1

Cyber Risk Assessment Jobs in Orem, UT (NOW HIRING)

Prepare comprehensive risk and threat assessments. Partner with law enforcement, cybersecurity ... Monitor and interpret evolving security, geopolitical, and cyber trends. * Identify vulnerabilities ...

Sr. IT Security Engineer

Draper, UT · On-site

$107K - $146K/yr

... assessment, prioritization, tracking, and remediation validation * Collaborate with system owners to remediate vulnerabilities and reduce cyber risk * Analyze security findings and recommend ...

Sr. IT Security Engineer

Draper, UT · On-site

$107K - $146K/yr

... assessment, prioritization, tracking, and remediation validation * Collaborate with system owners to remediate vulnerabilities and reduce cyber risk * Analyze security findings and recommend ...

Sr. IT Security Engineer

Draper, UT · On-site

$107K - $146K/yr

... assessment, prioritization, tracking, and remediation validation * Collaborate with system owners to remediate vulnerabilities and reduce cyber risk * Analyze security findings and recommend ...

Sr. IT Security Engineer

Draper, UT · On-site

$107K - $146K/yr

... assessment, prioritization, tracking, and remediation validation * Collaborate with system owners to remediate vulnerabilities and reduce cyber risk * Analyze security findings and recommend ...

End Cyber Risk. We're looking for a Director, Tech Leads to be part of making that happen. About ... Establish standards for how Technical Leads assess, mentor, and develop Security Engineers within ...

Conduct internal audits to evaluate and enhance IT controls, compliance with standards, and risk ... Cyber Essentials Assessor (or equivalent) GIAC certifications (e.g., GIAC Certified Incident ...

Information Security Officer

Midvale, UT · On-site

$190K - $200K/yr

Lead risk assessments, vulnerability management, and security incident response efforts, including ... Stay abreast of evolving cyber threats, regulatory changes, and technological advancements to ...

next page

Showing results 1-20

Cyber Risk Assessment information

What is the difference between Cyber Risk Assessment vs Cyber Security Analyst?

AspectCyber Risk AssessmentCyber Security Analyst
Primary FocusIdentifying and evaluating cybersecurity risks and vulnerabilitiesMonitoring, detecting, and responding to security threats
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CEH, CISSP
Work EnvironmentRisk management teams, consulting firms, security departmentsSecurity operations centers, IT departments, incident response teams
ResponsibilitiesRisk analysis, vulnerability assessments, complianceThreat detection, incident response, security monitoring

While both roles involve cybersecurity, Cyber Risk Assessments focus on evaluating potential risks and vulnerabilities to inform security strategies, whereas Cyber Security Analysts actively monitor and respond to ongoing security threats. Understanding these differences helps organizations assign the right roles for comprehensive cybersecurity management.

What is a cyber risk assessment?

A cyber risk assessment is a process used to identify, evaluate, and prioritize potential threats and vulnerabilities in an organization's information systems. It helps organizations understand the potential impact of cyber threats and determine the likelihood of such events occurring. By conducting a cyber risk assessment, businesses can implement appropriate security controls and strategies to mitigate risks, comply with regulatory requirements, and protect sensitive data from cyberattacks. Regular assessments are essential to adapt to evolving threats and maintain a strong cybersecurity posture.

What are some common challenges faced by professionals in cyber risk assessment, and how can they be addressed?

Professionals in Cyber Risk Assessment often encounter challenges such as rapidly evolving threat landscapes, keeping up with regulatory changes, and ensuring clear communication of technical risks to non-technical stakeholders. To address these, staying current with industry trends through continuous learning, leveraging robust risk assessment frameworks, and developing strong communication skills are essential. Additionally, collaborating closely with IT, compliance, and business units helps ensure comprehensive and effective risk management.

What are the key skills and qualifications needed to thrive as a cyber risk assessor?

To thrive as a Cyber Risk Assessor, you need a strong understanding of cybersecurity principles, risk management frameworks, and relevant regulations, often backed by a degree in information security or related certifications like CISSP or CISA. Familiarity with security assessment tools, vulnerability scanners, and risk analysis platforms is typically required. Analytical thinking, attention to detail, and effective communication are vital soft skills for accurately identifying threats and conveying risks to stakeholders. These skills and qualities are crucial for protecting organizational assets and ensuring compliance in an evolving threat landscape.

What are popular job titles related to Cyber Risk Assessment jobs in Orem, UT?

For Cyber Risk Assessment jobs in Orem, UT, the most frequently searched job titles are:

What cities near Orem, UT are hiring for Cyber Risk Assessment jobs?

Cities near Orem, UT with the most Cyber Risk Assessment job openings:

Infographic showing various Cyber Risk Assessment job openings in Orem, UT as of June 2026, with employment types broken down into 1% As Needed, 88% Full Time, 9% Part Time, and 2% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution.

