1

Cybersecurity Risk Management Jobs in Orem, UT (NOW HIRING)

Senior Auditor

Sandy, UT Β· On-site

$77K - $94K/yr

Partner with business, IT, Risk Management, and Compliance teams to enhance alignment across the ... One or more years of experience leading IT and cybersecurity end-to-end process and control ...

... Management / SSPM platforms, CASB, OAuth/app-to-app risk tooling). * Identify, assess, and track ... Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field ...

Cyber Def. & SaaS Security Mgr

Draper, UT Β· On-site

$120K - $157K/yr

... Management / SSPM platforms, CASB, OAuth/app-to-app risk tooling). * Identify, assess, and track ... Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field ...

Sr. IT Security Engineer

Draper, UT Β· On-site

$107K - $146K/yr

... Security Risk Management: * Support the vulnerability management program through assessment ... Bachelor's Degree in Cybersecurity, Information Technology, Computer Science, or related field * 5 ...

IT Project Manager

Draper, UT Β· On-site +1

$100K - $130K/yr

... cloud, cybersecurity, and data platforms, defining program vision, delivery approach, and ... Drive proactive risk management by identifying organizational, technical, and vendor-related risks ...

... risk management, and post-market surveillance expectations. ESSENTIAL FUNCTIONS PERFORMED ... Experience with cyber-security standards (e.g., UL 2900). * Certifications such as ASQ CSQE, ISTQB ...

Showing results 41-60

Cybersecurity Risk Management information

See Orem, UT salary details

$49.6K

$115.6K

$161.7K

How much do cybersecurity risk management jobs pay per year?

As of Sep 14, 2026, the average yearly pay for cybersecurity risk management in Orem, UT is $115,593.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,500.00 and $130,400.00 per year, depending on experience, location, and employer.

What is cybersecurity risk management?

Cybersecurity risk management is the process of identifying, assessing, and prioritizing risks to an organization's digital assets and information systems. It involves implementing strategies and controls to minimize the impact of potential cyber threats, such as data breaches, malware, and unauthorized access. The goal is to balance security measures with business needs, ensuring sensitive information remains protected while maintaining operational efficiency. Effective risk management is ongoing, adapting to new threats and changes within the organization.

What are the key skills and qualifications needed to thrive in cybersecurity risk management, and why are they important?

To thrive in Cybersecurity Risk Management, you need a solid understanding of information security principles, risk assessment methodologies, compliance standards, and typically a degree in cybersecurity or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security tools, and professional certifications like CISSP or CRISC is highly valued. Strong analytical thinking, effective communication, and problem-solving skills help professionals translate technical risks for non-technical stakeholders and foster collaboration. These competencies are crucial to proactively identifying threats, managing vulnerabilities, and ensuring organizational resilience in a rapidly evolving digital landscape.

What are some common challenges faced by professionals in cybersecurity risk management, and how can they be addressed?

Professionals in Cybersecurity Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, balancing security needs with business objectives, and ensuring compliance with industry regulations. Addressing these challenges requires continuous learning, effective communication with stakeholders, and close collaboration with IT, legal, and business teams. Building strong partnerships across departments and investing in ongoing training can help mitigate these obstacles and support proactive risk management.

What is the difference between Cybersecurity Risk Management vs Cybersecurity Analyst?

AspectCybersecurity Risk ManagementCybersecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CEH, CISSP
Work EnvironmentRisk assessment, policy development, strategic planningMonitoring security systems, incident response, vulnerability analysis
Employer & Industry UsageFinancial, healthcare, government, large enterprisesIT departments, cybersecurity firms, corporate security teams

Cybersecurity Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy creation and strategic planning. In contrast, a Cybersecurity Analyst primarily monitors security systems, responds to incidents, and analyzes vulnerabilities. Both roles require similar certifications but serve different functions within cybersecurity teams.

What are popular job titles related to Cybersecurity Risk Management jobs in Orem, UT?

For Cybersecurity Risk Management jobs in Orem, UT, the most frequently searched job titles are:

What job categories do people searching Cybersecurity Risk Management jobs in Orem, UT look for?

The top searched job categories for Cybersecurity Risk Management jobs in Orem, UT are:

What cities near Orem, UT are hiring for Cybersecurity Risk Management jobs?

Cities near Orem, UT with the most Cybersecurity Risk Management job openings:

Infographic showing various Cybersecurity Risk Management job openings in Orem, UT as of September 2026, with employment types broken down into 94% Full Time, 3% Part Time, and 3% Contract. Highlights an 82% In-person, 3% Hybrid, and 15% Remote job distribution, with an average salary of $115,593 per year, or $55.6 per hour.

Vice President, Deputy CISO

Pleasant Grove, UT

Full-time

Medical, Dental, Life, Retirement

Posted 26 days ago


Job description

At Arctic Wolf, you won't just watch the cybersecurity industry evolve - you'll help lead the change. Our global Pack is made up of people who thrive on solving hard problems, moving fast, and building technology that protects organizations around the world. We're proud to be recognized by Forbes, CNBC, Fortune, CRN, Gartner Peer Insights and IDC MarketScape - but what matters most is the work behind it: delivering real outcomes for customers through award winning innovation like our Aurora Platform.

If you're looking for meaningful work, smart teammates and the chance to make a real impact in a high-growth company that's redefining security operations, Arctic Wolf is the right place for you!

Our mission is simple: End Cyber Risk. We're looking for a Vice President, Deputy CISO to be a part of making that happen.

Position Overview:

You are an information security leader with deep experience across all domains of information security, with particular strength in governance, risk management, and compliance (GRC), and a proven record of directly managing technical security teams. You know how to build trust and influence outcomes across the organization, using your domain knowledge, prior experience, and executive presence to engage both technical and business leaders.

Reporting to the Chief Information Security Officer (CISO), the Vice President, Deputy Chief Information Security Officer (Deputy CISO) is the direct people manager for Security Engineering, Security Operations (SecOps), and Governance, Risk, and Compliance (GRC), with full accountability for the strategy, staffing, performance, and budget of each function. The Deputy CISO ensures the enterprise's personnel, data, and assets are protected against current and emerging threats, and provides leadership continuity for the security program in the CISO's absence.

Location: must work in the Pleasant Grove, Utah office, not taking remote applicants at this time

Responsibilities:

  • Directly manages the Security Engineering, Security Operations (SecOps), and GRC functions, including hiring, performance management, and development of each team's leadership.
  • Sets strategy and priorities across security engineering, security operations, and GRC, ensuring the three functions operate as one coordinated program.
  • Owns the organization's security governance framework and compliance posture against industry frameworks and regulations (e.g., SOC 2, ISO 27001/27701, NIST CSF/800-53, PCI DSS, GDPR, CCPA), including third-party risk management and audit oversight.
  • Oversees the security engineering roadmap and the operation of security monitoring, threat detection, and incident response, including post-incident governance and regulatory notification.
  • Owns the enterprise security risk management program, including risk assessment, treatment, reporting, and the organization's risk register.
  • Manages the combined budget for security engineering, SecOps, and GRC, and contributes to enterprise security budget planning alongside the CISO.
  • Provides leadership continuity in the CISO's absence, including strategy execution, decision-making, and representation at the executive and board levels.
  • Delivers security metrics, KPIs, and risk reporting to executive leadership, the board, and audit or risk committees.
  • Partners with Legal and Privacy to align security requirements with contractual, regulatory, and privacy obligations, including customer due diligence and RFP responses.
  • Acts as a representative for Arctic Wolf's security and compliance posture with customers, auditors, regulators, and senior executives.

Skills and Requirements:

  • 8+ years of leadership experience directly managing security engineering, security operations, or GRC teams.
  • 10+ years of progressive information security experience spanning both technical security engineering functions and GRC.
  • Demonstrated experience building and leading enterprise risk management programs, including risk assessment, risk registers, and reporting to executive leadership.
  • Demonstrated experience managing SOC 2, ISO 27001, or similar certification and audit processes from initiation through completion.
  • Experience with international industry security standards (NIST, ISO, SOC 2) and data privacy regulations (GDPR, CCPA, and other regional standards).
  • Experience managing third-party and vendor risk management programs.
  • Ability to establish executive-level relationships across business and technology leadership and manage competing priorities under pressure.
  • A Bachelor's Degree in Computer Science, Information Systems, Engineering, or a related technical field.
  • Deep knowledge of information security governance, risk management, and compliance (GRC) frameworks, including NIST CSF, NIST 800-53, ISO 27001/27701, SOC 2, and CIS Controls.
  • Demonstrated ability to lead security engineering and security operations teams, including secure architecture, SOC operations, and incident response.
  • Experience designing and operating enterprise risk assessment, risk register, and audit or certification processes (e.g., SOC 2 Type II, ISO 27001).
  • Strong understanding of data privacy regulations, including GDPR and CCPA/CPRA, and third-party risk management practices.
  • Familiarity with Secure SDLC, DevSecOps, and security automation practices.
  • Strong executive communication, board reporting, and stakeholder management skills.
  • Ability to translate technical and regulatory risk into business risk language for non-technical audiences.

Preferred Skills and Requirements:

  • Experience serving as a CISO, Deputy CISO, or acting CISO.
  • Relevant industry certification(s) such as CISSP, CISM, CRISC, or CISA.
  • Master's degree in a related field, or MBA.
  • Experience in a regulated industry, such as financial services, healthcare, or SaaS/cybersecurity.
  • Familiarity with GRC platforms, tools, and automation (e.g., Archer, OneTrust, Vanta, or Drata).

On-Camera Policy:

To support a fair, transparent, and engaging interview experience, candidates interviewing remotely are expected to be on camera during all video interviews. Being on camera fosters authentic connection, improves communication, and allows for full engagement from both candidates and interviewers. We understand that technical, bandwidth, or location-related challenges may occasionally prevent video use. If this applies, candidates are required to notify us in advance so we can explore appropriate accommodations.

About Arctic Wolf:

At Arctic Wolf, we foster a collaborative and inclusive work environment that thrives on diversity of thought, background, and culture. This is reflected in our multiple awards, including Top Workplace USA (2021-2025), Best Places to Work - USA (2021-2025), Great Place to Work - Canada (2021-2024), Great Place to Work - UK (2024-2026), and Kununu Top Company - Germany (2024-2026). Our commitment to bold growth and shaping the future of security operations is matched by our dedication to customer satisfaction, with over 10,000 customers worldwide and more than 2,000 channel partners globally. As we continue to expand globally and enhance our technology, Arctic Wolf remains the most trusted name in the industry.

Our Values:

Arctic Wolf recognizes that success comes from delighting our customers, so we work together to ensure that happens every day. We believe in diversity and inclusion, and truly value the unique qualities and unique perspectives all employees bring to the organization. And we appreciate that-by protecting people's and organizations' sensitive data and seeking to end cyber risk- we get to work in an industry that is fundamental to the greater good.

We celebrate unique perspectives by creating a platform for all voices to be heard through our Pack Unity program. We encourage all employees to join or create a new alliance. See more about our Pack Unity here.

We also believe and practice corporate responsibility, and have recently joined the Pledge 1% Movement, ensuring that we continue to give back to our community. We know that through our mission to End Cyber Risk we will continue to engage and give back to our communities.

All wolves receive compelling compensation and benefits packages, including:

  • Equity for all employees
  • Flexible time off and paid volunteer days
  • RRSP and 401k match
  • Training and career development programs
  • Comprehensive private benefits plan including medical, mental health, dental, disability, life and AD&D, and value-added services
  • Robust Employee Assistance Program (EAP) with mental health services
  • Fertility support and paid parental leave

Arctic Wolf is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, provincial, or local law. Arctic Wolf is committed to fostering a welcoming, accessible, respectful, and inclusive environment ensuring equal access and participation for people with disabilities. As such, we strive to make our entire experience as accessible as possible and provideaccommodationsas required for candidates and employees with disabilities and/or other specific needs where possible. Please let us know if you require any accommodation by emailing recruiting@arcticwolf.com. View our Hiring Page to learn more about our application process.

Security Requirements

  • Conducts duties and responsibilities in accordance with AWN's Information Security policies, standards, processes, and controls to protect the confidentiality, integrity and availability of AWN business information (in accordance with our employee handbook and corporate policies).
  • Background checks are required for this position.
  • This position may require access to information protected under U.S. export control laws and regulations, including the Export Administration Regulations ("EAR"). Please note that, if applicable, an offer for employment will be conditioned on authorization to receive software or technology controlled under these U.S. export control laws and regulations.