Cloud Security Engineer Jobs in USA with Visa Sponsorship
Cloud security engineer roles qualify for H-1B visa, E-3 visa, and TN visa sponsorship as specialty occupations requiring cybersecurity or computer science expertise. Major cloud providers and enterprises actively sponsor these positions, with strong approval rates due to clear degree requirements and critical infrastructure security needs. For detailed occupation requirements, see the O*NET profile.
See All Cloud Security Engineer JobsOverview
Showing 5 of 990+ Cloud Security Engineer jobs


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?
See all 990+ Cloud Security Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Cloud Security Engineer roles.
Get Access To All Jobs
INTRODUCTION
Dentsply Sirona is the world’s largest manufacturer of professional dental products and technologies, with a 130-year history of innovation and service to the dental industry and patients worldwide. Dentsply Sirona develops, manufactures, and markets a comprehensive solutions offering including dental and oral health products as well as other consumable medical devices under a strong portfolio of world class brands. Dentsply Sirona’s products provide innovative, high-quality and effective solutions to advance patient care and deliver better and safer dentistry. Dentsply Sirona’s global headquarters is located in Charlotte, North Carolina. The company’s shares are listed in the United States on NASDAQ under the symbol XRAY.
Bringing out the best in people
As advanced as dentistry is today, we are dedicated to making it even better. Our people have a passion for innovation and are committed to applying it to improve dental care. We live and breathe high performance, working as one global team, bringing out the best in each other for the benefit of dental patients, and the professionals who serve them. If you want to grow and develop as a part of a team that is shaping an industry, then we’re looking for the best to join us.
Working at Dentsply Sirona you are able to:
Develop faster - with our commitment to the best professional development.
Perform better - as part of a high-performance, empowering culture.
Shape an industry - with a market leader that continues to drive innovation.
Make a difference - by helping improve oral health worldwide.
ROLE AND RESPONSIBILITIES
The Senior Google Cloud Security Engineer is a senior-level individual contributor within Dentsply Sirona’s Security Architecture and Engineering organization. This role partners closely with the Google Cloud Platform (GCP) engineering and operations teams and Security stakeholders to help design, implement, and continuously improve secure-by-default cloud foundations and security controls that enable business delivery while reducing risk.
This position leads security architecture and engineering initiatives that strengthen the confidentiality, integrity, availability, and resilience of GCP workloads and data through guardrails, automation, and clear security patterns that scale. In addition, the role owns day-to-day administration and ongoing maturity of the SecOps SIEM (Google Security Operations / Chronicle), including log onboarding, detection engineering, tuning, and operational reporting in partnership with Security Operations and Incident Response.
Role Scope Includes:
- Defining and implementing secure GCP reference architectures (landing zone, org/policy guardrails, identity, network segmentation, encryption, logging) and reusable security patterns.
- Engineering preventive and detective controls using automation and infrastructure-as-code (guardrails, baselines, continuous configuration enforcement).
- Coordinating with platform and application teams to integrate security into CI/CD pipelines and deployment workflows (including workload/container security).
- Owning SecOps SIEM administration and detection engineering: log onboarding, parsing/normalization, rule development, tuning, dashboards, and alerting.
- Driving cloud security risk reduction through security reviews, threat modeling, and remediation of critical findings across GCP services.
- Contributing to audit readiness and control evidence for cloud controls (access management, logging, encryption, vulnerability management).
Cloud Security Architecture & Engineering
- Partner with the Google Cloud team to design secure cloud architectures, including IAM/least privilege, network security, encryption, secrets management, and logging/monitoring standards.
- Define and maintain GCP security reference architectures and guardrails aligned to enterprise security policies and industry frameworks (e.g., risk management and control objectives).
- Lead threat modeling and architecture risk reviews for new GCP services, platforms, and major migrations; document decisions and required controls/compensations.
Security Engineering, Automation & DevSecOps
- Engineer scalable security controls using automation and infrastructure-as-code (baseline policies, configuration validation, continuous compliance checks).
