1

Soc Analyst Jobs in Rochester, NY (NOW HIRING)

Cloud Engineer- Infrastructure

Rochester, NY · On-site

$55 - $73.50/hr

... SOC 2, HIPAA, PCI) and security hardening. • Exposure to data-platform services and AI/ML tooling ... Cloud Migrations, Data Analytics and Insights. Founded in , the company is headquartered in ...

Hardware Engineer

Rochester, NY · On-site

$122K - $161K/yr

... analyzers. * Ability to work collaboratively with an international development team across multiple sites. * Familiarity with MCU, SoC, and modem integration for 4G LTE, 5G, and Wi-Fi technologies.

Hardware Engineer

Rochester, NY

$122K - $161K/yr

... analyzers. * Ability to work collaboratively with an international development team across multiple sites. * Familiarity with MCU, SoC, and modem integration for 4G LTE, 5G, and Wi-Fi technologies.

AI Solutions Engineer

Rochester, NY · Remote

$120K - $150K/yr

Analyze client data landscapes, evaluating data readiness, quality, and accessibility for AI ... DSS, SOC 2) (preferred) * Contributions to open-source AI/ML projects or published technical ...

Champion the integration of AI capabilities - including generative AI, predictive analytics, and ... Compliance automation platforms (SOC 2, PCI-DSS). PRODUCTIVITY & COLLABORATION * Microsoft 365 ...

Champion the integration of AI capabilities - including generative AI, predictive analytics, and ... Compliance automation platforms (SOC 2, PCI-DSS). PRODUCTIVITY & COLLABORATION * Microsoft 365 ...

Chief Technology Officer

Rochester, NY · On-site

$180 - $260/hr

Champion the integration of AI capabilities -- including generative AI, predictive analytics, and ... Compliance automation platforms (SOC 2, PCI-DSS). PRODUCTIVITY & COLLABORATION * Microsoft 365 ...

AI Solutions Engineer

Rochester, NY · On-site +1

$120K - $150K/yr

Analyze client data landscapes, evaluating data readiness, quality, and accessibility for AI ... DSS, SOC 2) (preferred) * Contributions to open-source AI/ML projects or published technical ...

next page

Showing results 1-20

Soc Analyst information

See Rochester, NY salary details

$35K

$97.8K

$125.3K

How much do soc analyst jobs pay per year?

As of Aug 11, 2026, the average yearly pay for soc analyst in Rochester, NY is $97,836.00, according to ZipRecruiter salary data. Most workers in this role earn between $71,000.00 and $124,800.00 per year, depending on experience, location, and employer.

What is the difference between Soc Analyst vs Security Engineer?

AspectSoc AnalystSecurity Engineer
CredentialsCertifications like CompTIA Security+, CEH, CISSP (entry-level to mid-level)Certifications like CISSP, CEH, OSCP, often more technical and advanced
Work EnvironmentSecurity operations centers, monitoring and analyzing security alertsDesigning, implementing, and maintaining security systems and infrastructure
Employer & Industry UsageFinancial, healthcare, government, and corporate sectorsTech companies, cybersecurity firms, large enterprises
Common Search & Comparison IntentUnderstanding roles in security monitoring and incident responseUnderstanding technical security implementation and architecture

While both roles focus on cybersecurity, Soc Analysts primarily monitor security alerts and respond to incidents within security operations centers. Security Engineers design and build security systems to prevent breaches. The roles complement each other but differ in focus, skills, and responsibilities.

What are some typical challenges a SOC analyst faces during incident response, and how can these be managed?

SOC Analysts often encounter challenges such as distinguishing legitimate threats from false positives, responding quickly to multiple simultaneous incidents, and managing large volumes of security alerts. These challenges can be managed by developing strong analytical skills, maintaining up-to-date knowledge of threat landscapes, and leveraging automated tools to prioritize incidents. Effective communication with IT teams and regular training in incident response protocols also play a key role in overcoming these obstacles and ensuring organizational security.

What is a SOC analyst?

SOC Analysts, or Security Operations Center Analysts, are cybersecurity professionals responsible for monitoring, detecting, and responding to security threats within an organization's IT infrastructure. They analyze security alerts, investigate suspicious activities, and help protect against data breaches and cyber attacks. SOC Analysts often work in shifts to provide round-the-clock surveillance and are essential for maintaining an organization’s security posture. Their duties also include reporting incidents, conducting threat analysis, and recommending improvements to security policies.

