Cybersecurity Jobs in USA with Visa Sponsorship
Cybersecurity professionals are in exceptionally high demand in the US, with hundreds of thousands of unfilled positions nationwide creating strong employer willingness to sponsor international talent. Most sponsored roles are in the private sector at tech companies, financial institutions, and healthcare organizations, since government and defense positions typically require security clearances limited to US citizens. Industry certifications such as CISSP, CompTIA Security+, and CEH carry significant weight in both hiring and visa petition support. For detailed occupation requirements, see the O*NET profile.
Find Cybersecurity JobsOverview
Showing 5 of 4,919+ Cybersecurity jobs


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?
See all 4,919+ Cybersecurity Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Cybersecurity roles.
Get Access To All Jobs
Description
Position at SoFi
Employee Applicant Privacy Notice
Who we are:
Shape a brighter financial future with us.
Together with our members, we’re changing the way people think about and interact with personal finance.
We’re a next-generation financial services company and national bank using innovative, mobile-first technology to help our millions of members reach their goals. The industry is going through an unprecedented transformation, and we’re at the forefront. We’re proud to come to work every day knowing that what we do has a direct impact on people’s lives, with our core values guiding us every step of the way. Join us to invest in yourself, your career, and the financial world.
The Role:
We are seeking a Cybersecurity Incident Commander to join SoFi’s Cyber Defense program and lead incident command efforts across the organization. This role will serve as a central driver for security incident response, ensuring effective management of day-to-day incidents as well as large-scale, high-impact cybersecurity events.
The SOC team is responsible for monitoring, analyzing, and responding to security events across SoFi’s infrastructure and applications. As a dedicated incident response resource within Cyber Defense, you will coordinate cross-functional response efforts, maintain incident command structure during active events, and ensure consistent communication, documentation, and resolution tracking.
This is a highly visible role that partners closely with SOC Analysts, Threat Research, Offensive Security, Tools Automation & Operations (TAO), Engineering, IT, Legal, Risk, Executive team, and other stakeholders to drive timely containment, eradication, and recovery. The ideal candidate thrives in fast-paced environments, brings structure to ambiguity, has exceptional communication skills, and can effectively drive complex incidents from detection through post-incident review.
What You’ll Do:
- Serve as the primary Security Incident Commander for security incidents identified by the SOC.
- Lead and manage the end-to-end lifecycle of security incidents, including triage validation, containment, eradication, recovery, and closure.
- Establish and maintain incident command during high-severity or large-scale incidents.
- Drive cross-functional collaboration and decision making across technical and business teams to ensure timely and effective response.
- Facilitate incident communication, coordinate response resources, and maintain clear situational awareness for all engaged.
- Ensure consistent documentation of incident timelines, impact assessments, decisions, evidence chain of custody, and actions taken.
- Develop and maintain incident severity classifications and escalation criteria that are aligned with organizational and business needs and expectations.
- Provide executive-ready status updates and summaries during major incidents.
- Coordinate post-incident reviews, including root cause analysis, lessons learned, and tracking of remediation actions.
- Identify and facilitate opportunities to improve incident response processes, playbooks, and communication workflows.
- Partner with SOC leadership to enhance incident metrics, reporting, and operational maturity.
- Organize and participate in tabletop exercises, simulations, and readiness activities to improve Cyber Defense and SOC response capabilities.
What You’ll Need:
- 3–7+ years of experience in cybersecurity operations, incident response, or SOC environments.
- Direct experience coordinating or leading security incident response efforts in enterprise environments.
- Strong understanding of the incident response lifecycle and frameworks (e.g., NIST 800-61).
- Experience handling high-severity incidents such as ransomware, business email compromise, insider threats, cloud compromise, or data exfiltration events.
- Ability to interpret technical findings and translate them into clear, actionable updates for both technical and non-technical stakeholders.
- Excellent written and verbal communication skills, especially in high-pressure situations.
- Strong organizational skills with the ability to manage multiple concurrent incidents.
- Experience facilitating cross-functional communication across various media channels and driving accountability during live incidents.
- Ability to operate independently while collaborating effectively across distributed teams.
Nice to Have:
- Experience in a formal CSIRT or Incident Commander role.
- Working knowledge of security technologies such as SIEM, EDR, email security, IAM, cloud security controls, and network monitoring tools.
- Knowledge of regulatory and compliance considerations (e.g., financial services, PCI, SOX, GLBA).
- Experience directing or conducting digital forensics or deep technical investigations.
- Familiarity with cloud-native security incident response (AWS, GCP, or Azure).
- Exposure to MITRE ATT&CK framework and threat intelligence integration.
- Relevant certifications such as GCIA, GCIH, GCED, CISSP, CISM, or similar.
- Experience developing or maintaining incident response playbooks and runbooks.
Compensation and Benefits
The base pay range for this role is listed below. Final base pay offer will be determined based on individual factors such as the candidate’s experience, skills, and location.
To view all of our comprehensive and competitive benefits, visit our Benefits at SoFi page!
- Pay range: $134,400.00 - $231,000.00
- Payment frequency: Annual
This role is also eligible for a bonus, long term incentives and competitive benefits. More information about our employee benefits can be found in the link above.
SoFi provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion (including religious dress and grooming practices), sex (including pregnancy, childbirth and related medical conditions, breastfeeding, and conditions related to breastfeeding), gender, gender identity, gender expression, national origin, ancestry, age (40 or over), physical or medical disability, medical condition, marital status, registered domestic partner status, sexual orientation, genetic information, military and/or veteran status, or any other basis prohibited by applicable state or federal law.
The Company hires the best qualified candidate for the job, without regard to protected characteristics.
Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
New York applicants: Notice of Employee Rights
SoFi is committed to an inclusive culture. As part of this commitment, SoFi offers reasonable accommodations to candidates with physical or mental disabilities. If you need accommodations to participate in the job application or interview process, please let your recruiter know or email accommodations@sofi.com.
Due to insurance coverage issues, we are unable to accommodate remote work from Hawaii or Alaska at this time.
Internal Employees
If you are a current employee, do not apply here - please navigate to our Internal Job Board in Greenhouse to apply to our open roles.
See all 4,919+ Cybersecurity Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Cybersecurity roles.
Get Access To All JobsTips for Finding Cybersecurity Jobs
Take advantage of the cybersecurity talent shortage
The U.S. has hundreds of thousands of unfilled cybersecurity positions, which works in your favor for sponsorship. Employers facing critical security staffing gaps are more willing to sponsor visas when they can't find qualified domestic candidates.
Earn industry certifications that employers prioritize
CISSP, CISM, CEH, and CompTIA Security+ are among the most recognized cybersecurity credentials. Holding one or more of these certifications makes your specialty occupation case clearer and signals readiness for senior security roles.
Focus on private-sector roles that don't require security clearance
Many government and defense cybersecurity positions require U.S. security clearance, which is limited to citizens and permanent residents. Target private-sector companies, financial institutions, and healthcare organizations where clearance is not a barrier.
Specialize in cloud security or application security
Cloud security architects, AppSec engineers, and penetration testers are among the hardest cybersecurity roles to fill. Specializing in one of these areas makes you a stronger sponsorship candidate than a generalist security analyst.
Use STEM OPT to build your security track record
Cybersecurity and information security degrees are STEM-eligible, providing 12 months of OPT plus a 24-month STEM extension. Use this time to earn certifications, respond to real incidents, and build the experience that makes you an obvious sponsorship candidate.
Explore cap-exempt cybersecurity roles at universities and research institutions
University IT security teams and federally funded research centers are H-1B cap-exempt. These roles let you bypass the lottery entirely and can serve as a stepping stone to private-sector positions once you have U.S. work experience.
Frequently Asked Questions
Do cybersecurity roles with visa sponsorship require security clearances?
Most sponsored cybersecurity positions do not require security clearances. Clearances are primarily required for government agencies, defense contractors, and intelligence community roles, and are generally limited to U.S. citizens or permanent residents. Private-sector roles at technology companies, financial institutions, healthcare systems, and managed security service providers rarely require clearances and are where the vast majority of sponsorship occurs.
Does the cybersecurity talent shortage actually make it easier to get sponsored?
Yes. With hundreds of thousands of unfilled cybersecurity positions in the U.S., employers face sustained difficulty hiring domestically, which increases their willingness to invest in visa sponsorship. This shortage also strengthens the labor market test for green card processing (PERM labor certification), as employers can more easily demonstrate that qualified U.S. workers are unavailable. Candidates with hands-on experience in penetration testing, incident response, or cloud security are in particularly strong positions.
Which cybersecurity certifications strengthen a visa petition?
CISSP, CompTIA Security+, CEH (Certified Ethical Hacker), and OSCP are the most recognized credentials and carry weight in both hiring and immigration documentation. These certifications provide concrete evidence that the role demands specialized knowledge beyond a general IT background. While certifications alone do not replace the bachelor's degree requirement for H-1B visa, they meaningfully support the specialty occupation argument when included in the petition package.
Can cybersecurity professionals qualify for the O-1 visa?
Yes, if you have notable contributions to the field. Published vulnerability disclosures, conference presentations at events like DEF CON or Black Hat, widely used open-source security tools, or significant bug bounty achievements can all serve as evidence of extraordinary ability. The O-1 visa bypasses the H-1B lottery and has no annual cap, making it a strong alternative for cybersecurity researchers and practitioners with a visible track record.
How to find Cybersecurity jobs with visa sponsorship?
To find cybersecurity jobs with visa sponsorship, use Migrate Mate, which specializes in connecting international talent with sponsoring employers. Focus on tech companies, financial institutions, government contractors, and healthcare organizations that frequently sponsor H-1B, O-1, and TN visas for cybersecurity professionals. Filter searches by roles like Security Analyst, Penetration Tester, and CISO positions.
What cybersecurity specializations are most in demand for visa sponsorship?
Cloud security, application security, and incident response are among the highest-demand specializations because they require deep technical expertise that is genuinely scarce. Security engineering roles at SaaS companies and financial institutions are particularly well-sponsored. GRC (governance, risk, and compliance) roles can also qualify but may face more H-1B scrutiny since USCIS sometimes questions whether these positions require a specific technical degree.
What is the prevailing wage requirement for sponsored Cybersecurity jobs?
When a U.S. employer sponsors a foreign worker for a work visa, they are legally required to pay at least the "prevailing wage", the average wage paid to workers in the same occupation, in the same geographic area, with similar experience. This is set by the Department of Labor to prevent employers from hiring foreign workers at below-market rates. The prevailing wage varies significantly by role, location, and experience level. For example, a cybersecurity in California will have a different prevailing wage than the same role in a smaller state. You can look up current prevailing wage rates for any occupation and location using the OFLC Wage Search Page.