- Integrate security controls into CI/CD (policy checks, IaC validation, secrets detection, artifact/image scanning) to enable secure delivery with minimal friction.
- Develop reusable security modules, patterns, and documentation that drive consistent adoption across teams.
SecOps SIEM Ownership (Google Security Operations / Chronicle)
- Administer and mature the SecOps SIEM platform: data ingestion, log onboarding, parsing/normalization, content management, and access controls.
- Lead detection engineering: build, tune, and maintain high-fidelity detections and analytics based on threat intelligence and observed attacker techniques; reduce false positives through iterative tuning.
- Develop dashboards and reporting to support SOC performance, cloud visibility, and executive-level risk insights.
- Partner with Incident Response/Threat Hunting/Cloud Engineering to investigate cloud events and improve telemetry and detections.
Risk Reduction, Compliance & Continuous Improvement
- Drive remediation of critical/high cloud findings by coordinating with owners, validating fixes, and ensuring controls remain effective over time.
- Support internal and external audits by producing evidence for cloud control operation (logging, access governance, encryption, vulnerability management, change control).
- Contribute to security standards, patterns, and runbooks; participate in lessons learned and resilience readiness improvements.
Success Measures (examples)
- Increase GCP log coverage in the SIEM (priority log sources onboarded; improved parsing/normalization quality).
- Improve detection quality (signal-to-noise ratio through tuning; timely deployment of new detections for emerging threats).
- Reduce critical cloud security findings over time through guardrails, automation, and effective remediation partnership.
- Improve time-to-visibility for new GCP projects/workloads by delivering reusable secure patterns and automation.
Stretch Goal (beyond KPIs)
- Deliver a secure-by-default GCP landing zone + standardized security blueprint adopted broadly for new workloads, with measurable reduction in repeat security findings and faster, safer onboarding of new cloud projects.
Job Requirements
Education
- Bachelor's degree (or higher) in Cybersecurity, Computer Science, Information Systems, Engineering, or related field (or equivalent practical experience)
Experience
- 7+ years of professional experience in cybersecurity, including significant hands-on experience in cloud security architecture and engineering
- 3+ years securing Google Cloud Platform (GCP) environments across identity, network security, encryption, and logging/monitoring
- Hands-on experience administering or engineering detections in a modern SIEM (Google Security Operations/Chronicle preferred; comparable SIEM acceptable)
- Proven track record partnering with cloud platform teams and application teams to deliver security improvements through engineering, automation, and standards
Key Skills & Knowledge
- Strong grounding in cloud security architecture: least privilege, defense-in-depth, secure network design, encryption, and secure delivery practices
- Practical knowledge of GCP security capabilities (IAM, org/policy guardrails, security posture management concepts, logging/monitoring, key management/encryption)
- Security automation and infrastructure-as-code experience (Terraform or equivalent) and scripting (Python or equivalent)
- Detection engineering fundamentals: log onboarding, parsing/normalization, query languages, alert tuning, and dashboarding
- Threat modeling, security review, and risk translation into pragmatic engineering requirements
- Strong communication and ability to coordinate across multiple technical teams
Certifications Preferred (globally recognized)
- Google Professional Cloud Security Engineer (highly relevant)
- CSSP and/or CISSP
- Relevant GIAC certifications aligned to cloud/IR/detection engineering (e.g. incident response/threat detection), or equivalent credentials
Dentsply Sirona is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, sexual orientation, disability, or protected Veteran status. We appreciate your interest in Dentsply Sirona.
If you need assistance with completing the online application due to a disability, please send an accommodation request to careers@dentsplysirona.com. Please be sure to include “Accommodation Request” in the subject.
For California Residents:
We may collect the following categories of personal information in connection with the submission of your resume or application materials to us for employment, and if hired, your employment with us: identifiers (e.g., name, address, email address, birthdate); personal records (e.g., telephone number, signature, education information, criminal background information, passport number and visa information); consumer characteristics (e.g., sex, marital status, veteran status, race, disability, sexual orientation); professional or employment information (e.g., resume, cover letter, employment history, background check forms, references, certifications, transcripts and languages spoken); and inferences from personal information collected (e.g., a profile reflecting abilities and aptitudes).
