Security Operations Analyst Jobs in New York
Security Operations Analyst jobs in New York draw from one of the most active cybersecurity markets in the country, with demand concentrated in financial services, healthcare systems, and large enterprise technology, at levels from entry-level SOC tier-one analyst through senior threat detection engineer. Most openings cluster in New York City, Albany, and Buffalo, where institutions like JPMorgan Chase, Northwell Health, and IBM maintain established security operations functions. The most sought-after specialties in New York listings are SIEM management, incident response, and cloud security monitoring. Find a role that fits below and apply directly.
Find JobsOverview
Showing 5 of 7+ Security Operations Analyst jobs











COMPANY OVERVIEW
Monroe University, founded in 1933, is a national leader in higher education access, affordability, and attainment. We believe in the power of education to facilitate social mobility and transform communities and embrace our responsibility to advocate national policies that serve students’ best interests. We are proud of our outcomes and unique caring environment, especially for first-generation college students, newly arriving immigrants, and international students. Our innovative curriculum, taught by experienced industry professionals, integrates local, national, and global perspectives. Our academic programs align with industries that drive the New York and international economies that we serve. Our graduates are prepared for continued scholarship, professional growth, and career advancement.
Overview of the Position:
The Senior Security Operations Analyst is a senior individual contributor supporting the Cybersecurity team at Monroe University. This role owns Monroe’s operational security posture day-to-day — including the relationship with the outsourced Security Operations Center, incident response coordination, SIEM tuning and content development, and endpoint detection and response operations. The Senior Security Operations Analyst serves as the institution’s internal operational leader for detection and response, translating external SOC output into actionable institutional response and driving continuous improvement of Monroe’s detection capability. This role partners closely with the IT team, the outsourced SOC vendor, and external specialized firms engaged for forensics or incident response.
Core Responsibilities:
- Own the day-to-day relationship with Monroe’s outsourced Security Operations Center reviewing alert quality, validating findings, driving SLA performance, and escalating vendor issues.
- Serve as the institution’s primary incident responder — coordinating response activities, engaging IT and business stakeholders, managing vendor escalations, and producing incident documentation and after-action reports.
- Develop, maintain, and exercise Monroe’s incident response playbooks and runbooks, aligned with NIST 800-61 and institutional regulatory obligations (GLBA Safeguards Rule, FERPA, state notification laws).
- Conduct regular tabletop exercises with IT, legal, communications, and leadership to validate response capability and identify improvement areas.
- Own SIEM tuning, content development, and log source onboarding — ensuring that Monroe’s detection platform has the visibility required to support the outsourced SOC and internal threat hunting.
- Administer and optimize endpoint detection and response (EDR/XDR) across the institution’s endpoints and servers, ensuring consistent policy, current agent coverage, and response-ready tooling.
- Collaborate with the Senior Vulnerability and Threat Analyst on threat-informed detection engineering — translating threat intelligence and red team findings into new detections.
- Partner with the Senior IAM Engineer on identity-centric detections, including credential compromise indicators, anomalous authentication patterns, and privileged account misuse.
- Collaborate with the Senior Vulnerability and Threat Analyst on threat-informed detection engineering — translating threat intelligence and red team findings into new detections.
- Serve as Monroe’s operational liaison to external specialized firms during compromise assessments, forensic investigations, or incident response engagements.
- Produce operational metrics and reporting for the CISO and CIO, including mean-time-to-detect, mean-time-to-contain, alert volume trends, and SOC vendor performance.
- Support GLBA Safeguards Rule compliance by maintaining documented evidence of monitoring, incident response, and detection capability.
- Lead Monroe’s incident response on-call rotation and serve as the primary escalation point for after-hours security events.
Skills and Attributes:
- Deep hands-on experience with enterprise SIEM platforms (Microsoft Sentinel, Splunk, IBM QRadar, or equivalent), including detection engineering, log source management, and query language fluency.
- Strong working knowledge of endpoint detection and response platforms (CrowdStrike Falcon, Microsoft Defender XDR, SentinelOne, or equivalent), including policy design, response actions, and threat hunting.
- Demonstrated incident response experience across multiple incident types — ransomware, credential compromise, phishing, insider risk, data exfiltration.
- Fluency in the MITRE ATT&CK framework and ability to operationalize it within detection engineering and IR playbooks.
- Experience managing outsourced SOC relationships — contract terms, SLAs, escalation paths, performance management, and vendor transition.
- Strong scripting skills in Python, PowerShell, or KQL (Kusto Query Language) for detection development and automation.
- Understanding of higher-education operational context — academic calendar impact on IT operations, student/faculty/staff authentication patterns, campus-level incident communication — or demonstrated ability to learn rapidly.
- Excellent written and verbal communication skills; ability to produce clear incident documentation and communicate effectively during high-pressure situations.
- Calm, deliberate judgment during incidents; ability to maintain clarity and structure when systems are compromised and stakeholders are anxious.
- Collaborative orientation and comfort working with external vendors, internal IT teams, General Counsel, and senior leadership.
Qualifications
- Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, or a related field; equivalent professional experience considered.
- Minimum 6–8 years of progressive experience in security operations, incident response, or detection engineering, with at least 3 years in a senior analyst role.
- Professional certifications such as CISSP, GIAC GCIH, GIAC GCFA, GIAC GCIA, or equivalent strongly preferred.
- Experience in higher education, healthcare, financial services, or another regulated environment is preferred.
- Demonstrated incident response leadership experience, ideally including engagements involving external forensics or IR firms.
- Ability to work on-site at Monroe’s Bronx and New Rochelle campuses at least four days per week, with after-hours on-call availability.
Pay: $80,000.00 - $130,000.00 per year
Benefits:
- 401(k)
- Dental insurance
- Flexible spending account
- Health insurance
- Health savings account
- Life insurance
- Paid time off
- Retirement plan
- Tuition reimbursement
- Vision insurance
Work Location: In person
See All 7 Security Operations Analyst Jobs in New York
Find roles in New York that match your experience and apply in just a few clicks.
Find JobsSecurity Operations Analyst Jobs by City in New York
Where New York roles are concentrated, by current openings.
Security Operations Analyst Job Market in New York
A snapshot from current New York openings, updated as new roles post.
Who's Hiring
- Citi1

- Constellation Brands1

- Infojini1

- Monroe University1

- NYU Langone Health1

Top Industries Hiring
- Education2
- Food & Beverage1
- Insurance1
- Investment & Asset Management1
- Technology & Software1
What New York Employers Look For
The qualifications that appear most often in security operations analyst jobs across New York.
- Bachelor's degree in cybersecurity, information technology, or a closely related field
- Hands-on experience with SIEM platforms such as Splunk, Microsoft Sentinel, or IBM QRadar
- CompTIA Security+, CySA+, or equivalent vendor-neutral cybersecurity certification
- Demonstrated ability to triage, investigate, and escalate security incidents in a SOC environment
- Familiarity with NIST, CIS Controls, or financial-sector regulatory frameworks such as NYDFS
- Strong written and verbal communication skills for documenting incidents and briefing stakeholders
Security Operations Analyst Jobs in New York: Frequently Asked Questions
How do you become a security operations analyst in New York?
There is no state-issued license required to work as a security operations analyst in New York, so the path centers on education and credentials. Most New York employers expect a bachelor's degree in cybersecurity, computer science, or information systems, paired with an industry certification such as CompTIA Security+ or CySA+. Because New York's financial sector is heavily regulated under the NYDFS Cybersecurity Regulation, familiarity with that framework gives candidates a concrete edge in city-based roles.
How much do security operations analysts make in New York?
Security operations analysts in New York earn a median of about $134,660 a year, based on May 2025 Bureau of Labor Statistics wage data, ranging from around $83,110 for the lowest 10% to over $216,220 for the top 10%. Pay rises with experience, specialty, and employer.
Which companies hire security operations analysts in New York?
Employers hiring security operations analysts in New York right now include Citi, Constellation Brands, and Infojini, based on current listings on Migrate Mate as of June 2026. New York's concentration of global banks, insurance carriers, and large hospital networks means hiring is unusually consistent year-round compared with other states.
Which New York cities have the most security operations analyst jobs?
The cities with the most security operations analyst openings in New York are New York, Bronx, and Getzville. New York City dominates because of its dense concentration of financial institutions, media companies, and global corporate headquarters, while Albany draws openings from state government agencies and healthcare networks, and Buffalo reflects growing demand from regional banks and university-affiliated health systems.
Are there remote security operations analyst jobs in New York?
Yes, and more than most fields. Security operations analyst work is largely screen-based and tool-driven, making it well suited to remote arrangements. About 29% of security operations analyst openings tied to New York are remote or hybrid as of June 2026, reflecting how widely employers have adopted distributed SOC models. Tier-one alert triage and threat monitoring roles tend to be the most consistently remote, while senior incident response and on-call roles more often require on-site presence.
How can I get hired as a security operations analyst in New York with little or no experience?
The most realistic entry path is a tier-one SOC analyst role, which New York's large financial institutions and managed security service providers hire for regularly. Candidates coming from IT helpdesk, network operations, or systems administration backgrounds transition well because the tooling and escalation workflows overlap. Earning a CompTIA Security+ before applying and completing a home lab or capstone project demonstrating SIEM alerting gives a portfolio that New York hiring managers recognize. Major healthcare networks and state agencies also run associate or junior analyst programs that do not require prior SOC experience.
Where can I find and apply to security operations analyst jobs in New York?
You can find and apply to security operations analyst jobs in New York on Migrate Mate, which lists current openings from employers hiring in the state right now. Search the listings, find roles that match your experience and location preferences, and apply directly to the ones that fit.
See All 7 Security Operations Analyst Jobs in New York
Find roles in New York that match your experience and apply in just a few clicks.
Find Jobs