End Cyber Risk. We're looking for a Vice President, Deputy CISO to be a part of making that happen ... Owns the enterprise security risk management program, including risk assessment, treatment ...
End Cyber Risk. We're looking for a Vice President, Deputy CISO to be a part of making that happen ... Owns the enterprise security risk management program, including risk assessment, treatment ...
End Cyber Risk. We're looking for a Vice President, Deputy CISO to be a part of making that happen ... Owns the enterprise security risk management program, including risk assessment, treatment ...
End Cyber Risk. We're looking for a Vice President, Deputy CISO to be a part of making that happen ... Owns the enterprise security risk management program, including risk assessment, treatment ...
Future Security Careers
Springville, UT · On-site
Prepare comprehensive risk and threat assessments. Partner with law enforcement, cybersecurity ... Monitor and interpret evolving security, geopolitical, and cyber trends. * Identify vulnerabilities ...
Future Security Careers
Springville, UT · On-site
Prepare comprehensive risk and threat assessments. Partner with law enforcement, cybersecurity ... Monitor and interpret evolving security, geopolitical, and cyber trends. * Identify vulnerabilities ...
... risk assessments, operational scenario analysis, tabletop exercises, and crisis management ... Monitor emerging threats and trends, including cyber, technology, supply chain, regulatory ...
... risk assessments, operational scenario analysis, tabletop exercises, and crisis management ... Monitor emerging threats and trends, including cyber, technology, supply chain, regulatory ...
... risk assessments, operational scenario analysis, tabletop exercises, and crisis management ... Monitor emerging threats and trends, including cyber, technology, supply chain, regulatory ...
... risk assessments, operational scenario analysis, tabletop exercises, and crisis management ... Monitor emerging threats and trends, including cyber, technology, supply chain, regulatory ...
Sr. IT Security Engineer
$107K - $146K/yr
... assessment, prioritization, tracking, and remediation validation * Collaborate with system owners to remediate vulnerabilities and reduce cyber risk * Analyze security findings and recommend ...
Sr. IT Security Engineer
$107K - $146K/yr
... assessment, prioritization, tracking, and remediation validation * Collaborate with system owners to remediate vulnerabilities and reduce cyber risk * Analyze security findings and recommend ...
Sr. IT Security Engineer
$107K - $146K/yr
... assessment, prioritization, tracking, and remediation validation * Collaborate with system owners to remediate vulnerabilities and reduce cyber risk * Analyze security findings and recommend ...
Sr. IT Security Engineer
$107K - $146K/yr
... assessment, prioritization, tracking, and remediation validation * Collaborate with system owners to remediate vulnerabilities and reduce cyber risk * Analyze security findings and recommend ...
Sr. IT Security Engineer
Draper, UT · On-site
$107K - $146K/yr
... assessment, prioritization, tracking, and remediation validation * Collaborate with system owners to remediate vulnerabilities and reduce cyber risk * Analyze security findings and recommend ...
Sr. IT Security Engineer
Draper, UT · On-site
$107K - $146K/yr
... assessment, prioritization, tracking, and remediation validation * Collaborate with system owners to remediate vulnerabilities and reduce cyber risk * Analyze security findings and recommend ...
Sr. IT Security Engineer
Draper, UT · On-site
$107K - $146K/yr
... assessment, prioritization, tracking, and remediation validation * Collaborate with system owners to remediate vulnerabilities and reduce cyber risk * Analyze security findings and recommend ...
Sr. IT Security Engineer
Draper, UT · On-site
$107K - $146K/yr
... assessment, prioritization, tracking, and remediation validation * Collaborate with system owners to remediate vulnerabilities and reduce cyber risk * Analyze security findings and recommend ...
Director, Tech Leads
Pleasant Grove, UT · On-site
End Cyber Risk. We're looking for a Director, Tech Leads to be part of making that happen. About ... Establish standards for how Technical Leads assess, mentor, and develop Security Engineers within ...
Director, Tech Leads
Pleasant Grove, UT · On-site
End Cyber Risk. We're looking for a Director, Tech Leads to be part of making that happen. About ... Establish standards for how Technical Leads assess, mentor, and develop Security Engineers within ...
Specialist, Contracts
Midvale, UT · On-site
... cyber domains in the interest of national security. Job Title: Specialist, Contracts Job Code ... Responsible for RFP and solicitation review and risk assessment, proposal strategy and preparation ...
Specialist, Contracts
Midvale, UT · On-site
... cyber domains in the interest of national security. Job Title: Specialist, Contracts Job Code ... Responsible for RFP and solicitation review and risk assessment, proposal strategy and preparation ...