The above categories of personal information are collected for the following business purposes: performing recruitment and hiring services; processing interactions and transactions (e.g., to comply with federal and state laws requiring us to maintain certain records, managing the workforce); and security (e.g., detecting security incidents, protecting against fraudulent or illegal activity).
For additional details and questions, contact us at careers@dentsplysirona.com

INTRODUCTION
Dentsply Sirona is the world’s largest manufacturer of professional dental products and technologies, with a 130-year history of innovation and service to the dental industry and patients worldwide. Dentsply Sirona develops, manufactures, and markets a comprehensive solutions offering including dental and oral health products as well as other consumable medical devices under a strong portfolio of world class brands. Dentsply Sirona’s products provide innovative, high-quality and effective solutions to advance patient care and deliver better and safer dentistry. Dentsply Sirona’s global headquarters is located in Charlotte, North Carolina. The company’s shares are listed in the United States on NASDAQ under the symbol XRAY.
Bringing out the best in people
As advanced as dentistry is today, we are dedicated to making it even better. Our people have a passion for innovation and are committed to applying it to improve dental care. We live and breathe high performance, working as one global team, bringing out the best in each other for the benefit of dental patients, and the professionals who serve them. If you want to grow and develop as a part of a team that is shaping an industry, then we’re looking for the best to join us.
Working at Dentsply Sirona you are able to:
Develop faster - with our commitment to the best professional development.
Perform better - as part of a high-performance, empowering culture.
Shape an industry - with a market leader that continues to drive innovation.
Make a difference - by helping improve oral health worldwide.
ROLE AND RESPONSIBILITIES
The Senior Google Cloud Security Engineer is a senior-level individual contributor within Dentsply Sirona’s Security Architecture and Engineering organization. This role partners closely with the Google Cloud Platform (GCP) engineering and operations teams and Security stakeholders to help design, implement, and continuously improve secure-by-default cloud foundations and security controls that enable business delivery while reducing risk.
This position leads security architecture and engineering initiatives that strengthen the confidentiality, integrity, availability, and resilience of GCP workloads and data through guardrails, automation, and clear security patterns that scale. In addition, the role owns day-to-day administration and ongoing maturity of the SecOps SIEM (Google Security Operations / Chronicle), including log onboarding, detection engineering, tuning, and operational reporting in partnership with Security Operations and Incident Response.
Role Scope Includes:
- Defining and implementing secure GCP reference architectures (landing zone, org/policy guardrails, identity, network segmentation, encryption, logging) and reusable security patterns.
- Engineering preventive and detective controls using automation and infrastructure-as-code (guardrails, baselines, continuous configuration enforcement).
- Coordinating with platform and application teams to integrate security into CI/CD pipelines and deployment workflows (including workload/container security).
- Owning SecOps SIEM administration and detection engineering: log onboarding, parsing/normalization, rule development, tuning, dashboards, and alerting.
- Driving cloud security risk reduction through security reviews, threat modeling, and remediation of critical findings across GCP services.
- Contributing to audit readiness and control evidence for cloud controls (access management, logging, encryption, vulnerability management).
Cloud Security Architecture & Engineering
- Partner with the Google Cloud team to design secure cloud architectures, including IAM/least privilege, network security, encryption, secrets management, and logging/monitoring standards.
- Define and maintain GCP security reference architectures and guardrails aligned to enterprise security policies and industry frameworks (e.g., risk management and control objectives).
- Lead threat modeling and architecture risk reviews for new GCP services, platforms, and major migrations; document decisions and required controls/compensations.
Security Engineering, Automation & DevSecOps
- Engineer scalable security controls using automation and infrastructure-as-code (baseline policies, configuration validation, continuous compliance checks).
- Integrate security controls into CI/CD (policy checks, IaC validation, secrets detection, artifact/image scanning) to enable secure delivery with minimal friction.
- Develop reusable security modules, patterns, and documentation that drive consistent adoption across teams.
SecOps SIEM Ownership (Google Security Operations / Chronicle)
- Administer and mature the SecOps SIEM platform: data ingestion, log onboarding, parsing/normalization, content management, and access controls.
- Lead detection engineering: build, tune, and maintain high-fidelity detections and analytics based on threat intelligence and observed attacker techniques; reduce false positives through iterative tuning.
- Develop dashboards and reporting to support SOC performance, cloud visibility, and executive-level risk insights.
- Partner with Incident Response/Threat Hunting/Cloud Engineering to investigate cloud events and improve telemetry and detections.
Risk Reduction, Compliance & Continuous Improvement
- Drive remediation of critical/high cloud findings by coordinating with owners, validating fixes, and ensuring controls remain effective over time.
- Support internal and external audits by producing evidence for cloud control operation (logging, access governance, encryption, vulnerability management, change control).
- Contribute to security standards, patterns, and runbooks; participate in lessons learned and resilience readiness improvements.
Success Measures (examples)
- Increase GCP log coverage in the SIEM (priority log sources onboarded; improved parsing/normalization quality).
- Improve detection quality (signal-to-noise ratio through tuning; timely deployment of new detections for emerging threats).
- Reduce critical cloud security findings over time through guardrails, automation, and effective remediation partnership.
- Improve time-to-visibility for new GCP projects/workloads by delivering reusable secure patterns and automation.
Stretch Goal (beyond KPIs)
- Deliver a secure-by-default GCP landing zone + standardized security blueprint adopted broadly for new workloads, with measurable reduction in repeat security findings and faster, safer onboarding of new cloud projects.
Job Requirements
Education
- Bachelor's degree (or higher) in Cybersecurity, Computer Science, Information Systems, Engineering, or related field (or equivalent practical experience)
Experience
- 7+ years of professional experience in cybersecurity, including significant hands-on experience in cloud security architecture and engineering
- 3+ years securing Google Cloud Platform (GCP) environments across identity, network security, encryption, and logging/monitoring
- Hands-on experience administering or engineering detections in a modern SIEM (Google Security Operations/Chronicle preferred; comparable SIEM acceptable)
- Proven track record partnering with cloud platform teams and application teams to deliver security improvements through engineering, automation, and standards
Key Skills & Knowledge
- Strong grounding in cloud security architecture: least privilege, defense-in-depth, secure network design, encryption, and secure delivery practices
- Practical knowledge of GCP security capabilities (IAM, org/policy guardrails, security posture management concepts, logging/monitoring, key management/encryption)
- Security automation and infrastructure-as-code experience (Terraform or equivalent) and scripting (Python or equivalent)
- Detection engineering fundamentals: log onboarding, parsing/normalization, query languages, alert tuning, and dashboarding
- Threat modeling, security review, and risk translation into pragmatic engineering requirements
- Strong communication and ability to coordinate across multiple technical teams
Certifications Preferred (globally recognized)
- Google Professional Cloud Security Engineer (highly relevant)
- CSSP and/or CISSP
- Relevant GIAC certifications aligned to cloud/IR/detection engineering (e.g. incident response/threat detection), or equivalent credentials
Dentsply Sirona is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, sexual orientation, disability, or protected Veteran status. We appreciate your interest in Dentsply Sirona.
If you need assistance with completing the online application due to a disability, please send an accommodation request to careers@dentsplysirona.com. Please be sure to include “Accommodation Request” in the subject.
For California Residents:
We may collect the following categories of personal information in connection with the submission of your resume or application materials to us for employment, and if hired, your employment with us: identifiers (e.g., name, address, email address, birthdate); personal records (e.g., telephone number, signature, education information, criminal background information, passport number and visa information); consumer characteristics (e.g., sex, marital status, veteran status, race, disability, sexual orientation); professional or employment information (e.g., resume, cover letter, employment history, background check forms, references, certifications, transcripts and languages spoken); and inferences from personal information collected (e.g., a profile reflecting abilities and aptitudes).
