1

Information Security Risk Officer Jobs in Rochester, NY

A Signal Dedicated Officer will conduct static security services for courtyards, offices, pools ... Communicate with the Dedicated Branch Supervisor to receive and disseminate information through ...

SECURITY OFFICER

Avon, NY · On-site

$17 - $19/hr

Security Officer A Signal Dedicated Officer will conduct static security services for courtyards ... Completes reports by recording observations, information, occurrences, and surveillance activities.

SECURITY OFFICER

Avon, NY · On-site

$17 - $19/hr

Security Officer A Signal Dedicated Officer will conduct static security services for courtyards ... Completes reports by recording observations, information, occurrences, and surveillance activities.

next page

Showing results 1-20

Information Security Risk Officer information

See Rochester, NY salary details

$29.1K

$93.7K

$168.2K

How much do information security risk officer jobs pay per year?

As of Jun 6, 2026, the average yearly pay for information security risk officer in Rochester, NY is $93,660.00, according to ZipRecruiter salary data. Most workers in this role earn between $48,800.00 and $125,800.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as an Information Security Risk Officer, and why are they important?

To thrive as an Information Security Risk Officer, you need a strong background in cybersecurity principles, risk management frameworks, and typically a degree in information technology or a related field. Familiarity with technical tools such as risk assessment software, SIEM systems, and certifications like CISSP or CISM is often required. Strong analytical thinking, attention to detail, and effective communication skills are crucial for translating complex risks to stakeholders and driving organizational change. These skills are vital for identifying, assessing, and mitigating security threats, ensuring the organization's information assets remain protected and compliant.

What does an Information Security Risk Officer do?

An Information Security Risk Officer is responsible for identifying, assessing, and mitigating risks that could threaten an organization's information systems and data. They develop and implement risk management strategies, conduct security assessments, and help ensure compliance with relevant laws and regulations. Their role often involves coordinating with other departments to promote security best practices and preparing reports for senior management on potential threats and risk mitigation efforts.

What is the difference between Information Security Risk Officer vs Cybersecurity Analyst?

AspectInformation Security Risk OfficerCybersecurity Analyst
CertificationsISO 27001 Lead Implementer, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk management teams, compliance departmentsSecurity operations centers, incident response teams
Employer & Industry UsageFinancial, healthcare, government sectorsIT firms, cybersecurity service providers
Primary FocusAssessing and managing security risks, complianceDetecting and responding to security threats

The main difference is that an Information Security Risk Officer focuses on identifying, assessing, and managing security risks and ensuring compliance, while a Cybersecurity Analyst primarily detects, investigates, and responds to security threats. Both roles require relevant certifications and work in security-focused environments, but their core responsibilities differ in scope and focus.

What are some common challenges Information Security Risk Officers face when balancing security requirements with business objectives?

Information Security Risk Officers often encounter the challenge of aligning robust security controls with the organization's need for operational efficiency and innovation. Balancing compliance and risk mitigation with the urgency of business initiatives requires strong communication and negotiation skills, as well as a deep understanding of both technical risks and business goals. Successfully navigating these challenges involves collaborating closely with IT, legal, and business stakeholders to develop practical solutions that protect assets without hindering productivity or growth.
What are popular job titles related to Information Security Risk Officer jobs in Rochester, NY? For Information Security Risk Officer jobs in Rochester, NY, the most frequently searched job titles are:
What job categories do people searching Information Security Risk Officer jobs in Rochester, NY look for? The top searched job categories for Information Security Risk Officer jobs in Rochester, NY are:
Infographic showing various Information Security Risk Officer job openings in Rochester, NY as of May 2026, with employment types broken down into 44% Full Time, and 56% Part Time. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $93,660 per year, or $45 per hour.
Information Security Compliance Analyst

Information Security Compliance Analyst

Cooper Companies

Victor, NY • On-site

$94K - $125K/yr

Full-time

Posted 18 days ago


Job description

At CooperVision, a division of CooperCompanies, we're driven by a unifying purpose to help people to experience life's beautiful moments. We are connected through our shared values - dedicated, innovative, friendly, partners, and do the right thing. As a leading global manufacturer of contact lenses, we are committed to helping improve the way people see each day. Through our diverse lens portfolio, we tackle the toughest vision challenges - including astigmatism, presbyopia, and childhood myopia. We offer the most complete collection of spherical, toric, and multifocal products available, enabling us to fit 99% of all contact wearers. Learn more at www.coopervision.com.

Job Summary:

The Information Security Compliance Analyst supports the Manager, Identify & Protect in the design, implementation, operation, and continuous improvement of the organization's information security compliance program. This role focuses on day-to-day compliance activities including but not limited to; control identification, testing, risk evaluation, audit support and coordination. The Information Security Compliance Analyst will coordinate with internal stakeholders to ensure adherence to applicable data protection laws, regulatory requirements, and internal security standards, such as, NIS2, HIPAA, GDPR and other relevant frameworks.

Knowledge, Skills and Abilities:

  • Working knowledge of regional and global cybersecurity and data privacy regulations such as GDPR, HIPAA, NIS2, and similar frameworks.
  • Understanding of information security risk concepts and control frameworks such as NIST CSF 2.0, SSAE18 SOC 2, ISO 27001, CIS Controls, etc..
  • Ability to analyze compliance requirements and map them to security controls.
  • Strong attention to detail and organizational skills.
  • Effective written and verbal communication skills.
  • Ability to work collaboratively with cross-functional teams and stakeholders.
  • Strong analytical and problem-solving skills.
  • Ability to manage multiple tasks and priorities in a structured and timely manner.

Work Environment:

  • Normal office environment.
  • Prolonged sitting in front of a computer.

Experience:

  • Minimum of two to five years of cumulative, full-time experience in Information Security, IT Audit, Risk, or Compliance-related roles preferred.
  • Familiarity with legal and regulatory requirements such as SOX, HIPAA, GDPR, PCI DSS, and other domestic or international privacy and security regulations.
  • Experience supporting audits, risk assessments, or compliance programs is preferred.

Education:

  • Bachelor's degree in computer science, cybersecurity, information systems, or a related field; or an equivalent combination of education and experience.
  • Security or compliance certifications such as CISA, Security+,ISC CC or similar are a plus.

We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, gender identity or expression, or veteran status. We are proud to be an equal opportunity workplace.

For U.S. locations that require disclosure of compensation, the starting base pay for this role is between $94,220.00 and $125,626.00 per year and may include cost of living adjustments.  The actual base pay includes many factors and is subject to change and modification in the future.  This position may also be eligible for other types of compensation and benefits.

#LI-AK1

  • Support the development, maintenance, and implementation of information security policies, procedures, standards, and guidelines.
  • Assist in monitoring and ensuring compliance with applicable data protection laws and regulations, including NIS2, HIPAA, GDPR and other relevant requirements.
  • Perform security compliance assessments, control testing, and evidence collection to identify gaps or deficiencies.
  • Support internal and external audits by coordinating evidence requests, preparing documentation, and tracking remediation activities.
  • Assist with risk assessments by identifying information security risks, documenting findings, and supporting mitigation efforts.
  • Track, monitor, and report on information security compliance issues, corrective actions, and remediation progress.
  • Maintain compliance documentation, registers, metrics, and dashboards to support reporting and governance needs.
  • Collaborate with IT, Legal, Privacy, and business stakeholders to support consistent implementation of security and compliance requirements.
  • Monitor regulatory changes and emerging security threats that may impact compliance obligations.
  • Support training and awareness activities related to information security policies, standards, and compliance requirements.
  • Help ensure third-party and contractual information security requirements are documented and supported through evidence collection and reviews.
  • Participate in reviews to identify root causes of noncompliance and support development of corrective and preventive actions.
  • Support monitoring, measurement, and reporting of the effectiveness and efficiency of information security controls.
  • Promote information security and compliance practices as part of the organization's culture.

Travel Requirements: 

Up to 5% domestic and/or international travel