1

Junior Penetration Testing Jobs in Utah (NOW HIRING)

Senior Application Security Engineer

American Fork, UT · On-site

$102K - $140K/yr

... penetration testing. * Vulnerability Management: Architect and manage the deployment of ... Mentor junior team members and foster a strong, transparent security culture across the company.

Senior Application Security Engineer

American Fork, UT · On-site

$102K - $140K/yr

... penetration testing. * Vulnerability Management: Architect and manage the deployment of ... Mentor junior team members and foster a strong, transparent security culture across the company.

Senior Electrical Engineer

Orangeville, UT · On-site

$98K - $128K/yr

... insulation testing, continuity checks, relay secondary injection, and equipment energization ... penetration requirements. * Mentor and develop junior electrical engineers; represent the ...

Senior Electrical Engineer

Orangeville, UT · On-site

$98K - $128K/yr

... insulation testing, continuity checks, relay secondary injection, and equipment energization ... penetration requirements. * Mentor and develop junior electrical engineers; represent the ...

... insulation testing, continuity checks, relay secondary injection, and equipment energization ... penetration requirements. * Mentor and develop junior electrical engineers; represent the ...

... insulation testing, continuity checks, relay secondary injection, and equipment energization ... penetration requirements. * Mentor and develop junior electrical engineers; represent the ...

Junior Penetration Testing information

See Utah salary details

$26.7K

$62.7K

$92.5K

How much do junior penetration testing jobs pay per year?

As of Sep 7, 2026, the average yearly pay for junior penetration testing in Utah is $62,671.00, according to ZipRecruiter salary data. Most workers in this role earn between $51,100.00 and $73,600.00 per year, depending on experience, location, and employer.

What is a junior penetration tester?

Junior Penetration Testers are entry-level cybersecurity professionals who assist in identifying and exploiting vulnerabilities in computer systems, networks, and applications. They work under the guidance of experienced penetration testers to conduct security assessments, perform vulnerability scans, and document findings. Their main goal is to help organizations strengthen their security by simulating real-world attacks and providing recommendations for remediation. Junior Penetration Testers often use a variety of tools and follow industry best practices to ensure thorough testing. This role is crucial for organizations looking to protect sensitive data and maintain robust security defenses.

What are the key skills and qualifications needed to thrive as a junior penetration tester?

To thrive as a Junior Penetration Tester, you need a solid understanding of networking, operating systems, cybersecurity fundamentals, and preferably a relevant degree or certification such as CompTIA Security+ or CEH. Familiarity with tools like Metasploit, Burp Suite, Nmap, and Kali Linux is typically required to identify and exploit vulnerabilities. Strong analytical thinking, attention to detail, and clear communication help you convey technical findings to both technical and non-technical stakeholders. These skills and qualifications are essential to effectively assess security risks and support organizations in strengthening their defenses against cyber threats.

What are some common challenges a junior penetration tester might face during client engagements, and how can they overcome them?

Junior Penetration Testers often encounter challenges such as limited access to systems, incomplete documentation, or unclear testing scopes during client engagements. Communication is key—regularly clarifying objectives with clients and senior team members helps ensure the testing process stays on track. Additionally, adapting quickly to diverse IT environments and staying current with the latest security tools and techniques are essential. Seeking mentorship from experienced colleagues and leveraging collaborative team structures can greatly enhance learning and confidence in overcoming these hurdles.

What is the difference between Junior Penetration Testing vs Security Analyst?

AspectJunior Penetration TestingSecurity Analyst
CertificationsOSCP, CEH (entry-level)CompTIA Security+, CISSP (entry-level)
Work EnvironmentHands-on testing, simulated attacksMonitoring, incident response, policy development
Employer UsageCybersecurity firms, IT departmentsOrganizations, government agencies, corporations

Junior Penetration Testers focus on identifying vulnerabilities through simulated attacks, requiring technical certifications like OSCP or CEH. Security Analysts monitor security systems, analyze threats, and develop security policies, often holding certifications like Security+ or CISSP. While both roles are vital in cybersecurity, Junior Penetration Testers are more hands-on with testing, whereas Security Analysts focus on ongoing security monitoring and response.

What are the most commonly searched types of Penetration Testing jobs in Utah?

The most popular types of Penetration Testing jobs in Utah are:

What cities in Utah are hiring for Junior Penetration Testing jobs?

Cities in Utah with the most Junior Penetration Testing job openings:

Infographic showing various Junior Penetration Testing job openings in Utah as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $62,671 per year, or $30.1 per hour.

Senior Application Security Engineer

LVT

American Fork, UT • On-site

$102K - $140K/yr

Full-time

Re-posted 9 days ago


Job description

ABOUT THIS ROLE

As a Senior Application Security Engineer at LVT, you will be a cornerstone of our commitment to building secure-by-design technology. You will partner deeply with our Engineering and Product teams to weave advanced security protocols into every layer of our Software Development Lifecycle (SDLC). This isn't just about finding bugs; it's about architecting a proactive security culture and scaling our defenses alongside our rapid growth. You will serve as a technical expert, mentor, and advocate, ensuring our AI-driven platform remains as resilient as it is innovative.

This role is based in-office out of our Headquarters in American Fork, Utah.

ROLE RESPONSIBILITIES
  • Strategic Integration: Partner with Product and Engineering to embed reproducible, high-standard security practices directly into the SDLC.

  • Defense Engineering: Develop and maintain sophisticated manual and automated security processes to identify, evaluate, and mitigate risks across our software ecosystem.

  • Offensive Security: Lead proactive security initiatives including threat modeling, deep-dive code reviews, and offensive security exercises/penetration testing.

  • Vulnerability Management: Architect and manage the deployment of vulnerability scanning tools, driving the remediation process to ensure rapid resolution of identified issues.

  • Policy Stewardship: Assist in the development and continuous improvement of secure development policies and procedural documentation.

  • Technical Translation: Communicate complex vulnerability details and risk assessments to both technical and non-technical stakeholders, ensuring organizational alignment.

  • Security Culture: Mentor junior team members and foster a strong, transparent security culture across the company.

  • Impact Measurement: Success in this role is measured by the reduction of critical vulnerabilities in production, the speed of remediation cycles, and the successful adoption of security tools by the broader engineering team.

OUR IDEAL CANDIDATE
  • Proven Experience: At least 3+ years of professional experience in an Information Security role with a dedicated focus on modern application environments.

  • Cloud Proficiency: 3+ years of hands-on security experience with AWS and other cloud service platforms.

  • Modern Stack Familiarity: Comfortable navigating common web languages and frameworks such as HTML, PHP, Node.js, React.js, Nest.js, and Next.js.

  • Pipeline Expertise: A solid understanding of CI/CD tools and artifacts including GitHub, Docker, JFrog, CircleCI, and ArgoCD.

  • Technical Depth: A comprehensive understanding of common application vulnerabilities (OWASP Top 10) and the orchestration of automated tools used to combat them (SAST, DAST, SCA).

  • IT Foundations: Strong grasp of foundational IT domains, including operating systems, networking protocols, and the OSI model.

  • Compliance Awareness: Familiarity with standard security and regulatory compliance frameworks such as CIS, NIST, ISO/IEC 27001, SOC2, or FedRAMP.

  • Exceptional Communicator: Ability to articulate risk with clarity and professional poise, maintaining high levels of personal integrity while working with cross-functional partners.

  • Preferred Credentials: A degree in IT/Security or industry certifications such as Security+, OSCP, GPEN, or ITCA are highly valued.