Information Security Specialist Jobs in USA with Visa Sponsorship
Information Security Specialists are in high demand from U.S. employers willing to sponsor H-1B visa and E-3 visas. The role qualifies as a specialty occupation, and USCIS has a strong track record of approving petitions for cybersecurity positions requiring a bachelor's degree in computer science, information systems, or a related field. For detailed occupation requirements, see the O*NET profile.
Find Information Security Specialist JobsOverview
Showing 5 of 20,156+ Information Security Specialist jobs










See all 20,156+ Information Security Specialist Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Information Security Specialist roles.
Get Access To All Jobs
INTRODUCTION
The Vice President (VP), Information Security & Risk is responsible for leading the execution and continuous improvement of the Thresholds information security and risk management program. The scope of the program is the protection of Thresholds’ information and technology assets as well as Thresholds’ digital data in the cloud. The VP, Information Security & Risk is accountable for fulfilling the program’s protection and compliance requirements while enabling innovation, analytics, and digital transformation in a secure and compliant manner; provides strong technical leadership; and serves as a trusted advisor to the Chief Information Officer and agency leaders in addition to serving as the agency’s designated security official.
ESSENTIAL DUTIES & RESPONSIBILITIES:
Security Operations and Execution
- Manages the day-to-day information security operations, including security posture and event monitoring, threat and vulnerability identification, policy violation, access control and attack surface monitoring, monitoring the effectiveness of email and URL filtering, and incident response activities.
- Manages the remediation of security issues, policy violation, ineffective rules for access control, attack surface reduction, and email/URL filtering as well as the creation and maintenance of standard operating procedures for security operations.
- Develops and maintains dashboard(s) of security operations KPI’s for Information Technology (IT/ITS) management review.
Application, Cloud, Digital, Infrastructure and Platform Security
- Supports secure implementation and operation of applications, cloud services, infrastructure, and platforms (cloud, digital, end-user, and server).
- Partners with Information Technology Services (ITS) and digital teams to incorporate needed security controls into the design, development, and deployment of Thresholds applications, cloud services, infrastructure, and platforms.
- Performs and/or coordinates risk reviews of application and digital systems, and their underlying configurations.
Data Security and Privacy
- Manages the IT Risk Management Program using Thresholds’ risk management tool to record and assess identified risks, assign a risk owner, track risk treatment progress in the risk register, and provide risk management reporting to ITS leadership.
- Leads enterprise, regulatory, service provider, and project IT risk assessments.
- Supports internal and external audits, regulatory reviews, and customer or partner security inquiries.
Policy, Awareness & Documentation
- Owns development and enforcement of the Information Security & Risk Management Program’s policies, standards, and procedures, as well as the agency’s Acceptable Use Policies.
- Leads or oversees security awareness and training programs for the agency and the ITS staff.
- Maintains and improves the Incident Response Playbook.
Collaboration and Continuous Improvement
- Serves as a trusted advisor to business units and project teams on matters related to AI security, application security, information security, network security, AI risk, IT risk, regulatory compliance, emerging threats, social engineering, data classification; promoting security as a mission enabler for Thresholds.
- Promotes a strong, practical security/risk culture that balances protection with usability and business needs.
- Influences decisions by clearly articulating risk, tradeoffs, and recommendations.
Program Leadership and Strategy Execution
- Embeds security by design principles into system implementations, vendor selection, and operational processes.
- Translates security strategy into actionable roadmaps, initiatives, and measurable outcomes.
- Stays current on evolving AI and cyber threats, data protection practices, and regulatory requirements.
Vulnerability and Threat Management
- Manages the Vulnerability Management Program using Thresholds’ vulnerability management tools to identify and assess vulnerabilities, assigns a vulnerability treatment owner, tracks vulnerability treatment progress in the vulnerability register, and provides vulnerability management reporting to IT leadership.
- Reviews threat intelligence to identify potential negative impacting issues and proactively performs remedial actions to block or avoid the threat(s).
- Provides threat action summaries to ITS leadership.
Team Leadership and Development
- Directly manages, mentors, and develops security staff; setting performance goals and supporting career growth.
- Provides technical guidance and decision support to security team members and cross-functional partners.
- Helps shape workforce planning, resource allocation, and budget inputs for security initiatives.
Education:
- Accredited bachelor’s degree in information security, Computer Science, Information Systems, or a related field (or equivalent experience) required.
Experience:
Required
- Minimum of seven (7) Years of progressive experience in information security, cybersecurity, data protection, or IT risk management.
- Minimum of three (3) Years of experience leading teams or major security/risk management programs.
- Hands-on experience with security operations, incident response, risk assessments, or compliance activities.
- Working knowledge of security and risk frameworks (e.g., NIST, ISO 27001, CIS Controls), AI security and risk management best practices, regulatory requirements (e.g., HIPAA, PCI DSS), Microsoft security and risk management tools, identify and access management, network access controls, data loss prevention, and SIEM systems.
- Demonstrated ability to explain security risk and control matter to non-technical audiences.
Preferred
- Experience supporting cloud environments, SaaS platforms, or digital transformation initiatives.
- Experience in a mid-sized, non-profit and/or regulated organization.
- Familiarity with data analytics, and reporting tools.
- Familiarity with computer forensic techniques.
- Demonstrated experience partnering with leaders/senior leaders and influencing outcomes.