Is a SOC analyst a hard job?

A SOC analyst role involves monitoring security systems, analyzing threats, and responding to incidents, which can be demanding due to the need for attention to detail, quick decision-making, and knowledge of cybersecurity tools. The job often requires shift work, ongoing training, and certifications like CompTIA Security+ or CISSP, making it challenging but manageable with proper skills and experience.

What are the key skills and qualifications needed to thrive as a SOC analyst?

To thrive as a SOC Analyst, you need a solid understanding of cybersecurity principles, threat analysis, and incident response, often backed by a degree in information security or a related field. Familiarity with security information and event management (SIEM) tools, intrusion detection systems, and relevant certifications like CompTIA Security+ or CISSP are typically required. Strong analytical thinking, attention to detail, and effective communication are essential soft skills for quickly identifying and mitigating threats. These skills and qualifications are crucial for effectively protecting organizational assets and maintaining robust security operations.

Do SOC analysts get paid well?

SOC analysts typically earn competitive salaries that vary based on experience, certifications, and location. Entry-level positions may start lower, but experienced analysts with certifications like CISSP or CEH can command higher wages, especially in high-demand areas or specialized environments.
What are the most commonly searched types of Soc Analyst jobs in Rochester, NY? The most popular types of Soc Analyst jobs in Rochester, NY are:
What are popular job titles related to Soc Analyst jobs in Rochester, NY? For Soc Analyst jobs in Rochester, NY, the most frequently searched job titles are:
What job categories do people searching Soc Analyst jobs in Rochester, NY look for? The top searched job categories for Soc Analyst jobs in Rochester, NY are:
What cities near Rochester, NY are hiring for Soc Analyst jobs? Cities near Rochester, NY with the most Soc Analyst job openings:
Infographic showing various Soc Analyst job openings in Rochester, NY as of August 2026, with employment types broken down into 80% Full Time, and 20% Contract. Highlights an 100% In-person job distribution, with an average salary of $97,836 per year, or $47 per hour.

Senior Risk and Compliance Analyst

Constellation Brands, Inc.

Rochester, NY • On-site

$96K - $148K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 6 days ago


Constellation Brands rating

7.9

Company rating: 7.9 out of 10

Based on 12 frontline employees who took The Breakroom Quiz

99th of 436 rated food and drinks producers


Job description

Job Description
Position Summary:
The Senior Risk and Compliance Analyst is a key member of the IT Governance, Risk, and Compliance (GRC) team, responsible for supporting and advancing the organization's IT risk, compliance, and third-party risk management (TPRM) programs. This role partners with stakeholders across IT, Information Security, Procurement, Legal, OT, and the business to assess technology and vendor-related risks, strengthen governance practices, and support risk-informed decision-making.
The Analyst will help lead and mature the IT Third-Party Risk Management (TPRM) program by supporting vendor risk assessments, due diligence, ongoing monitoring, remediation tracking, and continuous improvement efforts. This role also contributes to risk intake, reporting, metrics, and automation initiatives that improve visibility, consistency, and efficiency across the broader GRC program.
Responsibilities:
  • Act as an advisor for IT GRC, providing guidance to IT and business stakeholders while advancing strategic GRC initiatives.

  • Lead and enhance the IT third-party risk management program, encompassing vendor risk assessments, onboarding procedures, ongoing monitoring, and remediation of identified risks.

  • Collaborate with Information Security, IT, Procurement, Legal and business teams to evaluate third-party vendors, applications, and services enterprise-wide.

  • Review third-party security documentation, including SOC reports, ISO certifications, security questionnaires, policies, and other relevant evidence to assess control maturity and residual risk.

  • Partner with the Security Operations Center (SOC) to monitor emerging threats, industry developments, and incident response insights, leveraging findings to assess and refine the risk profiles of critical vendors and technology supply chain partners.

  • Support the end-to-end risk intake workflow, help to maintain the IT risk register process, and ensure timely escalation of technology risks.