The above categories of personal information are collected for the following business purposes: performing recruitment and hiring services; processing interactions and transactions (e.g., to comply with federal and state laws requiring us to maintain certain records, managing the workforce); and security (e.g., detecting security incidents, protecting against fraudulent or illegal activity).
For additional details and questions, contact us at careers@dentsplysirona.com
See all 990+ Cloud Security Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Cloud Security Engineer roles.
Get Access To All JobsTips for Finding Visa Sponsorship as a Cloud Security Engineer
Target cloud-focused employers with security mandates
Cloud service providers, financial institutions, and healthcare companies have the highest sponsorship rates for security roles due to compliance requirements and critical infrastructure protection needs.
Emphasize cloud platform certifications alongside your degree
AWS Security Specialty, Azure Security Engineer, or GCP Professional Cloud Security certifications strengthen your specialty occupation case and demonstrate employer-specific skill requirements.
Highlight incident response and compliance experience
Experience with SOC 2, FedRAMP, or GDPR compliance demonstrates specialized knowledge that supports H-1B specialty occupation requirements and shows immediate business value.
Focus on DevSecOps and infrastructure-as-code skills
Terraform security, Kubernetes security policies, and CI/CD pipeline protection are highly specialized skills that strengthen visa applications and increase employer sponsorship willingness.
Apply to companies with existing cloud security teams
Organizations with established cloud security practices are more likely to understand visa processes and have experience sponsoring similar roles with successful outcomes.
Consider federal contractors requiring security clearances
Defense contractors and government vendors often sponsor H-1B visas for cloud security roles, though security clearance requirements may limit some positions initially.
Cloud Security Engineer jobs are hiring across the US. Find yours.
Find Cloud Security Engineer JobsFrequently Asked Questions
What degree do I need for H-1B sponsorship as a cloud security engineer?
A bachelor's degree in cybersecurity, computer science, information technology, or a related technical field typically qualifies. Engineering degrees with cybersecurity coursework or certifications also work. The key is demonstrating that your education directly relates to cloud security responsibilities through coursework in networking, cryptography, or systems security.
Do cloud security engineer roles have high H-1B approval rates?
Yes, cloud security positions generally have strong approval rates because they clearly qualify as specialty occupations requiring specific technical expertise. USCIS recognizes cybersecurity as a specialized field, and the critical nature of cloud security makes the business necessity easier to demonstrate in petitions.
Can I get sponsored without prior cloud security experience?
Many employers will sponsor candidates with general cybersecurity or network security backgrounds who show cloud platform knowledge through certifications or projects. Entry-level cloud security roles often accept systems administrators or security analysts willing to specialize in cloud environments with relevant training.
How to find Cloud Security Engineer jobs with visa sponsorship?
To find Cloud Security Engineer jobs with visa sponsorship, use Migrate Mate, which specializes in connecting international candidates with sponsoring employers. Focus on tech companies, cloud service providers, financial institutions, and government contractors that frequently hire for these roles and commonly sponsor H-1B, O-1, and other work visas for cybersecurity professionals with cloud expertise.
Which visa types work best for cloud security engineers?
H-1B is most common for all nationalities. Australians can use the uncapped E-3 visa, while Canadians and Mexicans may qualify for TN status under the Computer Systems Analyst category if their role focuses on security analysis rather than hands-on implementation.
Do I need security clearance eligibility for cloud security jobs?
Not for most private sector roles, but many high-paying positions at defense contractors or cloud providers serving government clients prefer or require clearance eligibility. U.S. citizenship or permanent residency is typically required for security clearances, which can limit visa holders to commercial cloud security positions initially.
What is the prevailing wage requirement for sponsored Cloud Security Engineer jobs?
U.S. employers sponsoring a visa must pay at least the prevailing wage, which is what workers in the same role, area, and experience level typically earn. The Department of Labor sets this rate to make sure companies aren't hiring foreign workers simply because they'd accept lower pay than a U.S. worker. It varies by job title, location, and experience. You can look up current prevailing wage rates for any occupation and location using the OFLC Wage Search page.
See which Cloud Security Engineer employers are hiring and sponsoring visas right now.
Search Cloud Security Engineer Jobs