SKILLS/CERTIFICATIONS
- Security certifications (e.g. CISSP, CISM, Security+, CCSP)
- Microsoft certified
- Demonstrated and effective analytical and problem-solving skills
- Strong analytical and problem-solving skills
- Practical, risk-based approach to security
- Clear interpersonal and communication skills, both written and oral
- Policy writing
- Scripting languages, preferably PowerShell
- Collaboration and relationship management
- Attention to detail and follow-through
- High integrity and discretion
- Demonstrated project management and people management skills
- Strategic execution and program ownership
- Demonstrated effective cross-functional collaboration
What Sets Thresholds Apart:
- Competitive pay – Salary Range: $155,000.00 - 175,000.00 annually
- Generous PTO (9 federal holidays, 8 days of sick leave, 15-22 days personal and vacation)
- Dental insurance, vision insurance, choice of 3 medical insurance plans
- 403(b) retirement plan with 3% employer match
- Robust employee assistance program (EAP)
Thresholds is a mission-driven agency with a deep commitment to fostering an environment where all feel valued and respected, a place where every employee can be themselves, thrive, and support the agency’s mission.
One of the oldest and largest community mental health organizations in Illinois, we pride ourselves in being a Chicago Tribune Top Workplace and one of Chicago’s 101 Best & Brightest Companies to Work For, several years in a row.
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
See all 20,156+ Information Security Specialist Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Information Security Specialist roles.
Get Access To All JobsTips for Finding Visa Sponsorship as an Information Security Specialist
Target employers with active security clearance programs
Defense contractors, federal agencies, and financial institutions run large security teams and sponsor visas regularly. These employers have established immigration infrastructure, making the sponsorship process faster and less uncertain than with smaller companies.
Highlight certifications alongside your degree
CISSP, CISM, CompTIA Security+, and CEH credentials signal technical depth to employers and strengthen your H-1B petition. USCIS scrutinizes specialty occupation claims for security roles, and certifications help demonstrate the position requires specialized expertise.
Frame your role around a specific security domain
Generalist titles face more USCIS scrutiny than domain-specific ones. Positioning yourself as a penetration tester, SOC analyst, or cloud security engineer ties your degree directly to the role and makes the specialty occupation argument significantly cleaner.
Verify the employer has filed security-role LCAs before
Employers who have sponsored information security specialists previously understand the process and prevailing wage obligations. Prior LCA filings for your role type are a strong signal the company is prepared to move quickly and accurately.
Australians should prioritize the E-3 over H-1B lottery
The E-3 visa has no lottery, no annual cap pressure, and processes within weeks at Australian consulates. For Australian cybersecurity professionals, it's a faster and more predictable path than waiting on H-1B selection results in April.
Request a specialty occupation opinion letter if your degree is adjacent
If your degree is in mathematics, electrical engineering, or a non-CS field, an immigration attorney can draft a legal opinion connecting your background to the security role. This proactively addresses the most common RFE trigger for this occupation.
Frequently Asked Questions
Does Information Security Specialist qualify as a specialty occupation for H-1B purposes?
Yes, in the vast majority of cases. USCIS consistently recognizes information security roles as specialty occupations when the position requires a bachelor's degree or higher in computer science, information systems, cybersecurity, or a closely related field. Roles tied to a specific domain, such as threat analysis, incident response, or cloud security, have the strongest petitions. Generic titles with loosely defined duties face a higher risk of a Request for Evidence.
What degree do I need for an employer to sponsor my visa in this field?
Most employers require a bachelor's degree in computer science, information systems, cybersecurity, or a related STEM discipline. Some accept degrees in mathematics or electrical engineering when paired with relevant experience. Australian three-year bachelor's degrees are generally accepted as equivalent to U.S. four-year degrees for E-3 purposes. If your degree is in an adjacent field, three years of specialized security experience can substitute for one year of education in certain visa frameworks.
How do I find employers who actively sponsor visas for security roles?
Browse Migrate Mate to filter information security positions by visa sponsorship availability. Employers who list roles there have already indicated willingness to sponsor, which cuts out the guesswork of cold applications. Defense contractors, large financial institutions, and cloud infrastructure companies are the most active sponsors, but mid-sized managed security service providers also file LCAs for this role regularly.
Are H-1B approval rates high for information security roles?
Approval rates for well-documented security petitions are strong. The primary risk factor is specialty occupation challenges, which occur when a job description is vague or the employer fails to show the role requires a specific degree. Petitions that clearly tie the position to a technical security domain, include a detailed duties description, and show the degree requirement in the job posting consistently clear USCIS review without issue.
Can I change employers mid-visa if I find a better security role?
Yes. For H-1B visa holders, portability rules allow you to start working for a new employer as soon as they file a transfer petition, without waiting for approval, provided your original petition was approved and you've maintained valid status. For E-3 holders, the process restarts with the new employer filing a fresh LCA and you obtaining a new visa stamp, which typically takes a few weeks from an Australian consulate.
What is the prevailing wage requirement for sponsored Information Security Specialist jobs?
U.S. employers sponsoring a visa must pay at least the prevailing wage, which is what workers in the same role, area, and experience level typically earn. The Department of Labor sets this rate to make sure companies aren't hiring foreign workers simply because they'd accept lower pay than a U.S. worker. It varies by job title, location, and experience. You can look up current prevailing wage rates for any occupation and location using the OFLC Wage Search page.