1

Senior Information Security Analyst Jobs in Santa Rosa, CA

Senior Security Engineer

Santa Rosa, CA · On-site

$200K - $315K/yr

Partner closely with product and infrastructure engineering to embed security into shipping cycles What you'll need: * 3 to 8 years hands-on information security experience, with core work in ...

Senior Security Engineer

Sonoma, CA · On-site

$200K - $315K/yr

Partner closely with product and infrastructure engineering to embed security into shipping cycles What you'll need: * 3 to 8 years hands-on information security experience, with core work in ...

Senior GRC Engineer

Bodega Bay, CA · On-site

$135K - $186K/yr

The Role Block Information Security is an engineering-driven team focused on scaling security ... analysis, control monitoring, classification, and assessment * Build the evals, benchmarks, and ...

Information Technology Job Level: Individual Contributor Business Unit: Technology & Security Work ... Solid knowledge of key PG&E systems and processes Training * Assist other specialists, analysts and ...

Posted today

IT Transport Specialist, Senior

Windsor, CA · Hybrid

$54.81 - $87.50/hr

Information Technology Job Level: Individual Contributor Business Unit: Technology & Security Work ... Solid knowledge of key PG&E systems and processes Training * Assist other specialists, analysts and ...

Posted today

IT Transport Specialist, Senior

Sonoma, CA · Hybrid

$54.81 - $87.50/hr

Information Technology Job Level: Individual Contributor Business Unit: Technology & Security Work ... Solid knowledge of key PG&E systems and processes Training * Assist other specialists, analysts and ...

Posted today

next page

Showing results 1-20

Senior Information Security Analyst information

See Santa Rosa, CA salary details

$48.7K

$116.7K

$159.6K

How much do senior information security analyst jobs pay per year?

As of Sep 7, 2026, the average yearly pay for senior information security analyst in Santa Rosa, CA is $116,679.00, according to ZipRecruiter salary data. Most workers in this role earn between $104,400.00 and $127,900.00 per year, depending on experience, location, and employer.

What is a senior information security analyst?

Senior Information Security Analysts are experienced professionals responsible for protecting an organization's computer systems and networks from security breaches and cyber threats. They assess security measures, identify vulnerabilities, implement security solutions, and respond to incidents. In addition to technical expertise, they often lead teams, develop security policies, conduct risk assessments, and ensure compliance with industry regulations. Their role is crucial in safeguarding sensitive information and maintaining the integrity of IT infrastructure.

What are the key skills and qualifications needed to thrive as a senior information security analyst?

A Senior Information Security Analyst should possess deep knowledge of cybersecurity principles, risk management, and incident response, typically demonstrated through a bachelor’s degree in computer science or a related field and several years of experience. Familiarity with security tools such as SIEM platforms, intrusion detection/prevention systems, and certifications like CISSP or CISM are highly valued. Strong analytical thinking, problem-solving, and effective communication skills set top performers apart in this role. These abilities are crucial to proactively identifying threats, implementing robust security measures, and effectively coordinating with stakeholders to protect organizational assets.

How does a senior information security analyst typically collaborate with other departments within an organization?

A Senior Information Security Analyst frequently works with IT, legal, compliance, and business operations teams to ensure security protocols are integrated into daily workflows. This collaboration often involves conducting risk assessments, providing security training, and assisting with incident response efforts. Close communication with other departments helps proactively identify vulnerabilities and implement best practices across the organization. Building strong relationships and clear channels of communication is essential to effectively protect company assets while supporting business objectives.

What is the difference between Senior Information Security Analyst vs Information Security Analyst?

AspectSenior Information Security AnalystInformation Security Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CEH, CISSP (preferred but not always required)
Work ExperienceTypically 5+ years in cybersecurity roles1-3 years in security or IT roles
ResponsibilitiesLeading security initiatives, risk assessments, mentoringMonitoring security systems, incident response, policy implementation
Work EnvironmentSecurity teams, IT departments, consulting firmsIT departments, security operations centers, corporate environments

The main difference between a Senior Information Security Analyst and an Information Security Analyst lies in experience, responsibilities, and leadership roles. Senior analysts typically have more years of experience, hold advanced certifications, and lead security projects, whereas analysts focus on monitoring and supporting security measures. Both roles are vital in protecting organizational assets but differ in scope and seniority.

What does a senior information security analyst do?

A senior information security analyst is responsible for protecting an organization’s computer systems and data by identifying vulnerabilities, implementing security measures, monitoring for security breaches, and responding to incidents. They often use tools like intrusion detection systems and may hold certifications such as CISSP or CISM to demonstrate expertise. Their role involves analyzing security risks and developing strategies to mitigate potential threats to ensure the organization's information remains secure.

What cities near Santa Rosa, CA are hiring for Senior Information Security Analyst jobs?

Cities near Santa Rosa, CA with the most Senior Information Security Analyst job openings:

Senior Information Security Analyst

Goldbelt, Inc.

Petaluma, CA • On-site

$100 - $125/hr

Other

Medical, Dental, Vision, Retirement, PTO

Re-posted 2 days ago


Job description

Overview

Please note that this position is contingent upon the successful award of a contract currently under bid.

Peregrine is a pioneer within the cybersecurity industrial control systems and the Internet of Things, supporting many federal and commercial customers. Peregrine's experienced staff knows the cybersecurity and operational technology environment and provides these capabilities for our customers daily.

