1

Information Security Associate Jobs in New Rochelle, NY

The Information Technology group delivers secure, reliable technology solutions that enable DTCC to ... CASB / cloud security tools (unsanctioned SaaS usage, risky data sharing) * DLP controls (email ...

Applicant must have a Bachelor's degree in Information Security, Computer Science, Engineering, or ... OR an associate's degree with 6 years of experience; OR a high school diploma (or equivalent) with ...

Applicant must have a Bachelor's degree in Information Security, Computer Science, Engineering, or ... OR an associate's degree with 6 years of experience; OR a high school diploma (or equivalent) with ...

Showing results 21-40

Information Security Associate information

See New Rochelle, NY salary details

$37.6K

$85.2K

$166.7K

How much do information security associate jobs pay per year?

As of Aug 20, 2026, the average yearly pay for information security associate in New Rochelle, NY is $85,225.00, according to ZipRecruiter salary data. Most workers in this role earn between $55,600.00 and $98,300.00 per year, depending on experience, location, and employer.

What is an information security associate?

Information Security Associates are professionals responsible for helping protect an organization’s computer systems and data from cyber threats and unauthorized access. They assist with monitoring security systems, responding to incidents, conducting risk assessments, and ensuring compliance with security policies and regulations. Their role is crucial in supporting the organization's overall cybersecurity posture and often involves working with IT teams to implement protective measures and educate staff about security best practices.

What does an information security associate do?

The job duties of an information security associate include working to develop and implement an information security program for a company, agency, or organization. Your responsibilities in this career may include working to monitor security procedures and working with various departments to ensure secure communications and data storage and limit any risks to the company’s information. You perform internal audits to test for compliance with the information security practices that you develop. You also analyze current information security procedures to look for evidence of external threats and cyber crime or to define other areas of vulnerability.

What are the key skills and qualifications needed to thrive as an information security associate, and why are they important?

To thrive as an Information Security Associate, you need a solid understanding of cybersecurity principles, risk assessment, and network security, typically backed by a degree in computer science or a related field. Familiarity with security tools such as SIEM systems, firewalls, and certifications like CompTIA Security+ or CISSP are commonly required. Strong analytical thinking, attention to detail, and effective communication help you collaborate with teams and respond to security incidents efficiently. These skills are crucial for proactively identifying threats, protecting organizational assets, and ensuring regulatory compliance in an evolving threat landscape.

What are some common challenges faced by information security associates when working with cross-functional teams?

Information Security Associates often collaborate with departments such as IT, legal, and operations to implement security protocols. One common challenge is bridging the knowledge gap between technical security concepts and non-technical team members. This can require strong communication and interpersonal skills to ensure security policies are understood and followed organization-wide. Additionally, balancing security requirements with business needs may require negotiation and creative problem-solving to maintain both security and productivity.

What is the difference between Information Security Associate vs Cybersecurity Analyst?

AspectInformation Security AssociateCybersecurity Analyst
CertificationsCompTIA Security+, CISSP (entry-level)CompTIA Security+, CISSP, CEH
Work EnvironmentCorporate security teams, IT departmentsSecurity operations centers, IT security teams
Employer & Industry UsageBusinesses across industries, government agenciesOrganizations with dedicated security operations
Common Search/ComparisonYesYes

While both roles focus on protecting information systems, an Information Security Associate typically supports security initiatives, assists with policy implementation, and monitors security alerts. A Cybersecurity Analyst often takes a more active role in analyzing threats, responding to incidents, and conducting security assessments. The roles overlap in certifications and work environments, but the Cybersecurity Analyst usually has more technical responsibilities and a deeper focus on threat analysis.

What are the most commonly searched types of Information Security jobs in New Rochelle, NY?

The most popular types of Information Security jobs in New Rochelle, NY are:

What are popular job titles related to Information Security Associate jobs in New Rochelle, NY?

For Information Security Associate jobs in New Rochelle, NY, the most frequently searched job titles are:

What job categories do people searching Information Security Associate jobs in New Rochelle, NY look for?

The top searched job categories for Information Security Associate jobs in New Rochelle, NY are:

What cities near New Rochelle, NY are hiring for Information Security Associate jobs?

Cities near New Rochelle, NY with the most Information Security Associate job openings:

Data Protection Associate

DTCC

Jersey City, NJ • On-site

Full-time

Medical, Life, Retirement, PTO

Posted 4 days ago


Job description


Are you ready to make an impact at DTCC?
Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We are committed to helping our employees grow and succeed. We believe that you have the skills and drive to make a real impact. We foster a thriving internal community and are committed to creating a workplace that looks like the world that we serve.
The Information Technology group delivers secure, reliable technology solutions that enable DTCC to be the trusted infrastructure of the global capital markets. The team delivers high-quality information through activities that include development of essential infrastructure capabilities to meet client needs and implementing data standards and governance.
Pay and Benefits:
  • Competitive compensation, including base pay and annual incentive
  • Comprehensive health and life insurance and well-being benefits, based on location
  • Pension / Retirement benefits
  • Paid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
  • DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee).

The Impact you will have in this role:
Being a member of IT Cybersecurity & Platform Engineering team, the Data Protection Operations Assocaite is responsible for the day-to-day operation of DTCC's data protection controls, with primary focus on triaging alerts, investigating data risk signals, managing exceptions and supporting remediation across DTCC's Data Protection technologies including DLP, CASB and DSPM.
This role sits in the first line of defense and serves as a key operational interface between security tooling, business users, and IT partners. The Analyst must combine strong analytical judgment with clear communication skills to assess risk, engage stakeholders, and drive timely resolution of data protection issues, while maintaining a consistent and professional user experience
Your Primary Responsibilities:
Alert Triage & Investigation
  • Monitor, triage, and investigate alerts and findings from:
    • DSPM platforms (e.g., sensitive data discovery, exposure findings, excessive access)
    • CASB / cloud security tools (unsanctioned SaaS usage, risky data sharing)
    • DLP controls (email, endpoint, web, SaaS, and AI-related channels)
  • Assess alerts for severity, credibility, and business impact, distinguishing true data risk from false positives.
  • Prioritize and process alerts in line with defined SLAs and escalation criteria.

Data Risk Validation & Remediation Support
  • Analyze DSPM findings, engage data owners, application teams, and IT partners to validate findings, recommend and track remediation actions (access reduction, secure configuration, reclassification)
  • Support remediation lifecycle through closure, documenting outcomes and residual risk.

CASB & DLP Operations
  • Investigate CASB alerts related to Unsanctioned or high-risk SaaS usage, Cloud data sharing patterns that may introduce exposure
  • Investigate DLP events
  • Execute defined response actions, escalate complex cases to Tier 2 engineering or incident response teams as required.

Stakeholder Communication & Engagement
  • Serve as a primary operational point of contact for business and IT stakeholders on data protection issues.
  • Communicate findings clearly and professionally to non-technical audiences, explaining:
    • What was detected
    • Why it matters
    • What actions are required
  • Balance risk reduction with user experience, avoiding unnecessary friction that could drive control bypass.

Continuous Improvement & Feedback Loop
  • Identify recurring alert patterns, false positives, and operational gaps across DSPM, CASB, and DLP tools.
  • Provide structured feedback to Content Engineering and Engineering teams to support rule tuning and control enhancements.
  • Contribute to improvements in operational runbooks, workflows, and triage consistency

Documentation, Metrics & Evidence
  • Maintain accurate, audit-ready case documentation for all investigations and remediation activities.
  • Support production of operational metrics
  • Assist with internal reviews, audit requests, and regulatory evidence gathering as a first-line owner.

NOTE: The Primary Responsibilities of this role are not limited to the details above.*
Qualifications:
  • Min 3 years of relevant experience
  • Bachelor's Degree and/or equivalent experience

Talents Needed for Success:
  • 3-5+ years in security operations, data protection operations, SOC, or cloud security roles.
  • Experience triaging alerts and investigations from security or data protection platforms.
  • Working familiarity with technical controls and concepts including:
    • Data Loss Prevention
    • Cloud and SaaS security
    • Data discovery, classification, and exposure risk
  • Strong analytical and judgment skills, with the ability to assess data risk in real-world business contexts.
  • Excellent written and verbal communication skills.
  • Prior experience engaging business users and application teams on security or data risk topics.
  • Comfort working in a regulated or highly controlled environment

The salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.
About Us
With over 50 years of experience, DTCC is the premier post-trade market infrastructure for the global financial services industry. From 20 locations around the world, DTCC, through its subsidiaries, automates, centralizes, and standardizes the processing of financial transactions, mitigating risk, increasing transparency, enhancing performance and driving efficiency for thousands of broker/dealers, custodian banks and asset managers. Industry owned and governed, the firm innovates purposefully, simplifying the complexities of clearing, settlement, asset servicing, transaction processing, trade reporting and data services across asset classes, bringing enhanced resilience and soundness to existing financial markets while advancing the digital asset ecosystem. In 2024, DTCC's subsidiaries processed securities transactions valued at U.S. $3.7 quadrillion and its depository subsidiary provided custody and asset servicing for securities issues from over 150 countries and territories valued at U.S. $99 trillion. DTCC's Global Trade Repository service, through locally registered, licensed, or approved trade repositories, processes more than 25 billion messages annually. To learn more, please visit us at www.dtcc.com or connect with us on LinkedIn, X, YouTube, Facebook and Instagram.
DTCC proudly supports Flexible Work Arrangements favoring openness and gives people freedom to do their jobs well, by encouraging diverse opinions and emphasizing teamwork. When you join our team, you'll have an opportunity to make meaningful contributions at a company that is recognized as a thought leader in both the financial services and technology industries. A DTCC career is more than a good way to earn a living. It's the chance to make a difference at a company that's truly one of a kind.
Learn more about Clearance and Settlement by clicking here.