  • Collaborate with the IT Compliance Managers to support risk assessments for internal initiatives, third-party relationships, and critical business processes.

  • Contribute to the development of security metrics and dashboards, leveraging automated and manual processes to produce relevant KRIs/KPIs that measure and communicate risk exposure and program effectiveness.

  • Maintain current knowledge of industry best practices and monitor the legal and regulatory environment for developments that may require changes to policies and practices.

  • Drive automation efforts within the GRC and third-party risk programs by identifying manual or repetitive tasks and implementing technology solutions, or workflow tools to improve efficiency, consistency, and reporting.

  • Continuously seek opportunities to optimize and modernize GRC operations through technical innovation and automation.

Required Qualifications:
  • 4 or more years of experience in Information Security, Risk Management, Audit, IT Governance, IT Compliance, or related discipline.

  • Proven ability to lead and mature an IT Third-Party Risk Management (TPRM) program, including governance, risk assessments, and continuous improvement initiatives.

  • Strong understanding of third-party risk management practices across the vendor lifecycle, including due diligence, onboarding, ongoing monitoring, remediation, and offboarding.

  • Broad, generalist understanding of information security risk and compliance-comfortable operating across risk, audit, policy, and third-party risk areas.

  • Working knowledge of industry frameworks and regulatory requirements, including NIST, ISO, CIS, PCI-DSS, SOX, GDPR, CCPA, and HIPAA.

  • High degree of ownership, self-direction, and demonstrated thought leadership.

  • Ability to analyze manual processes and implement technical solutions to enhance efficiency and accuracy.

Preferred Qualifications:
  • Bachelor's degree in business administration, compliance, information systems, privacy, or related field; equivalent work or education-related experience considered.

  • One or more relevant certifications: CRISC, CISSP, CISA, CISM, CGEIT, GCCC, GSEC, GISP.

  • Proven ability to interact with key stakeholders and align priorities based on risk.

  • Familiarity with GRC platforms (e.g., LogicGate, Optro, OneTrust, Workiva).

  • Strong written and verbal communication skills; able to present complex risk and compliance topics to both technical and non-technical audiences.

  • Proficient in Microsoft Excel, Word, and PowerPoint.

ADA Physical/Mental/Workplace Requirements:
  • Occasional lifting up to 25 lbs

  • Sitting, working at desk/personal computer for extended periods of time

  • Primary work environment is professional corporate office

  • Ability to travel commercially and internationally.

#LI-JV1
Location
Rochester, New York
Additional Locations
Chicago, Illinois, San Antonio, Texas
Job Type
Full time
Job Area
Information Technology
The salary range for this role is:
$96,700.00 - $148,100.00
This is the lowest to highest salary we in good faith believe we would pay for this role at the time of this posting. Our compensation is based on cost of labor. For remote locations or positions open to multiple locations, the pay range may reflect several US geographic markets, including the lowest geographic market minimum to the highest geographic market maximum. We may ultimately pay more or less than the posted range, and the range may be modified in the future. An employee's pay position within the salary range will be based on several factors including, but not limited to, the prevailing minimum wage for the location, relevant education, qualifications, certifications, experience, skills, seniority, geographic location, performance, shift, travel requirements, sales or revenue-based metrics, any collective bargaining agreements, and business or organizational needs. At Constellation Brands, it is not typical for an individual to be hired at the high end of the range for their role, and compensation decisions are dependent upon the facts and circumstances of each position and candidate. We offer comprehensive package of benefits including paid time off, medical/dental/vision insurance, 401(k), and any other benefits to eligible employees.
Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, or any other form of compensation that are allocable to a particular employee remains in the Company's sole discretion unless and until paid and may be modified at the Company's sole discretion, consistent with the law.
Equal Opportunity
Constellation Brands is committed to a continuing program of equal employment opportunity. All persons have equal employment opportunities with Constellation Brands, regardless of their sex, race, color, age, religion, creed, sexual orientation, national origin or citizenship, ancestry, physical or mental disability, medical condition (cancer or genetic characteristics), marital status, gender (including gender identity or gender expression), familial status, military or veteran status, genetic information, pregnancy, childbirth, breastfeeding, or related conditions (or any other group or category within the framework of the applicable discrimination laws and regulations).

What Constellation Brands employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom