1

Cyber Risk Assessment Jobs in Utah (NOW HIRING)

Proven background in performing cyber risk assessments, writing security policies, and managing awareness or training programs. * Working knowledge of established regulatory and compliance frameworks ...

... cyber and infrastructure domains. You'll serve as a thought leader, technical consultant, and ... Risk Assessment and Remediation: * Conduct comprehensive risk reviews for cloud and infrastructure ...

End Cyber Risk. We're looking for a Vice President, Deputy CISO to be a part of making that happen ... Owns the enterprise security risk management program, including risk assessment, treatment ...

Senior Auditor

Sandy, UT ยท On-site

$80 - $110/hr

Contribute to IT audit entity risk assessments and development of the IT audit plan. * Conduct and ... Provide insights into IT and cyber risk exposures, control design, and governance effectiveness.

Cyber Defense Analyst

Clearfield, UT ยท On-site

$101K - $121K/yr

As a Cyber Defense Analyst, you will be a member of the Security Operations Center (SOC) team ... Coordinate with the ISSM to conduct vulnerability scans, risk assessments, and compliance reviews

As a Cyber Defense Analyst, you will be a member of the Security Operations Center (SOC) team ... Coordinate with the ISSM to conduct vulnerability scans, risk assessments, and compliance reviews

Cyber Defense Analyst

Clearfield, UT ยท On-site

$101K - $121K/yr

As a Cyber Defense Analyst, you will be a member of the Security Operations Center (SOC) team ... Coordinate with the ISSM to conduct vulnerability scans, risk assessments, and compliance reviews

Prepare comprehensive risk and threat assessments. Partner with law enforcement, cybersecurity ... Monitor and interpret evolving security, geopolitical, and cyber trends. * Identify vulnerabilities ...

Project Mgr II - Admin

Clearfield, UT ยท On-site

$107K - $183K/yr

Research geopolitical events, supplier disruptions, cyber incidents, natural disasters, regulatory ... Prepare and present risk assessments, Vendor Health Assessments, leadership briefings, decision ...

next page

Showing results 1-20

Cyber Risk Assessment information

What is a cyber risk assessment?

A cyber risk assessment is a process used to identify, evaluate, and prioritize potential threats and vulnerabilities in an organization's information systems. It helps organizations understand the potential impact of cyber threats and determine the likelihood of such events occurring. By conducting a cyber risk assessment, businesses can implement appropriate security controls and strategies to mitigate risks, comply with regulatory requirements, and protect sensitive data from cyberattacks. Regular assessments are essential to adapt to evolving threats and maintain a strong cybersecurity posture.

What are the key skills and qualifications needed to thrive as a cyber risk assessor?

To thrive as a Cyber Risk Assessor, you need a strong understanding of cybersecurity principles, risk management frameworks, and relevant regulations, often backed by a degree in information security or related certifications like CISSP or CISA. Familiarity with security assessment tools, vulnerability scanners, and risk analysis platforms is typically required. Analytical thinking, attention to detail, and effective communication are vital soft skills for accurately identifying threats and conveying risks to stakeholders. These skills and qualities are crucial for protecting organizational assets and ensuring compliance in an evolving threat landscape.

What are some common challenges faced by professionals in cyber risk assessment, and how can they be addressed?

Professionals in Cyber Risk Assessment often encounter challenges such as rapidly evolving threat landscapes, keeping up with regulatory changes, and ensuring clear communication of technical risks to non-technical stakeholders. To address these, staying current with industry trends through continuous learning, leveraging robust risk assessment frameworks, and developing strong communication skills are essential. Additionally, collaborating closely with IT, compliance, and business units helps ensure comprehensive and effective risk management.

What is the difference between Cyber Risk Assessment vs Cyber Security Analyst?

AspectCyber Risk AssessmentCyber Security Analyst
Primary FocusIdentifying and evaluating cybersecurity risks and vulnerabilitiesMonitoring, detecting, and responding to security threats
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CEH, CISSP
Work EnvironmentRisk management teams, consulting firms, security departmentsSecurity operations centers, IT departments, incident response teams
ResponsibilitiesRisk analysis, vulnerability assessments, complianceThreat detection, incident response, security monitoring

While both roles involve cybersecurity, Cyber Risk Assessments focus on evaluating potential risks and vulnerabilities to inform security strategies, whereas Cyber Security Analysts actively monitor and respond to ongoing security threats. Understanding these differences helps organizations assign the right roles for comprehensive cybersecurity management.

What are popular job titles related to Cyber Risk Assessment jobs in Utah?

For Cyber Risk Assessment jobs in Utah, the most frequently searched job titles are:

What cities in Utah are hiring for Cyber Risk Assessment jobs?

Cities in Utah with the most Cyber Risk Assessment job openings:

GRC Security Manager

West Valley City, UT โ€ข On-site

Robert Half
Recruiting and Staffing Servicesย โ€ขย 10K+ employees

Full-time

Posted 20 days ago


Job description

We are looking for an experienced GRC Security Manager to lead cybersecurity governance, risk, and compliance efforts for a health-focused organization in West Valley City, Utah. This position will shape security policies, evaluate enterprise risk, and strengthen compliance practices across the business. The role also works closely with audit, legal, privacy, procurement, and technical teams to improve resilience, manage third-party exposure, and support informed security decision-making.
Responsibilities:
• Lead enterprise-wide cybersecurity risk reviews to uncover control gaps, assess potential impact, and prioritize remediation plans.
• Create and maintain security policies, standards, and operating procedures that support regulatory expectations and business objectives.
• Partner with departmental leaders to ensure security requirements are clearly communicated, adopted effectively, and consistently followed.
• Build and manage employee security awareness initiatives, updating training content to address evolving threats and measuring program effectiveness.
• Serve as the main point of contact for internal audit activities related to cybersecurity controls, evidence gathering, and issue follow-up.
• Direct compliance efforts tied to applicable security and privacy frameworks, coordinating cross-functional teams to maintain readiness and adherence.
• Develop reporting dashboards and performance indicators that provide leadership with visibility into cyber risk trends and program maturity.
• Oversee third-party security evaluations, including due diligence reviews, risk assessments, and collaboration on contract-related security requirements.
• Identify cybersecurity concerns associated with AI usage and work with technical stakeholders to integrate those risks into the broader control framework.
• Collaborate with privacy and legal partners to align cybersecurity practices with data protection obligations and regulatory requirements.• Bachelor’s degree in Cybersecurity, Information Technology, or a closely related discipline; advanced education is preferred.
• At least 5–7 years of hands-on experience in cybersecurity governance, risk, and compliance, with broader senior-level experience strongly valued.
• Proven background in performing cyber risk assessments, writing security policies, and managing awareness or training programs.
• Working knowledge of established regulatory and compliance frameworks relevant to security, privacy, and risk management.
• Experience supporting internal or external audit processes and coordinating remediation activities across multiple teams.
• Familiarity with vendor risk management practices, including security reviews for third parties and contract-related control considerations.
• Understanding of enterprise security concepts such as application security, network security, SIEM, and broader governance practices.
• Certifications in security, audit, or risk management are preferred.

Robert Half logo

About Robert Half

Sourced by ZipRecruiter

Founded in 1948, Robert Half pioneered the idea of professional talent solutions to connect opportunities at great companies with highly skilled job seekers. As business needs changed, we evolved to offer specialized talent solutions for finance and accounting, technology, administrative and customer support, creative and marketing, and legal fields. In 2002, we introduced our subsidiary, Protiviti, a global independent risk consulting and internal audit service, to support companies as they faced more strategic business challenges.

Industry

Recruiting and staffing services

Company size

10,000+ Employees

Headquarters location

San Ramon, CA, US

Year founded

1948