Privileged Access Management Jobs in USA with Visa Sponsorship
Privileged Access Management roles qualify for H-1B visa, L-1 visa, and O-1 visa sponsorship as specialty occupations requiring a bachelor's degree in computer science, information security, or a related field. Employers in financial services, healthcare, and enterprise tech sponsor these roles consistently. For detailed occupation requirements, see the O*NET profile.
Find Privileged Access Management JobsOverview
Showing 5 of 8+ Privileged Access Management jobs










See all Privileged Access Management Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Privileged Access Management roles.
Get Access To All Jobs
INTRODUCTION
Join Mizuho as Privileged Access Management Engineer! Mizuho’s Identity and Access Management (IAM) team is undergoing an exciting transformation. We're building a dedicated high performing IAM function that is central to the firm's cybersecurity and regulatory strategy. Our environment is dynamic, growing, and rich with opportunity. You’ll work alongside a talented group of professionals who are passionate about solving complex access challenges, automating at scale, and strengthening security posture across both on-premises and cloud environments. This is a unique chance to join our team that's shaping the future of IAM at a major financial institution. We are seeking a CyberArk Engineer to support the implementation, operation, and ongoing management of our Privileged Access Management (PAM) platform. The role is responsible for securing privileged and service accounts, ensuring compliance with security standards, and supporting enterprise users and applications. This hands-on engineering role focuses on delivering secure and scalable solutions for managing privileged accounts used by servers, applications, services, APIs, and cloud workloads. The ideal candidate has deep expertise in CyberArk and related technologies. This role is critical to strengthening the firm's identity security posture, enabling secure cloud adoption, and supporting compliance with regulatory and internal control requirements.
KEY RESPONSIBILITIES
Core CyberArk / PAM Engineering:
- Design, implement, and maintain CyberArk Privileged Access Management (PAM) solutions to secure privileged, service, and application accounts across enterprise environments.
- Configure and manage CyberArk components including Digital Vault, PVWA, CPM, PSM, and connectors (Windows, Unix, Database, Cloud where applicable).
- Create and manage safes, platforms, access policies, and permissions in accordance with least-privilege and security standards.
- Build automations to support the core PAM activities.
Privileged Account Onboarding & Lifecycle Management:
- Lead onboarding of privileged and service accounts into CyberArk, including inventory validation, account vaulting, and enabling password rotation.
- Work closely with infrastructure and application teams to identify dependencies and ensure password changes do not disrupt services.
- Manage account lifecycle activities such as modifications, offboarding, and exception handling.
Password & Session Management:
- Implement and monitor automated password rotation and reconciliation for managed accounts.
- Configure and support Privileged Session Management (PSM) for secure access and session recording.
- Troubleshoot password rotation failures, access issues, and CPM/PSM errors.
Operations, Monitoring & Support:
- Provide L2/L3 operational support, including root-cause analysis and coordination with vendors or internal teams.
- Maintain and update runbooks, SOPs, and operational documentation for CyberArk processes.
Compliance, Audit & Governance:
- Support audit and regulatory requirements by generating CyberArk reports, access certifications, and compliance evidence.
- Participate in periodic privileged access recertifications and remediation of findings.
- Ensure CyberArk configurations align with IAM standards, internal policies, and regulatory frameworks (e.g., SOX, ISO, internal audits).
Integration & Automation:
- Integrate CyberArk with IAM tools (e.g., SailPoint), Active Directory, ServiceNow and other enterprise applications.
- Support use of CyberArk REST APIs and Central Credential Provider (CCP) for application integrations and automation.
- Assist with automation and reconciliation processes related to privileged account discovery and onboarding.
Stakeholder Collaboration:
- Act as a subject-matter expert (SME) for CyberArk/PAM, advising application, infrastructure, and security teams.
- Coordinate with IAM Governance, Risk, Compliance, and Audit teams on PAM-related initiatives.
- Participate in design and architecture discussions to identify gaps and drive scalable, automation-friendly improvements.
PREFERRED QUALIFICATIONS
- Experience with cloud PAM (AWS, Azure, GCP)
- Scripting (PowerShell, Python) for automation
- CyberArk certifications (CPC, CDE, Defender)
BASIC QUALIFICATIONS
- 7+ years of experience in Identity & Access Management, cybersecurity engineering, or related infrastructure security roles, with a strong focus on Privileged Access Management.
- Demonstrated experience with CyberArk.
- Experience in enterprise environments (Windows, Unix, databases, service accounts).
- Familiarity with security controls and regulatory expectations related to identity, credential, and Privileged Access Management (e.g., SOX, NIST).
- Strong collaboration and communication skills, with the ability to work effectively across infrastructure, cloud, security, and DevOps teams.
The expected base salary ranges from $81,000 - $150,000. Salary offers are based on a wide range of factors including relevant skills, training, experience, education, and, where applicable, certifications and licenses obtained. Market and organizational factors are also considered. In addition to salary and a generous employee benefits package, including Medical, Dental and 401K plans, successful candidates are also eligible to receive a discretionary bonus.
OTHER REQUIREMENTS
Mizuho has in place a hybrid working program, with varying opportunities for remote work depending on the nature of the role, needs of your department, as well as local laws and regulatory obligations. Roles in some of our departments have greater in-office requirements that will be communicated to you as part of the recruitment process.
COMPANY OVERVIEW
Mizuho Financial Group, Inc. is the 15th largest bank in the world as measured by total assets of ~$2 trillion. Mizuho's 60,000 employees worldwide offer comprehensive financial services to clients in 35 countries and 800 offices throughout the Americas, EMEA and Asia. Mizuho Americas is a leading provider of corporate and investment banking services to clients in the US, Canada, and Latin America. Through its acquisition of Greenhill, Mizuho provides M&A, restructuring and private capital advisory capabilities across Americas, Europe and Asia. Mizuho Americas employs approximately 3,500 professionals, and its capabilities span corporate and investment banking, capital markets, equity and fixed income sales & trading, derivatives, FX, custody and research.
Mizuho Americas offers a competitive total rewards package. We are an EEO/AA Employer - M/F/Disability/Veteran. We participate in the E-Verify program. We maintain a drug-free workplace and reserve the right to require pre- and post-hire drug testing as permitted by applicable law.
See all Privileged Access Management Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Privileged Access Management roles.
Get Access To All JobsTips for Finding Privileged Access Management Jobs
Target regulated industries first
Financial services, healthcare, and government contractors face strict PAM compliance requirements, making them the most consistent H-1B sponsors for this role. These employers budget for sponsorship as a standard cost of hiring cybersecurity talent.
Emphasize your degree field alignment
USCIS requires a direct connection between your degree and the role. A degree in information security, computer science, or computer engineering maps cleanly to PAM. Degrees in unrelated fields require additional documentation to establish specialty occupation eligibility.
Get certified in core PAM platforms
Certifications in CyberArk, BeyondTrust, or Delinea strengthen your H-1B petition by demonstrating specialized technical expertise. USCIS looks favorably on credentials that reinforce the specialty occupation argument beyond a four-year degree.
Document platform-specific experience precisely
Generic cybersecurity experience won't differentiate your application. Listing specific PAM tools you've administered, vault configurations you've managed, and compliance frameworks you've supported gives employers and USCIS a clearer picture of specialized expertise.
Understand the H-1B lottery before you apply
Most PAM roles go through the H-1B cap lottery, with roughly a 25% selection rate in recent years. Cap-exempt employers, including universities and certain nonprofits, can file year-round and bypass the lottery entirely.
Browse verified sponsoring employers on Migrate Mate
Not every employer who posts a PAM job will sponsor visas. Migrate Mate lists roles from employers with confirmed sponsorship history, so you're not wasting applications on companies that won't support your visa process.
Frequently Asked Questions
Does Privileged Access Management qualify as an H-1B specialty occupation?
Yes. PAM roles qualify as specialty occupations because they require at minimum a bachelor's degree in computer science, information security, information systems, or a closely related field. USCIS has consistently approved H-1B visa petitions for cybersecurity and identity management roles when the employer documents the theoretical and practical application of specialized knowledge required for the position.
What degree do I need for a sponsored PAM role?
A bachelor's degree in computer science, information security, cybersecurity, or information systems is the standard. Degrees in electrical engineering or mathematics can work if your coursework covered security or networking. If your degree is in a less related field, three years of specialized work experience can substitute for each missing year of education under USCIS equivalency rules.
Which types of employers sponsor PAM roles most frequently?
Financial institutions, health systems, defense contractors, and large enterprise technology companies sponsor PAM roles most consistently. These organizations operate under strict regulatory requirements, including SOX, HIPAA, and FedRAMP, that mandate PAM programs. Their compliance obligations create sustained demand for qualified specialists and make sponsorship a routine part of their hiring budget.
Can I transfer my H-1B to a new PAM employer if I change jobs?
Yes. H-1B portability allows you to start working for a new employer as soon as your transfer petition is filed, without waiting for approval, provided you've been maintaining valid H-1B status. Your new employer must file a new I-129 petition, obtain a certified Labor Condition Application from the Department of Labor, and confirm the role qualifies as a specialty occupation.
Where can I find PAM jobs that offer visa sponsorship?
Migrate Mate is built specifically for this. It lists Privileged Access Management roles from employers with confirmed sponsorship history, so you can focus your applications on companies that will actually support your visa. Searching general job boards often wastes time on postings where sponsorship isn't available or hasn't been confirmed.
What is the prevailing wage requirement for sponsored Privileged Access Management jobs?
U.S. employers sponsoring a visa must pay at least the prevailing wage, which is what workers in the same role, area, and experience level typically earn. The Department of Labor sets this rate to make sure companies aren't hiring foreign workers simply because they'd accept lower pay than a U.S. worker. It varies by job title, location, and experience. You can look up current prevailing wage rates for any occupation and location using the OFLC Wage Search page.