Top Cyber Security Jobs in Rochester, NY

35 Minutes AgoSaved
Remote
Rochester, NY
154K-207K Annually
Senior level
154K-207K Annually
Senior level
Aerospace • Defense
Lead enterprise security risk assessments, maintain the risk register, prioritize and track remediation, evaluate vendor and architectural risks, define risk methodologies, map controls to NIST and CMMC requirements, support audits, report risk metrics to leadership, and promote risk ownership across the organization.
Top Skills: CmmcEarFairIso 27001ItarNist 800-171Nist 800-30Nist RmfSoc 2
Reposted An Hour AgoSaved
Remote
Rochester, NY
143K-304K Annually
Senior level
143K-304K Annually
Senior level
Software • Quantum Computing • Metaverse • Infrastructure as a Service (IaaS)
Designs and advances security architecture for Microsoft’s enterprise productivity environment. The role assesses evolving risk, analyzes systems and telemetry, develops reusable security patterns and tooling, partners with engineering teams on deployment, communicates risk and tradeoffs, and establishes priorities and roadmaps amid incomplete information.
Top Skills: Agentic Development ToolsAnomaly DetectionCloud ComputingScripting LanguagesThreat Modeling
Reposted An Hour AgoSaved
Remote
Rochester, NY
88K-206K Annually
Junior
88K-206K Annually
Junior
Software • Quantum Computing • Metaverse • Infrastructure as a Service (IaaS)
Lead solution sales for Microsoft Security with enterprise customers: identify opportunities, build solutions and business cases, manage senior relationships and pipeline, collaborate with partners and internal teams, forecast and pursue high-potential accounts, and obtain relevant product/role certifications.
Top Skills: Az-900AzureCcspCisspCnappCrowdstrikeEndpoint SecurityIdentity And Access ManagementIncident ResponseMicrosoft 365 DefenderMicrosoft SecurityPrisma CloudProofpointSc-500Security CopilotSentinelSIEMSplunkXdr
YesterdaySaved
Remote
Rochester, NY
135K-216K Annually
Expert/Leader
135K-216K Annually
Expert/Leader
Aerospace • Information Technology • Security • Cybersecurity • Defense
Leads OT/ICS and enterprise cybersecurity architecture for a federal critical-infrastructure modernization program. Responsibilities include requirements development, NERC CIP traceability, market research, RFI and vendor evaluation, lab testing, alternatives analysis, product recommendations, and executive briefings. The role bridges utility operational technology and IT security, covering access control, monitoring, asset management, vulnerability management, SCADA environments, and industrial systems. It is fully remote in the U.S. with up to 25% domestic travel and requires Public Trust eligibility.
Top Skills: Cisa Zero Trust ArchitectureConfiguration ManagementCyber-Asset ManagementData DiodesDodafEnterprise It CybersecurityFismaIcsIdentity And Access ManagementIndustrial ProtocolsLog MonitoringNerc CipNetwork MonitoringNist RmfOtPacket CapturePatch ManagementPivPrivileged Access ManagementProtective RelaysRtusScadaThreat VisibilityVulnerability Management
YesterdaySaved
In-Office or Remote
Rochester, NY
96K-181K Annually
Entry level
96K-181K Annually
Entry level
Fintech
Leads data security governance across database monitoring, encryption, certificate and key management, HSM operations, data masking, and cryptographic asset inventory. Manages a security governance team, develops controls and procedures, supports audits and regulatory inquiries, partners cross-functionally, and drives post-quantum cryptography readiness, automation, metrics, service reliability, and operational maturity.
Top Skills: AppviewxAtallaBigidCertificate ManagementCryptographic Asset ManagementDatabase Activity MonitoringDigicertEncryptionGoogle Key Management ServicesHardware Security ModulesMicrosoft PurviewPost-Quantum CryptographySecupiSsh Key Management
YesterdaySaved
Remote
Rochester, NY
207K-283K Annually
Senior level
207K-283K Annually
Senior level
Cloud • Security • Cybersecurity
Secure Wiz’s products, CI/CD systems, and production cloud infrastructure through threat modeling, security reviews, vulnerability management, detection and response, cloud and Kubernetes security baselines, policy-as-code, and automation. Partner with engineering, DevOps, operations, and Federal teams to implement scalable security controls, remediate risks, support FedRAMP requirements, and promote secure-by-design development practices.
Top Skills: AksAWSAzureCiemCloudFormationCnappCspmEksFedrampGCPGkeGoHclHelmIamKubernetesOwasp Top 10PulumiPythonRegoShellTerraform
YesterdaySaved
Remote
Rochester, NY
Mid level
Mid level
Productivity • Software • Cybersecurity
The GRC Analyst will operate and improve security compliance programs across SOC 2, ISO 27001, NIST, and FedRAMP. Responsibilities include risk and control assessments, audit readiness, evidence collection, remediation tracking, policy management, third-party risk, customer security questionnaires, and maintaining GRC systems. The role partners with technical and business teams, researches requirements, and uses cloud-based tools, AI, and automation to make compliance processes more scalable.
Top Skills: Ai AutomationAWSAws GovcloudFedrampGitIso 27001JIRANist 800-53Nist CsfSoc 2
YesterdaySaved
Remote or Hybrid
Rochester, NY
104K-158K Annually
Mid level
104K-158K Annually
Mid level
Insurance
Provides security operations and technical support for MDR customers, including alert investigation, incident response support, log analysis, remediation validation, endpoint onboarding, platform administration, compliance reviews, and security advisory guidance. The role troubleshoots MDR technologies, documents findings and runbooks, supports escalated DFIR investigations, and collaborates with technical account managers, MDR teams, and customers.
Top Skills: Cis ControlsCrowdstrikeGoogle WorkspaceMicrosoft 365Microsoft DefenderNist CsfSentineloneSophos Mdr
YesterdaySaved
Remote
Rochester, NY
85K-184K Annually
Junior
85K-184K Annually
Junior
Software • Quantum Computing • Metaverse • Infrastructure as a Service (IaaS)
Secure Windows products and devices through security design and code reviews, penetration testing, vulnerability research, fuzzing, and mitigation development. Build reusable security-review tools, identify vulnerabilities in operating-system features and native applications, investigate attack vectors, and collaborate with Windows engineering teams to implement scalable defenses. The role also involves engaging with external security researchers and communicating the business value of security investments.
Top Skills: CC++Code AuditingFuzzingWindowsPenetration TestingSecurity MitigationsVulnerability Research
Reposted YesterdaySaved
In-Office or Remote
Rochester, NY
143K-304K Annually
Senior level
143K-304K Annually
Senior level
Software • Quantum Computing • Metaverse • Infrastructure as a Service (IaaS)
Lead architecture and hands-on development of Microsoft's AI Safety Platform, building observability, detection, investigation, threat-hunting, and distributed data-processing capabilities. Design attack detection infrastructure, correlate high-volume telemetry, apply AI security research, conduct security and privacy reviews, and partner across engineering, science, and incident response teams. Mentor engineers and provide technical leadership for complex AI security systems.
Top Skills: Agent-Based SystemsAzure Data FactoryBatch ProcessingCC#C++Ci/CdData LakesDatabricksEmbeddingsInfrastructure As CodeJavaJavaScriptKubernetesKustoLarge Language ModelsPythonRetrieval-Augmented GenerationSparkStreaming PipelinesVector Databases
YesterdaySaved
Remote
Rochester, NY
106K-272K Annually
Senior level
106K-272K Annually
Senior level
Software • Quantum Computing • Metaverse • Infrastructure as a Service (IaaS)
Leads technical security sales engagements through demonstrations, proofs of concept, hackathons, architecture workshops, and customer consultations. Designs secure, scalable cloud and hybrid architectures, resolves technical blockers, and advises customers on Microsoft Security solutions, including Defender and Sentinel. Develops security posture recommendations, supports XDR, zero trust, cloud security, and AI adoption strategies, while influencing technical decisions and representing Microsoft in developer communities.
Top Skills: AzureCloud SecurityHybrid InfrastructureMicrosoft 365 DefenderMicrosoft Defender For CloudMicrosoft Developer ToolsMicrosoft SentinelOffice 365Power BIXdrZero Trust
Reposted YesterdaySaved
Remote
Rochester, NY
220K-220K Annually
Senior level
220K-220K Annually
Senior level
Artificial Intelligence • Software
Leads complex security alert triage, incident investigations, threat hunting, detection improvement, and incident response. Develops playbooks, operationalizes threat intelligence, builds automation, and mentors analysts. The role partners with detection engineering to improve security monitoring across cloud, endpoint, identity, network, and application telemetry while raising investigation and documentation standards.
Top Skills: Cloud Security ToolingDetection PlatformsDetection-As-CodePythonSIEM
New

Track Smarter, Apply Better.

Ditch the spreadsheets. Organize your job search with our freeApplication Tracker.

Use For Free
Application Tracker Preview
29 Days AgoSaved
Easy Apply
Remote or Hybrid
Rochester, NY
Easy Apply
275K-315K Annually
Expert/Leader
275K-315K Annually
Expert/Leader
AdTech • Artificial Intelligence • Marketing Tech • Software • Analytics
Lead Zeta’s AI-native Application Security function by defining strategy, building the team, embedding security agents and policy-as-code into IDEs, pull requests, CI/CD, and AI/ML pipelines, and overseeing continuous threat modeling and validation. Own security for AI systems, models, prompts, and agents, including adversarial testing for prompt injection, model abuse, and data leakage. Mentor engineers and promote automated, secure software development practices.
Top Skills: AIAi/MlApi SecurityCi/CdCloud-Native SystemsDevsecopsIdesOwaspPolicy-As-CodeThreat Modeling
YesterdaySaved
Remote
Rochester, NY
90K-130K Annually
Senior level
90K-130K Annually
Senior level
Healthtech
Designs, implements, and manages AWS cloud security policies, architecture, and technologies. The role oversees firewalls, DLP, vulnerability scanning, monitoring, logging, IAM, incident response, compliance, and remediation. It provides security guidance for AWS solutions, supports migrations of mission-critical applications, researches new technologies, documents standards, presents to varied audiences, and mentors less experienced engineers. The position requires strong AWS expertise, infrastructure-as-code proficiency, knowledge of regulated healthcare environments, and experience securing highly available cloud and serverless architectures.
Top Skills: Active DirectoryAdfsAmazon CloudfrontAmazon CloudwatchAmazon InspectorAmazon MacieAmazon VpcApplication Load BalancerAWSAws CloudformationAws CloudtrailAws ConfigAws Control TowerAws GuarddutyAws LambdaAws Security HubAws ShieldAws Transit GatewayAws Trusted AdvisorAws WafAzureAzure AdBashCi/CdCisDatadogDynatraceGCPHipaaHitrustIamInfrastructure As CodeJSONLanding Zone AcceleratorNetwork AclsNetwork Load BalancerNew RelicNistPci DssPythonSecurity GroupsSoc 2SplunkTerraformVpc Flow LogsYaml
29 Days AgoSaved
Remote
Rochester, NY
174K-205K Annually
Senior level
174K-205K Annually
Senior level
Artificial Intelligence • Marketing Tech • Software • Generative AI • Automation
Lead security engineering across AI systems, cloud infrastructure, product security, GRC automation, GitHub controls, and compliance workflows. Develop AI-specific threat models and guardrails, automate security checks and evidence collection, strengthen AWS and GCP environments, manage CSPM tooling, and secure software supply chains. Partner with Engineering, Product, Legal, IT, and GRC to establish security programs and practical controls for Jasper’s AI platforms.
Top Skills: Ai AgentsAPIsAWSCi/CdCnappCspmDrataGCPGitGithub ActionsIamInfrastructure As CodeIso 27001LlmsRagSoc 2Software Composition AnalysisVantaWiz
29 Days AgoSaved
Remote or Hybrid
Rochester, NY
162K-273K Annually
Expert/Leader
162K-273K Annually
Expert/Leader
Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
Lead the development of SailPoint’s cybersecurity architecture practice. Create holistic and reference architectures, define security domains, develop strategic roadmaps, identify security gaps, and translate architectural concepts into viable engineering solutions. Partner with leadership to prioritize initiatives, secure funding, and operationalize the practice. The role also includes hands-on security projects, cross-functional collaboration, stakeholder influence, and mentoring architects and engineers across cloud, application, identity, and network security.
Top Skills: AgileApplication SecurityCloud SecurityEnterprise ArchitectureIdentity SecurityIsoNetwork SecurityNistSabsaSecurity Engineering
Reposted YesterdaySaved
Remote
Rochester, NY
102K-261K Annually
Junior
102K-261K Annually
Junior
Software • Quantum Computing • Metaverse • Infrastructure as a Service (IaaS)
Designs and operates controlled cyber-capability evaluations for frontier AI models and agentic systems. Builds vulnerable applications, cyber ranges, exploit-development targets, and evaluation harnesses; runs experiments; collects telemetry; analyzes model behavior and evaluation artifacts; and documents security findings. The role also develops sandboxing, containment, access, and secrets-management controls while collaborating with red-team operators, researchers, engineers, and Responsible AI stakeholders.
Top Skills: Ai AgentsCloud-Based Test InfrastructureContainersCyber RangesExploit DevelopmentGenerative AiLarge Language ModelsModel ApisPenetration TestingPyritPythonSandboxed ExecutionVulnerability Research
YesterdaySaved
Remote
Rochester, NY
Expert/Leader
Expert/Leader
Information Technology
Oversee application security scanning, vulnerability remediation, and security-related release readiness while developing and maintaining full-stack Java web applications. Coordinate with IRS personnel, create remediation milestones, lead technical meetings, troubleshoot environments, review code, perform testing, and document technical solutions. The role requires extensive J2EE development, security tooling, CI/CD, OpenShift, mainframe integration, and vulnerability management experience in a federal environment.
Top Skills: Apache TomcatCi/Cd PipelinesCicsEclipse 2022+Github ActionsHTML5Ibm AssemblerIbm LibertyIbm MainframeItextJava 17Java 21JavabeansJavaScriptJIRAJqueryJsfMavenNexus IqOpenshiftPrimefacesQualysRed Hat LinuxSeleniumServicenowSonarqubeSpring BootSpring FrameworkTrivyVerastream Bridge Integrator
YesterdaySaved
Remote
Rochester, NY
148K-164K Annually
Mid level
148K-164K Annually
Mid level
Insurance
Supports cloud security operations across Azure and AWS, including posture management, identity and access controls, architecture reviews, network security, DevSecOps, infrastructure-as-code reviews, data protection, monitoring, incident response, compliance assessments, and leadership reporting. Coordinates remediation with infrastructure, application development, and information security teams while maintaining cloud security policies, dashboards, documentation, and audit evidence.
Top Skills: Amazon Web ServicesApi GatewaysArmAws AlbAws CloudformationAws ConfigAws GuarddutyAws IamAws KmsAws NlbAws Security HubAws Service Control PoliciesAzure Application GatewayAzure BicepAzure DevopsAzure Key VaultAzure Load BalancerAzure PolicyCasbCis BenchmarksCnappCopilotCwppDockerEdrGdprGitGlbaHipaaIso 27001KubernetesLinuxMdrAzureMicrosoft Defender For CloudMicrosoft Entra IdMicrosoft FabricMicrosoft PurviewNist CsfOauth 2.0Openid ConnectPci-DssPkiPowershellPythonRbacSAMLSIEMSoxTerraformWafWindows
2 Days AgoSaved
Remote
Rochester, NY
400K-680K Annually
Senior level
400K-680K Annually
Senior level
News + Entertainment
Own security partnerships for Netflix Marketing and Animation, advising leaders on risk, GenAI adoption, access controls, content protection, architecture, and remediation. Lead risk assessments, business risk profiles, metrics, and pre-release content security initiatives. Support technical security due diligence for acquisitions and subsidiaries while translating complex security concerns into actionable business guidance across application, cloud, identity, and data domains.
Top Skills: Application SecurityCloud SecurityData GovernanceGenaiIdentity And Access Management
2 Days AgoSaved
Remote
Rochester, NY
Mid level
Mid level
Biotech • Pharmaceutical
Implements and maintains security technologies across endpoint, network, cloud, server, and mobile environments. Monitors alerts, investigates incidents, performs vulnerability assessments, develops detection rules, hardens systems, supports identity and access controls, automates security tasks, and coordinates remediation. The role also supports audits, security reviews, documentation, reporting, and continuous improvement while collaborating with IT and security teams.
Top Skills: AWSCisCisco Identity Services EngineCisco UmbrellaData Loss PreventionData MaskingDnsEdrEncryptionFirewallsIds/IpsIso 27001MfaMicrosegmentationAzureMobile Device ManagementNetwork Access ControlNistPowershellPrivileged Access ManagementPythonSIEMSso
2 Days AgoSaved
Remote
Rochester, NY
110K-125K Annually
Senior level
110K-125K Annually
Senior level
Information Technology • Consulting
Supports cybersecurity risk management and authorization for the VA.gov Platform. Assesses NIST security controls, performs gap and risk analyses, maintains SSPs, POA&Ms, and authorization evidence, and translates deficiencies into engineering remediation. The role supports ATO/cATO readiness, OSCAL automation, threat modeling, secure design reviews, stakeholder coordination, incident response, and continuous synchronization between technical changes and security documentation.
Top Skills: Amazon EksAtoAWSCatoCi/CdFisma HighGithub ActionsInfrastructure As CodeKubernetesNist 800-53Nist Risk Management Framework (Rmf)OscalWasa/Dast
2 Days AgoSaved
In-Office or Remote
Rochester, NY
Mid level
Mid level
Hardware • Other • Software • Appliances • Industrial • Manufacturing
Supports cybersecurity operations, incident response, vulnerability management, remediation tracking, security project execution, governance, compliance, reporting, and dashboard development. The role coordinates with technical and business stakeholders to investigate alerts, validate remediation, support audits, maintain security documentation, and improve security processes. Requires at least three years of relevant technical or information security experience, with preferred experience in CrowdStrike, Zscaler, Microsoft O365, SIEM, GRC, and security certifications.
Top Skills: Active DirectoryCrowdstrikeCysa+Endpoint SecurityEntra IdFirewallsGrcGsecIncident ResponseMicrosoft O365NetworkingPatch ManagementSecurity MonitoringSecurity+SIEMSscpWindowsZscaler
2 Days AgoSaved
Remote
Rochester, NY
98K-154K Annually
Mid level
98K-154K Annually
Mid level
Information Technology • Professional Services • Utilities
Maintains security infrastructure, firewalls, PKI, access controls, vulnerability management, incident response, compliance documentation, and threat detection systems. Uses AI-powered SIEM, EDR, UEBA, and SOAR tools to automate security operations and identify emerging threats. Develops policies based on NIST, FISMA, PCI, PII, and CJIS requirements; performs risk assessments, system hardening, and security training. Collaborates with IT teams and evaluates AI/ML security, privacy, and supply chain risks.
Top Skills: Access Control ListsAi/Ml Security ToolsAWSAzureChatgptCisCjisCrowdstrike FalconDarktraceDhcpDlpDnsEdrFirewallsFismaGCPGenerative AiGithub CopilotLdapLlmsMicrosoft SentinelNistPciPiiPkiRoutersSIEMSoarStigsUebaUsgcb
2 Days AgoSaved
Remote
Rochester, NY
132K-140K Annually
Mid level
132K-140K Annually
Mid level
Healthtech
Own the day-to-day security and compliance program for a HIPAA-regulated AI healthcare platform. Responsibilities include managing risk assessments, penetration-test remediation, vendor and BAA reviews, policies, device compliance, incident response, access-management initiatives, compliance automation, AI security guardrails, and board reporting. The role partners with the CPO, contractor CISO, IT administrator, and MSP while building readiness for SOC 2 or HITRUST certification.
Top Skills: ByodClaudeCoworkDrataGoogle VaultGoogle WorkspaceGoogle Workspace DlpHipaaHitrustMdmPenetration TestingSoc 2SsoVanta
All Filters
JobType
New Jobs
Job Category
Experience
Industry
Company Name
Company Size

Sign up now Access later

Create Free Account