Security Analyst Jobs in USA with Visa Sponsorship
Security analyst roles, particularly in cybersecurity, are strong candidates for H-1B visa sponsorship given the massive talent shortage in this field. Tech companies, financial institutions, consulting firms, and government contractors regularly sponsor for these positions. A degree in cybersecurity, computer science, or information systems is typically required. The high demand relative to supply means employers are more willing to navigate the sponsorship process. For detailed occupation requirements, see the O*NET profile.
Find Security Analyst JobsOverview
Showing 5 of 1,939+ Security Analyst jobs










See all 1,939+ Security Analyst Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Security Analyst roles.
Get Access To All Jobs
Who we are
At Twilio, we’re shaping the future of communications, all from the comfort of our homes. We deliver innovative solutions to hundreds of thousands of businesses and empower millions of developers worldwide to craft personalized customer experiences.
Our dedication to remote-first work, and strong culture of connection and global inclusion means that no matter your location, you’re part of a vibrant team with diverse experiences making a global impact each day. As we continue to revolutionize how the world interacts, we’re acquiring new skills and experiences that make work feel truly rewarding. Your career at Twilio is in your hands.
We use Artificial Intelligence (AI) to help make our hiring process efficient. That said, every hiring decision is made by real Twilions!
See yourself at Twilio
Join the team as Twilio’s next Security Risk Senior Analyst.
About the job
The Senior Security Risk Analyst will be a key member of the One Twilio Risk Management program, focused on maturing our Security risk posture by facilitating risk identification and treatment. The team works closely with our Product and Engineering teams to ensure all areas of cyber risk are identified across Twilio and that risk methodologies are operationally effective and in compliance with regulations (e.g. Cybersecurity and/or Telecom / sector-specific regulations) and industry best practice security measures (e.g. NIST RMF, AI RMF, COSO, ISO 31000). This role provides an exciting opportunity for experienced risk professionals who are passionate about risk management and ready to contribute to the continued growth and maturity of risk practices within a dynamic organization like Twilio.
Responsibilities
In this role, you’ll:
- Execute and improve upon daily operations of the One Twilio Risk Management program which includes the further establishment of automated operations for all areas of cyber risk.
- Manage and maintain risk register(s) to track key risk indicators (KRIs) and ensure risks are identified, evaluated, and mitigated appropriately.
- Collaborate with cross-functional teams to ensure risks are clearly communicated and actionable.
- Review and assess the effectiveness of risk treatment strategies and recommend solutions when applicable.
- Prepare and deliver regular risk reports, dashboards, and presentations to internal and external stakeholders, highlighting key risk trends, issues, and mitigation efforts.
- Analyze risk data from various sources to assess trends and develop predictive models for potential risks.
- Use data analytics and risk modeling tools to assess the legal, financial, operational, and security impact of risks.
- Develop ad-hoc reports and presentations as required to support risk decision-making.
- Coordinate with internal and external auditors to support compliance assessments and resolve any risk-related findings.
Qualifications
Twilio values diverse experiences from all kinds of industries, and we encourage everyone who meets the required qualifications to apply. If your career is just starting or hasn't followed a traditional path, don't let that stop you from considering Twilio. We are always looking for people who will bring something new to the table!
-
Required:
-
5+ years of Risk Management experience, working with security-centric risk management and compliance frameworks. Experience maturing an industry accepted risk framework including but not limited to NIST Risk Management Framework, COSO Enterprise Risk Management, or ISO 31000.
- Excellent cross-functional collaboration leveraging relationships to establish strategic direction.
- Experience designing and executing qualitative and quantitative risk analyses to translate technical vulnerabilities into measurable business impact.
- Experience translating vulnerabilities, control gaps and systematic limitations into clear, actionable risk statements.
- Proven track record of managing large scale, heavily regulated, multi-entity, cross-functional risk assessments, risk registers, and compliance programs.
- Experience of working with technical security and Engineering / IT to implement technical risk/control solutions with the ability to interpret control requirements and relay those to different stakeholder groups with strong technical knowledge.
- Bias towards automation and tooling to scale program impact and reach.
- Experience leveraging AI to streamline risk operations.
- Excellent verbal, written, and interpersonal skills.
- Flexible and able to manage multiple projects under tight deadlines.
- Comfortable with ambiguity and adaptable to fast changing environments.
-
Strategic thinker and problem solver with exceptional communication skills.
-
Desired:
-
Bachelor’s degree in Risk Management, Business, Finance, Cybersecurity, or a related field.
- Professional certifications (e.g., CRISC, CISA, CISSP, FRM) are a plus.
- Strong analytical and problem-solving skills with the ability to interpret complex data and present actionable insights.
- Excellent communication skills, with the ability to translate risk into clear, actionable recommendations for leadership.
- Strong proficiency with enterprise AI and GRC tooling.
- Experience with project management and working across multiple teams and departments.
Location
This role will be remote, but is not eligible to be hired in CA, CT, NJ, NY, PA, WA.
Travel
We prioritize connection and opportunities to build relationships with our customers and each other. For this role, you may be required to travel occasionally to participate in project or team in-person meetings.
What We Offer
Working at Twilio offers many benefits, including competitive pay, generous time off, ample parental and wellness leave, healthcare, a retirement savings program, and much more. Offerings vary by location.