Specialist, Contracts
Riverton, UT · On-site
... cyber domains in the interest of national security. Job Title: Specialist, Contracts Job Code ... Responsible for RFP and solicitation review and risk assessment, proposal strategy and preparation ...
Specialist, Contracts
Riverton, UT · On-site
... cyber domains in the interest of national security. Job Title: Specialist, Contracts Job Code ... Responsible for RFP and solicitation review and risk assessment, proposal strategy and preparation ...
Info Security Blue Team Manager
Provo, UT · On-site
... Operationalize cyber threat intelligence: feed threat data into risk determinations, detection ... assessment, containment, mitigation, and eradication; make real-time decisions on response actions ...
Info Security Blue Team Manager
Provo, UT · On-site
... Operationalize cyber threat intelligence: feed threat data into risk determinations, detection ... assessment, containment, mitigation, and eradication; make real-time decisions on response actions ...
Info Security Blue Team Manager
Provo, UT · On-site
... Operationalize cyber threat intelligence: feed threat data into risk determinations, detection ... assessment, containment, mitigation, and eradication; make real-time decisions on response actions ...
Info Security Blue Team Manager
Provo, UT · On-site
... Operationalize cyber threat intelligence: feed threat data into risk determinations, detection ... assessment, containment, mitigation, and eradication; make real-time decisions on response actions ...
Conduct internal audits to evaluate and enhance IT controls, compliance with standards, and risk ... Cyber Essentials Assessor (or equivalent) GIAC certifications (e.g., GIAC Certified Incident ...
Conduct internal audits to evaluate and enhance IT controls, compliance with standards, and risk ... Cyber Essentials Assessor (or equivalent) GIAC certifications (e.g., GIAC Certified Incident ...
Senior Specialist, Program Scheduler
Herriman, UT · On-site
$82K - $153K/yr
... and cyber domains in the interest of national security. Job Title: Senior Specialist, Program ... Perform Monte Carlo Schedule Risk Assessment (SRA) on key programs as part of standard work.
Senior Specialist, Program Scheduler
Herriman, UT · On-site
$82K - $153K/yr
... and cyber domains in the interest of national security. Job Title: Senior Specialist, Program ... Perform Monte Carlo Schedule Risk Assessment (SRA) on key programs as part of standard work.
Senior Specialist, Program Scheduler
Riverton, UT · On-site
$82K - $153K/yr
... and cyber domains in the interest of national security. Job Title: Senior Specialist, Program ... Perform Monte Carlo Schedule Risk Assessment (SRA) on key programs as part of standard work.
Senior Specialist, Program Scheduler
Riverton, UT · On-site
$82K - $153K/yr
... and cyber domains in the interest of national security. Job Title: Senior Specialist, Program ... Perform Monte Carlo Schedule Risk Assessment (SRA) on key programs as part of standard work.
Senior Specialist, Program Scheduler
Lehi, UT · On-site
$82K - $153K/yr
... and cyber domains in the interest of national security. Job Title: Senior Specialist, Program ... Perform Monte Carlo Schedule Risk Assessment (SRA) on key programs as part of standard work.
Senior Specialist, Program Scheduler
Lehi, UT · On-site
$82K - $153K/yr
... and cyber domains in the interest of national security. Job Title: Senior Specialist, Program ... Perform Monte Carlo Schedule Risk Assessment (SRA) on key programs as part of standard work.
Future Security Careers with Security Clearance
Springville, UT · On-site
$35K - $43K/yr
Prepare comprehensive risk and threat assessments. Partner with law enforcement, cybersecurity ... Monitor and interpret evolving security, geopolitical, and cyber trends. * Identify vulnerabilities ...
Future Security Careers with Security Clearance
Springville, UT · On-site
$35K - $43K/yr
Prepare comprehensive risk and threat assessments. Partner with law enforcement, cybersecurity ... Monitor and interpret evolving security, geopolitical, and cyber trends. * Identify vulnerabilities ...
Cyber Defense Analyst
Lehi, UT · On-site
$122K - $216K/yr
Performs security assessments of company products that may include vulnerability and risk assessments, threat analysis, and security code reviews to identify potential design and implementation ...
Cyber Defense Analyst
Lehi, UT · On-site
$122K - $216K/yr
Performs security assessments of company products that may include vulnerability and risk assessments, threat analysis, and security code reviews to identify potential design and implementation ...
Cyber Risk Assessment information
What is a cyber risk assessment?
What are the key skills and qualifications needed to thrive as a cyber risk assessor?
What are some common challenges faced by professionals in cyber risk assessment, and how can they be addressed?
What is the difference between Cyber Risk Assessment vs Cyber Security Analyst?
| Aspect | Cyber Risk Assessment | Cyber Security Analyst |
|---|---|---|
| Primary Focus | Identifying and evaluating cybersecurity risks and vulnerabilities | Monitoring, detecting, and responding to security threats |
| Certifications | CompTIA Security+, CISSP, CISA | CompTIA Security+, CEH, CISSP |
| Work Environment | Risk management teams, consulting firms, security departments | Security operations centers, IT departments, incident response teams |
| Responsibilities | Risk analysis, vulnerability assessments, compliance | Threat detection, incident response, security monitoring |
While both roles involve cybersecurity, Cyber Risk Assessments focus on evaluating potential risks and vulnerabilities to inform security strategies, whereas Cyber Security Analysts actively monitor and respond to ongoing security threats. Understanding these differences helps organizations assign the right roles for comprehensive cybersecurity management.
What are popular job titles related to Cyber Risk Assessment jobs in Orem, UT?
For Cyber Risk Assessment jobs in Orem, UT, the most frequently searched job titles are:
What job categories do people searching Cyber Risk Assessment jobs in Orem, UT look for?
The top searched job categories for Cyber Risk Assessment jobs in Orem, UT are:
What cities near Orem, UT are hiring for Cyber Risk Assessment jobs?
Cities near Orem, UT with the most Cyber Risk Assessment job openings:

Full-time
Medical, Dental, Life, Retirement
Posted 14 days ago
Job description
At Arctic Wolf, you won't just watch the cybersecurity industry evolve - you'll help lead the change. Our global Pack is made up of people who thrive on solving hard problems, moving fast, and building technology that protects organizations around the world. We're proud to be recognized by Forbes, CNBC, Fortune, CRN, Gartner Peer Insights and IDC MarketScape - but what matters most is the work behind it: delivering real outcomes for customers through award winning innovation like our Aurora Platform.
If you're looking for meaningful work, smart teammates and the chance to make a real impact in a high-growth company that's redefining security operations, Arctic Wolf is the right place for you!
Our mission is simple: End Cyber Risk. We're looking for a Vice President, Deputy CISO to be a part of making that happen.
Position Overview:
You are an information security leader with deep experience across all domains of information security, with particular strength in governance, risk management, and compliance (GRC), and a proven record of directly managing technical security teams. You know how to build trust and influence outcomes across the organization, using your domain knowledge, prior experience, and executive presence to engage both technical and business leaders.
Reporting to the Chief Information Security Officer (CISO), the Vice President, Deputy Chief Information Security Officer (Deputy CISO) is the direct people manager for Security Engineering, Security Operations (SecOps), and Governance, Risk, and Compliance (GRC), with full accountability for the strategy, staffing, performance, and budget of each function. The Deputy CISO ensures the enterprise's personnel, data, and assets are protected against current and emerging threats, and provides leadership continuity for the security program in the CISO's absence.
Location: must work in the Pleasant Grove, Utah office, not taking remote applicants at this time
Responsibilities:
- Directly manages the Security Engineering, Security Operations (SecOps), and GRC functions, including hiring, performance management, and development of each team's leadership.
- Sets strategy and priorities across security engineering, security operations, and GRC, ensuring the three functions operate as one coordinated program.
- Owns the organization's security governance framework and compliance posture against industry frameworks and regulations (e.g., SOC 2, ISO 27001/27701, NIST CSF/800-53, PCI DSS, GDPR, CCPA), including third-party risk management and audit oversight.
- Oversees the security engineering roadmap and the operation of security monitoring, threat detection, and incident response, including post-incident governance and regulatory notification.
- Owns the enterprise security risk management program, including risk assessment, treatment, reporting, and the organization's risk register.
- Manages the combined budget for security engineering, SecOps, and GRC, and contributes to enterprise security budget planning alongside the CISO.
- Provides leadership continuity in the CISO's absence, including strategy execution, decision-making, and representation at the executive and board levels.
- Delivers security metrics, KPIs, and risk reporting to executive leadership, the board, and audit or risk committees.
- Partners with Legal and Privacy to align security requirements with contractual, regulatory, and privacy obligations, including customer due diligence and RFP responses.
- Acts as a representative for Arctic Wolf's security and compliance posture with customers, auditors, regulators, and senior executives.
Skills and Requirements:
- 8+ years of leadership experience directly managing security engineering, security operations, or GRC teams.
- 10+ years of progressive information security experience spanning both technical security engineering functions and GRC.
- Demonstrated experience building and leading enterprise risk management programs, including risk assessment, risk registers, and reporting to executive leadership.
- Demonstrated experience managing SOC 2, ISO 27001, or similar certification and audit processes from initiation through completion.
- Experience with international industry security standards (NIST, ISO, SOC 2) and data privacy regulations (GDPR, CCPA, and other regional standards).
- Experience managing third-party and vendor risk management programs.
- Ability to establish executive-level relationships across business and technology leadership and manage competing priorities under pressure.
- A Bachelor's Degree in Computer Science, Information Systems, Engineering, or a related technical field.
- Deep knowledge of information security governance, risk management, and compliance (GRC) frameworks, including NIST CSF, NIST 800-53, ISO 27001/27701, SOC 2, and CIS Controls.
- Demonstrated ability to lead security engineering and security operations teams, including secure architecture, SOC operations, and incident response.
- Experience designing and operating enterprise risk assessment, risk register, and audit or certification processes (e.g., SOC 2 Type II, ISO 27001).
- Strong understanding of data privacy regulations, including GDPR and CCPA/CPRA, and third-party risk management practices.
- Familiarity with Secure SDLC, DevSecOps, and security automation practices.
- Strong executive communication, board reporting, and stakeholder management skills.
- Ability to translate technical and regulatory risk into business risk language for non-technical audiences.
Preferred Skills and Requirements:
- Experience serving as a CISO, Deputy CISO, or acting CISO.
- Relevant industry certification(s) such as CISSP, CISM, CRISC, or CISA.
- Master's degree in a related field, or MBA.
- Experience in a regulated industry, such as financial services, healthcare, or SaaS/cybersecurity.
- Familiarity with GRC platforms, tools, and automation (e.g., Archer, OneTrust, Vanta, or Drata).
On-Camera Policy:
To support a fair, transparent, and engaging interview experience, candidates interviewing remotely are expected to be on camera during all video interviews. Being on camera fosters authentic connection, improves communication, and allows for full engagement from both candidates and interviewers. We understand that technical, bandwidth, or location-related challenges may occasionally prevent video use. If this applies, candidates are required to notify us in advance so we can explore appropriate accommodations.
About Arctic Wolf:
At Arctic Wolf, we foster a collaborative and inclusive work environment that thrives on diversity of thought, background, and culture. This is reflected in our multiple awards, including Top Workplace USA (2021-2025), Best Places to Work - USA (2021-2025), Great Place to Work - Canada (2021-2024), Great Place to Work - UK (2024-2026), and Kununu Top Company - Germany (2024-2026). Our commitment to bold growth and shaping the future of security operations is matched by our dedication to customer satisfaction, with over 10,000 customers worldwide and more than 2,000 channel partners globally. As we continue to expand globally and enhance our technology, Arctic Wolf remains the most trusted name in the industry.
Our Values:
Arctic Wolf recognizes that success comes from delighting our customers, so we work together to ensure that happens every day. We believe in diversity and inclusion, and truly value the unique qualities and unique perspectives all employees bring to the organization. And we appreciate that-by protecting people's and organizations' sensitive data and seeking to end cyber risk- we get to work in an industry that is fundamental to the greater good.
We celebrate unique perspectives by creating a platform for all voices to be heard through our Pack Unity program. We encourage all employees to join or create a new alliance. See more about our Pack Unity here.
We also believe and practice corporate responsibility, and have recently joined the Pledge 1% Movement, ensuring that we continue to give back to our community. We know that through our mission to End Cyber Risk we will continue to engage and give back to our communities.
All wolves receive compelling compensation and benefits packages, including:
- Equity for all employees
- Flexible time off and paid volunteer days
- RRSP and 401k match
- Training and career development programs
- Comprehensive private benefits plan including medical, mental health, dental, disability, life and AD&D, and value-added services
- Robust Employee Assistance Program (EAP) with mental health services
- Fertility support and paid parental leave
Arctic Wolf is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, provincial, or local law. Arctic Wolf is committed to fostering a welcoming, accessible, respectful, and inclusive environment ensuring equal access and participation for people with disabilities. As such, we strive to make our entire experience as accessible as possible and provideaccommodationsas required for candidates and employees with disabilities and/or other specific needs where possible. Please let us know if you require any accommodation by emailing recruiting@arcticwolf.com. View our Hiring Page to learn more about our application process.
Security Requirements
- Conducts duties and responsibilities in accordance with AWN's Information Security policies, standards, processes, and controls to protect the confidentiality, integrity and availability of AWN business information (in accordance with our employee handbook and corporate policies).
- Background checks are required for this position.
- This position may require access to information protected under U.S. export control laws and regulations, including the Export Administration Regulations ("EAR"). Please note that, if applicable, an offer for employment will be conditioned on authorization to receive software or technology controlled under these U.S. export control laws and regulations.