1

Information Security Analyst Jobs in Rochester, NY

Security Systems Engineer

Rochester, NY · On-site

$80K - $149K/yr

The Information Security Systems Engineer will be involved in Information Assurance (IA) related architecture development, CONOPS development, trade studies, requirements analysis and flow down to ...

Ensure that all operational IT related service needs are delivered while following all security and ... analyze and highlight incident trends. * Supports the implementation of regional and global IT ...

Use data analysis tools to automate testing; develop techniques for continuous auditing and ... This team of security professionals is integral to and works in every facility and store in our ...

next page

Showing results 1-20

Information Security Analyst information

See Rochester, NY salary details

$39.5K

$95.4K

$155.9K

How much do information security analyst jobs pay per year?

As of Jul 26, 2026, the average yearly pay for information security analyst in Rochester, NY is $95,364.00, according to ZipRecruiter salary data. Most workers in this role earn between $72,500.00 and $113,000.00 per year, depending on experience, location, and employer.

Do cybersecurity analysts get paid well?

Cybersecurity analysts typically earn competitive salaries due to the high demand for their skills in protecting organizations from cyber threats. Entry-level positions may start lower, but with experience, certifications, and specialized knowledge, salaries can increase significantly, often exceeding the national average for IT roles.

What is the difference between Information Security Analyst vs Network Security Analyst?

AspectInformation Security AnalystNetwork Security Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, Cisco CCNA Security, CISSP
Work EnvironmentCorporate IT departments, cybersecurity firmsNetwork operations centers, IT departments
Primary FocusOverall security policies, threat detection, incident responseNetwork infrastructure security, firewall management, intrusion detection

While both roles focus on cybersecurity, an Information Security Analyst has a broader scope, handling overall security strategies and incident response. A Network Security Analyst specializes in securing network infrastructure and managing network-specific threats. Both roles often require similar certifications and work environments, but their core responsibilities differ in scope and focus.

What does an Information Security Analyst do?

An Information Security Analyst is responsible for protecting an organization's computer systems and networks from cyber threats. They monitor networks for security breaches, investigate violations, and implement measures such as firewalls and encryption programs to safeguard sensitive information. Analysts also conduct security assessments, develop security policies, and educate staff about security best practices. Their work helps ensure the confidentiality, integrity, and availability of critical data.

How to Become an Information Security Analyst

Information security analysts create and implement an organization’s plan to defend against computer network security threats. The minimum requirement to become an information security analyst is a bachelor’s degree in computer science or management information systems. Focus your coursework in systems security, data management, cybersecurity, and software testing. You may find an internship as a way to gain experience and begin your career in cybersecurity.

What are the key skills and qualifications needed to thrive as an Information Security Analyst, and why are they important?

To thrive as an Information Security Analyst, you need a solid understanding of cybersecurity principles, risk management, and network security, typically backed by a degree in computer science or a related field. Familiarity with security information and event management (SIEM) tools, firewalls, intrusion detection systems, and certifications like CISSP or CompTIA Security+ are commonly required. Strong analytical thinking, problem-solving abilities, and effective communication skills help you identify threats and convey risks to stakeholders. These competencies are crucial for protecting organizational assets, ensuring regulatory compliance, and minimizing potential cyber threats.

What does a security information analyst do?

A security information analyst monitors and analyzes security data to identify and respond to potential threats and vulnerabilities. They use tools like SIEM systems, conduct risk assessments, and implement security measures to protect organizational information assets.

What are some common challenges Information Security Analysts face when responding to security incidents?

Information Security Analysts often encounter challenges such as quickly identifying the scope of a breach, coordinating with various teams, and managing the pressure to restore normal operations while preserving evidence for forensic analysis. They must communicate clearly with both technical and non-technical stakeholders and stay up to date with evolving threats. Handling multiple incidents simultaneously and ensuring compliance with regulatory requirements can also add complexity to the role.

Is 30 too late for cyber security?

Age is not a barrier to becoming an Information Security Analyst. Many professionals transition into cybersecurity later in life, and acquiring relevant skills, certifications like CompTIA Security+ or CISSP, and hands-on experience can help you enter the field regardless of age.

Can you make $200,000 in cyber security?

An experienced Information Security Analyst can potentially earn $200,000 or more annually, especially with advanced skills, certifications like CISSP or CISM, and in high-demand industries or senior roles. Salary levels vary based on location, experience, and the complexity of security responsibilities.
What are the most commonly searched types of Information Security Analyst jobs in Rochester, NY? The most popular types of Information Security Analyst jobs in Rochester, NY are:
What are popular job titles related to Information Security Analyst jobs in Rochester, NY? For Information Security Analyst jobs in Rochester, NY, the most frequently searched job titles are:
What job categories do people searching Information Security Analyst jobs in Rochester, NY look for? The top searched job categories for Information Security Analyst jobs in Rochester, NY are:
What cities near Rochester, NY are hiring for Information Security Analyst jobs? Cities near Rochester, NY with the most Information Security Analyst job openings:
Infographic showing various Information Security Analyst job openings in Rochester, NY as of July 2026, with employment types broken down into 2% Locum Tenens, 84% Full Time, 8% Part Time, 1% Temporary, and 5% Contract. Highlights an 85% Physical, 6% Hybrid, and 9% Remote job distribution, with an average salary of $95,364 per year, or $45.8 per hour.
Sr. Information Security Analyst

Sr. Information Security Analyst

Constellation Brands

Rochester, NY • Remote

$96K - $148K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 25 days ago


Constellation Brands rating

7.9

Company rating: 7.9 out of 10

Based on 12 frontline employees who took The Breakroom Quiz

96th of 432 rated food and drinks producers


Job description

Job Description

Role Summary

The Senior Information Security Analyst is responsible for monitoring, analyzing, and responding to cybersecurity threats across enterprise IT and (as applicable) ICS/OT environments. This is a SOC-focused role supporting day-to-day security monitoring, incident response, threat detection, and continuous improvement of detection and response capabilities.

This role serves as the primary internal escalation point for the Managed Service Provider (MSP), providing tier-4 technical support for high-severity and complex investigations, validating findings, directing response actions, and ensuring timely, high-quality communications to stakeholders.

Responsibilities:

  • Serve as the senior technical escalation point for complex investigations and response activities across IT and ICS/OT environments.
  • Act as the internal escalation for the Managed Service Provider: review escalated cases, confirm scope/impact, request additional evidence as needed, and drive the investigation to resolution.
  • Define and maintain escalation criteria, severity definitions, and evidence requirements to ensure consistent performance.
  • Perform quality reviews of Managed Service Provider incident tickets (timeliness, analysis depth, documentation, and recommendations) and provide feedback.
  • Mentor SOC analysts through coaching, investigation walk-throughs, and after-action reviews; contribute to skills development and knowledge transfer.
  • Provide technical guidance on investigation methodology, evidence collection, and response actions.
  • Partner with IT, and OT operations teams to embed security controls and logging requirements across systems and services.
  • Provide technical input on policy development, control design, and remediation planning based on observed threats, incidents, and detection gaps.
  • Review and validate operational metrics for assigned areas (e.g., alert quality, false positives, detection coverage, response timelines) and recommend improvements.
  • Ensure investigations and response activities align with business priorities and applicable regulatory requirements; support audits and evidence requests as needed.
  • Contribute to the maturity of threat intelligence, threat hunting, incident response, and purple teaming by identifying gaps, proposing enhancements, and implementing improvements within assigned scope.
  • Drive continuous improvement of security operations playbooks, procedures, and team readiness through lessons learned and regular reviews.
  • Provide technical ownership for assigned security services and platforms to ensure reliability and scalability.
  • Manage assigned incident workload and Managed Service Provider escalations by ensuring security incidents and events are identified, analyzed, documented, and driven to closure within defined timelines.
  • Coordinate with the Managed Service Provider on active investigations (e.g., evidence requests, containment steps, and status updates) and participate in regular service reviews to address trends and recurring issues.
  • Recommend security controls to protect information systems based on ongoing reviews of security incidents, vulnerabilities, and threats.
  • Stay up to date with the latest threats, vulnerabilities, and security trends and make recommendations for improving our security posture.
  • Candidate must be available 24/7/365

Qualifications & Experience

  • Bachelors in one of the following disciplines: Cybersecurity, Information Assurance, Management Information Systems, Computer Science, Computer Engineering, Electrical Engineering or similar technical field and minimum of 5 years related experience.
  • Strong knowledge of security technologies and tools, including SIEM, IDS/IPS, firewalls, and endpoint protection.
  • Experience with event handling, incident response and threat hunting.
  • Ability to communicate effectively with various levels of technical expertise or non-expertise (written, verbal, presentation skills).
  • Organized and detail-oriented, able to work well under deadlines in a changing environment and complete multiple projects effectively and concurrently.
  • Knowledge of network infrastructure, including routers, switches, firewalls, and the associated network protocols and concepts.
  • Experience with ICS network monitoring including serial, Ethernet, wireless, etc.
  • Working knowledge of cybersecurity policies, standards, and frameworks (CIS, NIST, etc.) related to IT environments.
  • Experience with operational technology and knowledge of ICS security best practices.
  • Relevant certifications such as CISSP and CISM are highly desirable.

#LI-GT1

Location

Rochester, New York

Additional Locations

Chicago, Illinois, San Antonio, Texas

Job Type

Full time

Job Area

Information Technology

The salary range for this role is:

$96,700.00 - $148,100.00

This is the lowest to highest salary we in good faith believe we would pay for this role at the time of this posting. Our compensation is based on cost of labor. For remote locations or positions open to multiple locations, the pay range may reflect several US geographic markets, including the lowest geographic market minimum to the highest geographic market maximum. We may ultimately pay more or less than the posted range, and the range may be modified in the future. An employee's pay position within the salary range will be based on several factors including, but not limited to, the prevailing minimum wage for the location, relevant education, qualifications, certifications, experience, skills, seniority, geographic location, performance, shift, travel requirements, sales or revenue-based metrics, any collective bargaining agreements, and business or organizational needs. At Constellation Brands, it is not typical for an individual to be hired at the high end of the range for their role, and compensation decisions are dependent upon the facts and circumstances of each position and candidate. We offer comprehensive package of benefits including paid time off, medical/dental/vision insurance, 401(k), and any other benefits to eligible employees.

Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, or any other form of compensation that are allocable to a particular employee remains in the Company's sole discretion unless and until paid and may be modified at the Company's sole discretion, consistent with the law.

Equal Opportunity

Constellation Brands is committed to a continuing program of equal employment opportunity. All persons have equal employment opportunities with Constellation Brands, regardless of their sex, race, color, age, religion, creed, sexual orientation, national origin or citizenship, ancestry, physical or mental disability, medical condition (cancer or genetic characteristics), marital status, gender (including gender identity or gender expression), familial status, military or veteran status, genetic information, pregnancy, childbirth, breastfeeding, or related conditions (or any other group or category within the framework of the applicable discrimination laws and regulations).


What Constellation Brands employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom