Information Security Analysts plan and execute security measures to protect an organization's computer networks and systems from breaches, malware, and unauthorized access. Their daily work includes monitoring networks for suspicious activity, conducting vulnerability assessments and penetration tests, responding to security incidents, developing security policies, and staying current on emerging threats. They often collaborate with IT teams, management, and sometimes law enforcement when investigating breaches.
| Entry level | $65,000 |
| Median | $112,000 |
| Senior | $145,000 |
| Top 10% | $175,000 |
| Job growth | +32% |
| Professionals in the USA | 1.1 million |
| Typical hours/week | 42 hrs |
| Remote work share | 55% |
| Annual job openings | 17,300/yr |
| Demand | Extreme |
AI is transforming information security by automating threat detection, log analysis, and initial incident triage, allowing analysts to focus on complex investigations and strategy. However, the rapidly evolving threat landscape and adversarial use of AI by attackers means human expertise remains critical for defense. Demand for skilled analysts continues to grow as cyber threats increase in sophistication.
Automation exposure: Routine log monitoring, basic alert triage, pattern-based anomaly detection, vulnerability scanning, and generating standard compliance reports are increasingly automated by AI-driven SIEM and SOAR tools.
The human edge: Strategic judgment in novel attack scenarios, understanding organizational context and risk tolerance, ethical decision-making during incidents, creative adversarial thinking to anticipate attacker behavior, and cross-team communication during crises cannot be replicated by AI.
Figures are estimates for exploration — verify current data with BLS.gov.