Summary:

The Senior Information Security Analyst is responsible for the overall cybersecurity of assigned networks and devices. They must have intimate knowledge of federal government, Department of Defense, and U.S. Coast Guard cybersecurity requirements.

Responsibilities

Essential Job Functions:

  • Aggressively manage Cyber security accreditation requirements by working closely with the Program Manager, system administrators, database administrators and other key personnel to ensure all system accreditations remain current.
  • Ensure that all initial and recurring certification and accreditation activities are completed in accordance with DoDI 8500.01, Cyber Security, and DoDI 8510.01, Risk Management Framework (RMF) for assigned information systems, as well as maintaining compliance with the Federal Information Security Management Act (FISMA) of 2002 and other applicable directives for the assigned information systems.
  • Working directly with leadership, developers, engineers, system and database administrators to track changes to the system configurations and software, conducting regular reviews, updates and maintenance of certification and accreditation plans, topology drawings, and associated documents, and uploading completed documents to eMASS.
  • Schedule, oversee and document information system compliance testing, to include weekly Assured Compliance Assessment Solution (ACAS) scans and annual execution and testing of the Contingency Plans.
  • Manage accreditation and annual compliance actions using eMASS and the U.S. Coast Guard tracking tools to ensure annual reviews, control tests and contingency plan tests are completed on schedule to comply with FSMA requirements and keep the Program Manager informed of compliance and status of ATO efforts via updates to the PM’s Drumbeat and Metrics products.
  • Conduct a continuous review of all applications and database tools that make up the family of systems to ensure all software versions are registered and approved for use by the U.S. Coast Guard.
  • Conduct an annual review and update of all parent and child system profiles in the DHS approved repository system to ensure system’s registrations are complete and accurate, and that essential waivers for Data-At-Rest (DAR) and unsupported Commercial-Off-The-Shelf (COTS) software are documented and approved by U.S. Coast Guard CIO so that accreditations are not adversely affected.
  • Serve as Information Assurance Officer (IAO)/Information Systems Security Officer (ISSO), directly advising and assisting the Program Manager, developers, engineers, system and database administrators and staff on all cyber security policy, configuration and compliance matters.
    • This includes all aspects of cyber security that may affect the system security posture, to include emerging threats published in Cyber Alerts, Communication Tasking Orders, and vulnerability alerts and bulletins issued under the Information Assurance Vulnerability Management program.
  • As IAO/ISSO, advise the team on ports, protocols and services (PPS) approved for use by the U.S. Coast Guard, and register new PPS in the U.S. Coast Guard PPS Management Registry.
  • Prior to testing, identify Security Technical Implementation Guides (STIGs) to be applied to systems under development and test, and identify appropriate vulnerability scanning tools to be used during testing, to include the ACAS and Security Content Automation Protocol (SCAP) Compliance Checker automated scanning tools.
  • The IAO/ISSO will assist during scanning and advise the team on the remediation of findings identified during testing.
  • Following testing, the IAO will collect, collate, review and validate all test results and prepare supporting documentation, reports and artifacts to support the certification and accreditation of the system. Following accreditation, the IAO/ISSO will track and manage open findings in the Risk Assessment Report until mitigated or closed.
  • Provide expert advice in support of special projects, to include the development of an automated Cross Domain Solution (CDS) for use by the program and closely coordinate actions with the U.S. Coast Guard Cross Domain Solutions Office (USCGCDSO) and the Department of Homeland Security Unified Cross Domain Management Office (UCDMO).
    • This support includes authoring and submitting detailed system documentation and architectural drawings and working closely with both USCGCDSO and UCDMO personnel to navigate through a complex and highly technical approval process.
  • On a daily and weekly basis, provide authoritative cyber security advice during Internal Review Boards and make recommendations on open Configuration Change Requests (CCRs); Application Change Requests (ACRs), Database Change Requests (DBCRs), QA Trouble Reports (QTRs), Problem Reports (PRs), and Program Trouble Reports (PTRs).
Qualifications

Necessary Skills and Knowledge:

  • Proven record of honesty and integrity in all relationships.
  • Demonstrated leadership and organizational skills.
  • Excellent interpersonal skills and a collaborative management style.
  • Excellent communication skills, both verbal and written.
  • Excellent computer skills and proficient in Excel, Word, PowerPoint, Outlook, Visio, and Access.

Minimum Qualifications:

  • Minimum of five (5) years relevant experience.
  • Detailed knowledge of DoD Risk Management Framework.
  • Experience in an IAO/ISSO or Information Assurance Manager (IAM)/Information Systems Security Manager (ISSM) position.
  • Appropriate professional certifications per DoD 8570.01 (CISSP, GSLC or equivalent).
  • Must be eligible for a federal Public Trust clearance.

Preferred Qualifications:

  • Bachelors degree in cybersecurity or related degree.
  • CISSP Certification.
Pay and Benefits

The annual salary range for this position is $100,000 to $140,000.

At Goldbelt, we value and reward our team's dedication and hard work. We provide a competitive base salary commensurate with your qualifications and experience. As an employee, you'll enjoy a comprehensive benefits package, including medical, dental, and vision insurance, a 401(k) plan with company matching, tax-deferred savings options, supplementary benefits, paid time off, and professional development opportunities.

#J-18808-Ljbffr