$89K - $117K/yr

Full-time

Re-posted 5 days ago


Mountain America Credit Union rating

8.0

Company rating: 8.0 out of 10

Based on 49 frontline employees who took The Breakroom Quiz

73rd of 150 rated financial services


Job description

Please reference the schedule and minimum qualifications listed below before applying.
If you need assistance with filling out our application form or during any phase of the application, interview, or employment process, please notify our Human Resources Team at 801-366-6947 option 1 or email macurecruiting@macu.com and every reasonable effort will be made to accommodate your needs in a timely manner.
Job Summary
To perform audits and reviews, and to review, test, and assess control environment to help safeguard credit union assets.
Job Description
LOCATION
Mountain America Center - Hybrid:
9800 S Monroe St
Sandy, UT 84070
SCHEDULE
*This is a Hybrid Schedule- this team is in office 3 days a week (Tuesday, Wednesday, and Thursday) with 2 days remote (Monday and Friday)
Key Responsibilities
  • Lead and perform audits of IT systems, applications, infrastructure, and cybersecurity processes.

  • Execute all phases of the audit lifecycle, including planning, process walkthrough, risk assessment, fieldwork testing, and reporting.

  • Evaluate and align third-party IT control frameworks as inputs to audit scope.

  • Identify risks and control gaps, across MACU IT processes and systems.

  • Contribute to IT audit entity risk assessments and development of the IT audit plan.

  • Conduct and lead interviews with key MACU IT personnel to gather required understanding of process and risks for advisory engagements

  • Provide insights into IT and cyber risk exposures, control design, and governance effectiveness.

  • Recommend practical, risk-based solutions to improve IT controls, processes, and compliance posture.

  • Prepare clear, concise audit documentation including work papers, findings, and audit reports.

  • Prepare and communicate audit engagement status and observations to management and stakeholders.

  • Track and validate remediation efforts to ensure timely resolution of audit findings.

  • Contribute to continuous improvement of audit methodologies, tools, and data analytics capabilities.

  • Stay current with emerging technologies, cybersecurity risks, and regulatory expectations.

  • Support adoption of audit automation and GRC tools (e.g., Archer or similar platforms, if applicable in your environment).

  • Partner with business, IT, Risk Management, and Compliance teams to enhance alignment across the Three Lines model.

  • Serve as a trusted advisor while maintaining auditor independence and objectivity.

  • Provide guidance and mentorship to Staff Auditors and interns.

  • Review audit workpapers and ensure quality and adherence to standards.

  • Assist managers in audit planning and stakeholder engagement.

  • Maintain and develop competencies aligned with internal audit standards and professional development expectations.

  • Uphold independence, objectivity, and ethical standards in all audit activities.

Minimum Qualifications
Education
  • Bachelor's degree in information systems, Computer Science, Accounting, Cybersecurity, Data Analytics or a related field.

Experience
  • Three years performing end-to-end IT and/or cybersecurity audits

  • One or more years of experience leading IT and cybersecurity end-to-end process and control walkthroughs.

Certification
  • Passed at least one of the following CISA, CPA or CIA exams.

Preferred Qualifications
Education
  • Master's degree in information systems, Computer Science, Accounting, Cybersecurity, Data Analytics or a related field.

Experience
  • Demonstrated understanding of how to apply IT control frameworks (e.g., NIST, COBIT, ISO 27001) in auditing.

  • Demonstrated ability to assess risks, analyze complex systems, and identify control weaknesses.

  • Strong written and verbal communication skills, with the ability to present to management with confidence.

  • Demonstrated application of analytical thinking and synthesis of disparate information.

  • Demonstrated ability to work autonomously and execute more than one audit engagement simultaneously.

Certification
Achieved at least one of the following CISA, CPA or CIA certifications.
Managerial Responsibility
None
Computer/Office Equipment Skills
  • Advanced level skill for Microsoft Office (Outlook, Word, PowerPoint, Excel), especially Excel.
  • Knowledge of computer assisted audit techniques preferred.
  • Experience with data analysis software, such as ACL, IDEA, and/or Picalo, preferred.

Language Skills
  • Demonstrated ability to clearly communicate verbally and in writing.
  • Demonstrated ability to read and follow instructions.

Other Skills and Abilities
  • Ability to perform ad hoc data analysis in conjunction with audits, as necessary.
  • Understanding of financial institution operations and transactions.
  • Ability to communicate effectively and courteously.
  • Ability to understand regulations.
  • Understanding of the credit union data system and ability to use a computer, and software applications.
  • Ability to recognize and analyze problems, improprieties, and opportunities for improvement.

PHYSICAL ABILITIES / WORKING CONDITIONS
Physical Demands
Ability to sit, talk and hear consistently
Ability to stand, walk, and use hands to handle or reach occasionally
Vision Requirements
Close vision (clear vision at 20 inches or less)
Distance vision (clear vision at 20 feet or more)
Weight Lifted or Force Exerted
Ability to lift up to 25 pounds occasionally may need to lift up to 50 pounds.
Environmental
There are no unusual environmental factors (such as a typical office)
Noise Environment
Moderate noise (business office with computers and printers, light traffic)
***This Job is not eligible to be performed in Colorado or Connecticut, either remotely or in-person.***
Mountain America Credit Union is an EEO/AA/ADA/Veterans employer.

What Mountain America Credit Union employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom