data exfiltration), Why file/folder-level encryption is required in addition to disk encryption, Knowledge of AES-256 encryption, hardware acceleration (AES-NI), and performance considerations in high-IO workloads and Experience operating encryption solutions in regulated environments
- Experience deploying and managing CTE agents using automation frameworks (e.g., Ansible) rather than manual installs
- Ability to design repeatable, scalable onboarding patterns for thousands of hosts and large NAS environments
- Familiarity with change management constraints (reboots, maintenance windows, encryption sequencing) in production systems
Desired Qualifications:
- 5+ years of advanced information security architecture, design, or consulting experience
- Strong knowledge of hardware security modules (HSMs) and/or security appliances
- Strong knowledge of certificate ciphers and encryption algorithms.
- Strong knowledge, understanding and prior experiences with regulatory drivers impacting a complex and dynamic global technology environment.
- MS or MBA degree in Business, Finance, Computer Science, Engineering, or related fields
- CISSP or CISM or CISA certifications
- Microsoft Azure and/or Google Cloud certifications
- Practical experience building security solutions through abstraction layer and automation practices.
- Policy development experience
- Experience with the development and execution of strategy in a large enterprise
- Experience creating visually dynamic presentations
Job Expectations:
- Ability to work on-site in one of the listed locations in a hybrid environment
- This position is not available for visa sponsorship
Pay Range
Reflected is the base pay range offered for this position. Pay may vary depending on factors including but not limited to demonstrated examples of prior performance, skills, experience, or work location. Employees may also be eligible for incentive opportunities.
$119,000.00 - $187,000.00
Benefits
Wells Fargo provides eligible employees with a comprehensive set of benefits, many of which are listed below. Visit Benefits - Wells Fargo Jobs for an overview of the following benefit plans and programs offered to employees.
- Health benefits
- 401(k) Plan
- Paid time off
- Disability benefits
- Life insurance, critical illness insurance, and accident insurance
- Parental leave
- Critical caregiving leave
- Discounts and savings
- Commuter benefits
- Tuition reimbursement
- Scholarships for dependent children
- Adoption reimbursement
Posting End Date:
17 Apr 2026
- Job posting may come down early due to volume of applicants.
We Value Equal Opportunity
Wells Fargo is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.
Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit's risk appetite and all risk and compliance program requirements.
Applicants with Disabilities
To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo.
Drug and Alcohol Policy
Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy to learn more.
Wells Fargo Recruitment and Hiring Requirements:
a. Third-Party recordings are prohibited unless authorized by Wells Fargo.
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.

About this role
Join an exciting, fast-paced organization working on cutting edge encryption, tokenization and key management technologies, leveraged to protect information companywide. Wells Fargo is seeking a Lead Information Security Engineer working with CipherTrust Transparent Data Encryption. This role requires strong Information Technology and Information Security foundational knowledge, as well as experience with and awareness of encryption and key management technologies and engineering practices. The role closely partners with stakeholders across Wells Fargo Technology Infrastructure, Cybersecurity and lines of business to drive information protection product delivery, support business priorities and oversees the allocation of people and financial resources to ensure commitments are met and align with strategic objectives.
In this role, you will:
- Focus on delivering commitments aligned to enterprise strategic priorities
- Build support for strategies with business and technology leaders
- Guide development of actionable roadmaps and plans
- Identify opportunities and strategies for continuous improvement of product delivery practices
- Set risk management guidelines and partner with stakeholders to implement key risk initiatives
- Collaborate and influence all levels of professionals including more experienced managers
- Interface with external agencies, regulatory bodies, or industry forums
- Interpret and develop range of policies and procedures for functions with moderate to higher complexity and risk
- Lead efforts to facilitate/manage projects, products, strategic plans and execute other operational aspects on behalf of leader
- Lead efforts to define/manage required business plans (i.e. draft proposals & plans) and support related initiatives across products - including analyzing & identifying opportunities for efficiencies and innovation across internal processes and the tools to support.
- Support the product line general manager to solve problems, manage disputes and deal with any issues impacting the TI organization.
Required Qualifications:
- 5+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
- Hands-on experience designing, deploying, and operating Thales CipherTrust Transparent Encryption (CTE) for unstructured data at rest, including file, folder, and volume-level encryption
- Deep understanding of CTE agent architecture, GuardPoints, policies, and In-Place / Live Data Transformation (IDT/LDT) concepts and trade-offs
- Proven experience administering CipherTrust Manager (formerly DSM/Vormetric) for: Centralized key lifecycle management, Policy enforcement and Audit and access logging
- Strong engineering experience with Linux (RHEL, SLES), Windows, and AIX in enterprise environments
- Practical knowledge of supported file systems (e.g., ext3/ext4, NTFS, NFS, raw disk encryption scenarios) and their interaction with CTE agents
- Ability to assess kernel compatibility, AES-NI requirements, and host readiness prior to encryption enablement
- Strong understanding of data-at-rest encryption principles, including: Threat models beyond disk theft (privileged user access, data exfiltration), Why file/folder-level encryption is required in addition to disk encryption, Knowledge of AES-256 encryption, hardware acceleration (AES-NI), and performance considerations in high-IO workloads and Experience operating encryption solutions in regulated environments
- Experience deploying and managing CTE agents using automation frameworks (e.g., Ansible) rather than manual installs
- Ability to design repeatable, scalable onboarding patterns for thousands of hosts and large NAS environments
- Familiarity with change management constraints (reboots, maintenance windows, encryption sequencing) in production systems
Desired Qualifications:
- 5+ years of advanced information security architecture, design, or consulting experience
- Strong knowledge of hardware security modules (HSMs) and/or security appliances
- Strong knowledge of certificate ciphers and encryption algorithms.
- Strong knowledge, understanding and prior experiences with regulatory drivers impacting a complex and dynamic global technology environment.
- MS or MBA degree in Business, Finance, Computer Science, Engineering, or related fields
- CISSP or CISM or CISA certifications
- Microsoft Azure and/or Google Cloud certifications
- Practical experience building security solutions through abstraction layer and automation practices.
- Policy development experience
- Experience with the development and execution of strategy in a large enterprise
- Experience creating visually dynamic presentations
Job Expectations:
- Ability to work on-site in one of the listed locations in a hybrid environment
- This position is not available for visa sponsorship
Pay Range
Reflected is the base pay range offered for this position. Pay may vary depending on factors including but not limited to demonstrated examples of prior performance, skills, experience, or work location. Employees may also be eligible for incentive opportunities.
$119,000.00 - $187,000.00
Benefits
Wells Fargo provides eligible employees with a comprehensive set of benefits, many of which are listed below. Visit Benefits - Wells Fargo Jobs for an overview of the following benefit plans and programs offered to employees.
- Health benefits
- 401(k) Plan
- Paid time off
- Disability benefits
- Life insurance, critical illness insurance, and accident insurance
- Parental leave
- Critical caregiving leave
- Discounts and savings
- Commuter benefits
- Tuition reimbursement
- Scholarships for dependent children
- Adoption reimbursement
Posting End Date:
17 Apr 2026
- Job posting may come down early due to volume of applicants.
We Value Equal Opportunity
Wells Fargo is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.
Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit's risk appetite and all risk and compliance program requirements.
Applicants with Disabilities
To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo.
Drug and Alcohol Policy
Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy to learn more.
Wells Fargo Recruitment and Hiring Requirements:
a. Third-Party recordings are prohibited unless authorized by Wells Fargo.
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.
See all 58+ Infrastructure Security Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Infrastructure Security Engineer roles.
Get Access To All JobsTips for Finding TN Visa Sponsorship as an Infrastructure Security Engineer
Map your credentials to TN categories
Infrastructure Security Engineer roles must fit a recognized TN occupation, typically Computer Systems Analyst or Engineer. Confirm your degree field maps directly to the role before applying. A mismatch in credential framing is the most common reason CBP delays entry.
Target employers with recent visa filing experience
Search for companies with recent visa filings in computer systems or network security roles. Employers experienced with work visa sponsorship typically handle the offer letter and support documentation process with far fewer delays.
Get your offer letter TN-compliant before crossing
Canadian citizens present their TN documentation directly at the port of entry, so the employer's offer letter must specify your job title, duties, degree requirement, and TN classification. A vague or generic letter is grounds for CBP to deny admission on the spot.
Prepare a credential equivalency package early
If your engineering degree is from a non-U.S. institution, prepare a third-party credential evaluation before your employer finalizes your TN letter. CBP officers are not required to accept unevaluated foreign transcripts, and requesting one at the border causes immediate problems.
Search for TN-ready roles using Migrate Mate
Filter Infrastructure Security Engineer openings by TN visa sponsorship using Migrate Mate, which surfaces roles where employers have confirmed sponsorship capacity. This cuts out the back-and-forth of asking hiring managers about visa support before a formal offer.
Negotiate TN renewal terms before accepting the offer
TN status is granted in up to three-year increments with no statutory limit on renewals. Ask the employer to commit to renewing your status in writing before you sign. Some companies stop sponsoring renewals after the initial period, which leaves you in status jeopardy mid-career.
Infrastructure Security Engineer jobs are hiring across the US. Find yours.
Find Infrastructure Security Engineer JobsInfrastructure Security Engineer TN Visa: Frequently Asked Questions
Does an Infrastructure Security Engineer role actually qualify for TN visa status?
Yes, provided the role fits within a recognized TN occupation. CBP most commonly approves Infrastructure Security Engineer positions under the Computer Systems Analyst or Engineer categories. The job duties in your offer letter must reflect systems analysis, network security architecture, or related technical engineering work. Roles framed primarily around management or policy rather than technical implementation face closer scrutiny at entry.
How does TN visa sponsorship compare to H-1B for this role?
TN has no annual lottery, no cap for Canadian citizens, and no I-129 petition filing wait for Canadians crossing at the border. H-1B selection is lottery-based with roughly 85,000 slots annually, and the full process takes months before employment begins. For Infrastructure Security Engineers with a qualifying degree and a compliant offer letter, TN is a faster and more predictable path to U.S. employment than H-1B.
Where can I find Infrastructure Security Engineer jobs that explicitly offer TN visa sponsorship?
Migrate Mate is built specifically for TN, H-1B, and other work visa job searches, letting you filter Infrastructure Security Engineer openings by sponsorship type. Most general job boards don't filter by visa category, which means you spend time applying to roles where the employer won't sponsor. Searching with a visa-specific tool saves significant time in the early stages of your job search.
Can Mexican citizens use the TN visa for Infrastructure Security Engineer roles the same way Canadians can?
Mexican citizens qualify for TN status under the same USMCA occupational categories, but the process differs. You must apply at a U.S. consulate in Mexico and obtain a TN visa stamp before traveling, rather than presenting documentation at the port of entry like Canadian citizens. USCIS processes the underlying I-129 petition in some cases, and Mexican citizens are subject to a separate annual numerical limit under USMCA.
What happens to my TN status if my employer is acquired or I change jobs?
TN status is employer-specific, so a company acquisition that changes your legal employer entity or a job change to a new company requires a new TN authorization before you begin work for the new employer. Canadian citizens can handle this at the port of entry with a new offer letter and documentation. Mexican citizens must obtain a new visa stamp or file for a change of status with USCIS before starting with the new employer.
See which Infrastructure Security Engineer employers are hiring and sponsoring visas right now.
Search Infrastructure Security Engineer Jobs