Devsecops Engineer Jobs in USA with Visa Sponsorship
DevSecOps Engineers are strong H-1B visa candidates, the role meets USCIS specialty occupation standards through its required expertise in cloud security, CI/CD pipelines, and infrastructure automation. Employers actively sponsor because qualified candidates are genuinely scarce. For detailed occupation requirements, see the O*NET profile.
Find Devsecops Engineer JobsOverview
Showing 5 of 37+ Devsecops Engineer jobs










See all 37+ Devsecops Engineer Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Devsecops Engineer roles.
Get Access To All Jobs
Position Summary:
CPI is looking for a DevSecOps Engineer to join our application engineering team. This is not a traditional DevOps role. This role must recognize and imbed security across the entire application delivery lifecycle. This teammate drives efficiency into the engineering team's work, while embedding controls, automation, and threat-aware thinking into every pipeline, deployment, and platform.
You'll work at the intersection of Salesforce delivery, cloud infrastructure, and application security, partnering with engineers and security teammates to ship faster and safer.
Key Responsibilities:
- Manage release engineering, branching strategies, automated deployments, metadata diffing, sandbox seeding, and rollback playbooks (Salesforce/GearSet are currently core applications)
- Design and operate secure CI/CD pipelines and cloud-native services (Salesforce, AWS, Snowflake)
- Work in conjunction with other IT teammates to identify and resolve technical pipeline issues and escalate items while retaining ownership
- Embed automated security gates (SAST, DAST, SCA, IaC scanning), container image scanning, and secrets detection directly into developer workflows
- Support and extend AI and Snyk code quality gates
- Architect and maintain AWS infrastructure IaC (Terraform), with security baselines enforced via policy-as-code
- Containerize workloads with Docker, orchestrate via ECS/EKS (or AKS), and harden images against CVEs and supply-chain attacks (SBOMs, signing, provenance)
- Partner with security team for pipeline incident response and infrastructure security events and postmortems
- Continuously evaluate tool alerts and reduce alert fatigue through tuning and automation
- Support and troubleshoot all pipeline & IaC tools to ensure engineering adoption
- Contribute to scrum ceremonies as a technical voice on delivery, release readiness, and risk
Core Experience
- 10+ years of professional software development experience across one or more of: Java, .NET/C#, Python, Node.js, or Apex
- 5+ years in a DevOps, SRE, or Platform Engineering role, with at least the last 2 years explicitly focused on DevSecOps practices
- Demonstrated history of owning production systems end-to-end (design, deployment, monitoring, and incident response)
- Independent problem solver able to investigate, identify, evaluate, and drive practical solutions
Salesforce Delivery
- Hands-on experience for Salesforce CI/CD: pipeline configuration, automated testing, problem analysis, and unit test coverage enforcement (GearSet preferred)
- Strong understanding of Salesforce metadata, sandbox strategy, and Apex test automation
- Experience integrating Salesforce deployments with Git-based source-of-truth workflows
Cloud & Infrastructure
- AWS at depth: IAM, VPC design, KMS, Secrets Manager, GuardDuty, Security Hub, CloudTrail, Config, WAF
- Docker and container orchestration (ECS, EKS, or Kubernetes) in production
- Infrastructure as Code: Terraform (preferred) with modular, reusable, policy-checked patterns.
- CI/CD platforms: GitHub Actions, GitLab CI, Jenkins, or CircleCI
Security Tooling & Practices
- SAST/DAST/SCA tooling; e.g. Snyk (preferrable), Checkmarx, SonarQube
- Container/image scanning, SBOM generation, and policy-as-code
Soft Skills
- Strong communication — you can explain a vulnerability to an executive and a regex to a junior engineer in the same afternoon
- Pragmatic risk thinker — you know when to block a deploy and when to file a ticket
- Collaborative; sensitive to "security as a department of no"
Nice to Have
- Salesforce certifications (Platform Developer I/II)
- AWS certifications (Solutions Architect Professional, Security Specialty)
See all 37+ Devsecops Engineer Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Devsecops Engineer roles.
Get Access To All JobsTips for Finding Visa Sponsorship as a Devsecops Engineer
Frame your skills around the specialty occupation standard
USCIS approves H-1B petitions when the role requires a specific bachelor's degree or higher. Emphasize that your position demands a degree in computer science, cybersecurity, or information systems, not just general IT experience.
Target employers with a proven H-1B track record
Large tech firms, defense contractors, and financial institutions file H-1B petitions for DevSecOps roles regularly. Companies with established immigration programs move faster and make fewer petition errors than first-time sponsors.
Certifications strengthen your petition, not just your resume
CISSP, AWS Security Specialty, and CKS certifications signal specialized knowledge that supports the specialty occupation argument. Include them in your visa documentation, not just your job applications, they reinforce degree equivalency.
Address the security clearance question early
Some DevSecOps roles require U.S. security clearances, which visa holders typically cannot obtain. Clarify clearance requirements before investing time in the application process to avoid late-stage rejections.
Get your job description language right before the LCA is filed
The Labor Condition Application must reflect actual job duties. Vague descriptions like 'supports security operations' are weaker than 'designs and implements automated vulnerability scanning pipelines in Kubernetes environments.' Work with your employer on specificity.
Use Migrate Mate to filter for verified sponsoring employers
Not every job posting that lists DevSecOps duties is from a company willing to sponsor. Migrate Mate surfaces roles from employers who have sponsored visas before, saving you from applying to positions that will stall at the immigration stage.
Frequently Asked Questions
Does DevSecOps qualify as a specialty occupation for H-1B purposes?
Yes, DevSecOps Engineer consistently qualifies as a specialty occupation under USCIS standards. The role requires theoretical and practical application of highly specialized knowledge in security engineering, cloud infrastructure, and software development, and a bachelor's degree or higher in computer science, cybersecurity, or a closely related field is a normal industry requirement for entry into the position.
What degree do I need for an employer to sponsor my H-1B as a DevSecOps Engineer?
A bachelor's degree in computer science, information security, software engineering, or a related technical field is the standard requirement. If your degree is in a different field, substantial coursework in security or systems combined with relevant certifications (CISSP, AWS Security Specialty) may support the petition, but your employer's immigration attorney will need to build that argument carefully.
Are DevSecOps roles harder to sponsor than general software engineering roles?
Not harder, but more scrutinized. USCIS pays close attention to job descriptions that blend operations and development, sometimes questioning whether the role is truly specialized or more of a generalist IT position. A well-drafted petition that details specific security engineering duties, required tools, and degree alignment addresses this directly. Employers who sponsor frequently know how to structure these petitions.
Can I find DevSecOps jobs that explicitly offer visa sponsorship?
Yes. Migrate Mate lists DevSecOps Engineer roles from employers with confirmed H-1B visa sponsorship history, so you're not guessing which postings are realistic. Many DevSecOps openings at cloud-native companies, defense technology firms, and large financial institutions include sponsorship as a standard hiring option given how difficult these roles are to fill domestically.
Do security clearance requirements disqualify visa holders from DevSecOps roles?
For roles requiring active U.S. security clearances (Secret, Top Secret, TS/SCI), visa holders are generally ineligible because clearances require U.S. citizenship or permanent residency. However, many DevSecOps positions at commercial companies, cloud providers, and non-defense contractors have no clearance requirement. Filter your search to clearance-optional roles to avoid wasted applications.
What is the prevailing wage requirement for sponsored Devsecops Engineer jobs?
U.S. employers sponsoring a visa must pay at least the prevailing wage, which is what workers in the same role, area, and experience level typically earn. The Department of Labor sets this rate to make sure companies aren't hiring foreign workers simply because they'd accept lower pay than a U.S. worker. It varies by job title, location, and experience. You can look up current prevailing wage rates for any occupation and location using the OFLC Wage Search page.