Compensation
- Please note the salary range information provided applies only to candidates residing in California, Colorado, Hawaii, Illinois, Maryland, Massachusetts, Minnesota, New Jersey, New York, Vermont, Washington D.C., and Washington State due to local requirements. Compensation for candidates in other locations will be discussed during the hiring process. Please note that hiring for this role is not restricted to the locations listed above.
The estimated pay ranges for this role are as follows:
- Based in Colorado, Hawaii, Illinois, Maryland, Massachusetts, Minnesota, Vermont or Washington D.C.: $128,560 - $160,700.
- Based in New York, New Jersey, Washington State, or California (outside of the San Francisco Bay area): $136,000 - $170,000.
- Based in the San Francisco Bay area, California: $151,120 - $188,900.
This role may be eligible to participate in Twilio’s equity plan and corporate bonus plan. All roles are generally eligible for the following benefits: health care insurance, 401(k) retirement account, paid sick time, paid personal time off, paid parental leave.
The successful candidate’s starting salary will be determined based on permissible, non-discriminatory factors such as skills, experience, and geographic location.
Applications for this role are intended to be accepted until August 28, 2026, but may change based on business needs.
Twilio thinks big. Do you?
We like to solve problems, take initiative, pitch in when needed, and are always up for trying new things. That's why we seek out colleagues who embody our values — something we call Twilio Magic. Additionally, we empower employees to build positive change in their communities by supporting their volunteering and donation efforts.
So, if you're ready to unleash your full potential, do your best work, and be the best version of yourself, apply now! If this role isn't what you're looking for, please consider other open positions.
Twilio is proud to be an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Qualified applicants with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act. Additionally, Twilio participates in the E-Verify program in certain locations, as required by law.
See all 1,939+ Security Analyst Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Security Analyst roles.
Get Access To All JobsTips for Finding Visa Sponsorship as a Security Analyst
Earn foundational cybersecurity certifications
CompTIA Security+, CEH (Certified Ethical Hacker), or GIAC Security Essentials (GSEC) demonstrate baseline knowledge that U.S. employers expect. These certifications help establish that your role is a specialty occupation, which strengthens the H-1B petition for security-focused positions.
Target financial services and healthcare organizations
Banks like JPMorgan Chase, Goldman Sachs, and Citibank, along with healthcare systems and insurers, are required by regulation (SOX, HIPAA, PCI DSS) to maintain security teams. These organizations have large budgets for cybersecurity hiring and established immigration processes.
Develop SIEM expertise with industry-standard tools
Proficiency in Splunk, Microsoft Sentinel, CrowdStrike Falcon, or Palo Alto Cortex XSOAR is essential for most security analyst positions. Hands-on experience with threat detection, log analysis, and incident response using these platforms makes you immediately productive and harder to replace.
Use STEM OPT to build a security operations track record
Computer science and cybersecurity degrees qualify for the 24-month STEM OPT extension. The 36-month work authorization window gives you time to handle real incidents, build detection rules, and earn advanced certifications - all of which strengthen your case for employer-sponsored visa status.
Frequently Asked Questions
Can security analysts get H-1B visa sponsorship?
Yes. Information security analyst is classified under SOC code 15-1212 and is recognized as a specialty occupation requiring at least a bachelor's degree. The Bureau of Labor Statistics projects much faster than average growth for this field, and the cybersecurity talent shortage makes employers more willing to sponsor qualified candidates. Large enterprises, financial institutions, and managed security service providers are among the most active sponsors.
Do security analyst roles require a security clearance?
Not all security analyst positions require a clearance. The majority of private-sector security analyst roles - at banks, tech companies, healthcare organizations, and retailers - do not require government security clearances. Roles at defense contractors or in direct government support may require clearances that are only available to U.S. citizens and permanent residents.
What degree do I need for a security analyst H-1B petition?
A bachelor's degree in computer science, cybersecurity, information technology, or a related field is the standard requirement. Some petitions are approved with degrees in electrical engineering or mathematics combined with relevant cybersecurity experience and certifications. The key is demonstrating a direct relationship between your degree and the security analyst role described in the petition.
Is cybersecurity a STEM field for OPT purposes?
Yes. Most cybersecurity-related degree programs fall under STEM-designated CIP codes, including computer science, information security, and network administration. This qualifies graduates for the 24-month STEM OPT extension, providing up to 36 months of post-graduation work authorization. Verify that your specific program's CIP code is on the DHS STEM Designated Degree Program List.
How to find Security Analyst jobs with visa sponsorship?
To find Security Analyst jobs with visa sponsorship, use Migrate Mate, which specializes in connecting international candidates with sponsoring employers. Focus your search on technology companies, financial institutions, healthcare organizations, and government contractors who frequently sponsor H-1B visa, O-1 visa, and other work visas for cybersecurity professionals. These industries highly value security expertise and are more willing to handle sponsorship processes.
What is the prevailing wage requirement for sponsored Security Analyst jobs?
When a U.S. employer sponsors a foreign worker for a work visa, they are legally required to pay at least the "prevailing wage" — the average wage paid to workers in the same occupation, in the same geographic area, with similar experience. This is set by the Department of Labor to prevent employers from hiring foreign workers at below-market rates. The prevailing wage varies significantly by role, location, and experience level — for example, a security analyst in Texas will have a different prevailing wage than the same role in a smaller state. You can look up current prevailing wage rates for any occupation and location using the OFLC Wage Search.