1

Information Security Engineer Jobs in Rochester, NY

Security Systems Engineer

Rochester, NY · On-site

$80K - $149K/yr

Specialist, Information Security Systems Engineer Job Code: 39983 Job Location: Rochester, NY Job Schedule: 9/80: Employees work 9 out of every 14 days - totaling 80 hours worked - and have every ...

next page

Showing results 1-20

Information Security Engineer information

See Rochester, NY salary details

$67.1K

$125.1K

$188.9K

How much do information security engineer jobs pay per year?

As of Aug 5, 2026, the average yearly pay for information security engineer in Rochester, NY is $125,143.00, according to ZipRecruiter salary data. Most workers in this role earn between $103,600.00 and $143,100.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as an information security engineer, and why are they important?

To thrive as an Information Security Engineer, you need a solid understanding of network security, risk assessment, cryptography, and incident response, usually backed by a degree in computer science or a related field. Familiarity with security tools such as SIEM platforms, firewalls, intrusion detection systems, and certifications like CISSP or CEH are typically required. Strong problem-solving abilities, attention to detail, and effective communication skills help you collaborate with teams and manage threats proactively. These skills and qualifications are vital to protecting organizational assets, ensuring compliance, and minimizing security risks in an ever-evolving threat landscape.

What is an information security engineer?

Information Security Engineers are professionals responsible for protecting an organization’s computer systems, networks, and data from security threats and cyberattacks. They design, implement, and maintain security protocols, monitor systems for vulnerabilities, and respond to security incidents. Their work often involves conducting risk assessments, developing security policies, and ensuring compliance with industry standards and regulations. Information Security Engineers play a critical role in maintaining the confidentiality, integrity, and availability of information assets.

What are some common challenges information security engineers face when collaborating with other departments?

Information Security Engineers often work closely with teams like IT, software development, and compliance. A common challenge is balancing security protocols with business needs, as other departments may prioritize speed or user experience over stringent security measures. Effective communication and the ability to explain technical risks in business terms are crucial for gaining buy-in and implementing robust security solutions. Additionally, keeping up with evolving threats while ensuring that all teams follow security best practices can be demanding but is key to organizational safety.

What does an information security engineer do?

An information security engineer works closely with information security specialists to analyze an organization’s computer and network system and identify and fix any potential issues related to fraud, cyber attacks, leaked data, or other security breaches. Your security engineering duties include performing routine maintenance and upgrades on security systems and programs, fixing issues brought to you by information security specialists, and researching solutions to improve current systems. You carry out your responsibilities in the information technology department of an organization, but you may also report to other departments to update management on the organization’s security status.

What is the difference between Information Security Engineer vs Network Security Engineer?

AspectInformation Security EngineerNetwork Security Engineer
CertificationsCompTIA Security+, CISSP, CEHCCNA Security, CISSP, CompTIA Security+
Work EnvironmentDesigns security systems, analyzes threats, implements security protocolsConfigures and manages network security devices, monitors network traffic
Employer & Industry UsageTech companies, finance, government agenciesTelecom, enterprise IT, cybersecurity firms

While both roles focus on protecting digital assets, the Information Security Engineer develops comprehensive security strategies and policies, whereas the Network Security Engineer primarily manages network defenses and infrastructure. Understanding these distinctions helps organizations assign the right security responsibilities and professionals.

What are popular job titles related to Information Security Engineer jobs in Rochester, NY? For Information Security Engineer jobs in Rochester, NY, the most frequently searched job titles are:
What job categories do people searching Information Security Engineer jobs in Rochester, NY look for? The top searched job categories for Information Security Engineer jobs in Rochester, NY are:
Infographic showing various Information Security Engineer job openings in Rochester, NY as of July 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $125,143 per year, or $60.2 per hour.

Senior Specialist, Information Security Systems Engineer

L3HHCM20

Rochester, NY • On-site

$92K - $171K/yr

Other

Medical, Retirement, PTO

Re-posted 13 days ago


Job description

Job Title: Information Security Systems Engineer
Job Code: 40374
Job Location: Rochester, New York
Job Schedule: 9/80 (Every Other Friday Off)
Job Description:  
The successful candidate will support a highly motivated engineering team in defining, designing, implementing, documenting, testing and sustaining security solutions on National Security Systems, or other systems engineered for our government customers, using current standards within National Institute of Standards & Technology (NIST) Risk Management Framework, Special Publications 800-37, 800-53, 800-171, and other NIST publications; Committee on National Security Systems Instruction (CNNSI) 1253, Joint SAP Implementation Guide (JSIG), and Federal Information Processing Standards (FIPS) to certify and achieve system accreditations. The successful candidate will work with system developers or commercial product vendors in the design and evaluation of state-of-the-art secure systems, networks, and database products, using methods such as encryption technology, vulnerability analysis and security management.

Essential Functions:
   Exercise skills in NIST Risk Management Framework (RMF) and all related NIST publications, to include writing System Security Plans, Security Control Traceability Matrix, Continuous Monitoring Plan, Security Assessment Plans & Procedures, Security Concept of Operations, Plan of Action and Milestones.
   Perform skills in implementing/assessing security controls, to include writing system security categorization memorandum, recommending appropriate security control overlays, define security control baseline based on defined system security categorization and approved security overlays, and apply security controls to computing/network nodes and verify implementation of security controls.
   Assist in systems/software engineering functions, to include creation of data flow diagrams, interface control documents, perform trade studies, and Static Application Security Testing (SAST) for Application Security and Development Secure Technical Implementation Guide (STIG) compliance using tools such as Fortify/Coverity and Gitlab as part of a DevSecOps Continuous Integration/Continuous Deployment (CI/CD) Pipeline, and generation of summary reports.
   Define/manage systems/security architectures including system security boundaries, vulnerability management and risk mitigation and remediation strategies within networks, systems, applications and new technology initiatives (hardware, software, firewalls, intrusion detection systems, anti-virus systems and software deployment tools); Infrastructure/Platform/Software as a Service (IaaS, PaaS, SaaS) implementations in cloud environments and development of Configuration Management Plans (CMP).
   Define/manage systems/security architectures including system security boundaries in on-premises data center systems and ultimately deploy to secure cloud-based system, to include configuration and use of defense and assessment tools specific to each environment type.
   This position is performed 100% onsite and cannot be performed remotely.

Qualifications:
   Education
o    Bachelor's Degree and minimum 6 years of prior relevant experience.
o    Graduate Degree and a minimum of 4 years of prior related experience.
o    In lieu of a degree, minimum of 10 years of prior related experience.
   Must have active TS/SCI Security Clearance.
   DoD 8140.03 IASAE Level 1 or 2 certification.

Preferred Additional Skills: 
   Perform Model Based System Engineering (UML, SysML, UAF).
   Configure/operate vulnerability analysis tools such Tenable NESSUS Security products.
   Develop dashboards, configure rules and operate/administer SEIM/audit reduction tools (e.g., Splunk).
   Active TS/SCI with poly is highly desired.

In compliance with pay transparency requirements, the salary range for this role in New York state is $92,500 - $171,500. This is not a guarantee of compensation or salary, as final offer amount may vary based on factors including but not limited to experience and geographic location. L3Harris also offers a variety of benefits, including health and disability insurance, 401(k) match, flexible spending accounts, EAP, education assistance, parental leave, paid time off, and company-paid holidays. The specific programs and options available to an employee may vary depending on date of hire, schedule type, and the applicability of collective bargaining agreements.