1

Offensive Security Jobs in Utah (NOW HIRING)

Offensive Security: Lead proactive security initiatives including threat modeling, deep-dive code reviews, and offensive security exercises/penetration testing. * Vulnerability Management: Architect ...

Senior Application Security Engineer

American Fork, UT · On-site

$102K - $140K/yr

Offensive Security: Lead proactive security initiatives including threat modeling, deep-dive code reviews, and offensive security exercises/penetration testing. * Vulnerability Management: Architect ...

Offensive Security: Lead proactive security initiatives including threat modeling, deep-dive code reviews, and offensive security exercises/penetration testing. * Vulnerability Management: Architect ...

Security Architect

Lehi, UT · On-site

$61 - $78.75/hr

... offensive security, or secure systems design • Comfort building systems, not just auditing them--you've shipped tooling, not just findings • Strong programming skills in Python, TypeScript/Node ...

Security Architect

Lehi, UT · On-site

$61 - $78.75/hr

Offensive tooling, AI-assisted fuzzing, and LLM-powered scanners have compressed time-to-exploit ... You'll own the end-to-end security architecture of a HIPAA-regulated AI platform, design automated ...

Offensive Security & Strategic Communication: You bring practical experience with threat emulation and deception technologies mapped to MITRE ATT&CK, coupled with the ability to partner with ...

Security Operations Engineer

Lehi, UT · On-site

$120K - $180K/yr

Offensive Security & Strategic Communication: You bring practical experience with threat emulation and deception technologies mapped to MITRE ATT&CK, coupled with the ability to partner with ...

Offensive security background (pen testing, red team) or deep IR/forensics experience. * Experience selling into a specific vertical with heavy compliance pressure - healthcare, finance, defense ...

Solution Architect - Security

Sandy, UT · On-site

$150K - $180K/yr

Offensive security background (pen testing, red team) or deep IR/forensics experience. * Experience selling into a specific vertical with heavy compliance pressure - healthcare, finance, defense ...

... offensive and defensive cyber operations, investigate and track adversary activity, and help ... Direct enlistment into IT, CTN, or IS pipelines from civilian life based on aptitude, security ...

next page

Showing results 1-20

Offensive Security information

See Utah salary details

$51.9K

$121K

$169.3K

How much do offensive security jobs pay per year?

As of Aug 22, 2026, the average yearly pay for offensive security in Utah is $121,045.00, according to ZipRecruiter salary data. Most workers in this role earn between $101,100.00 and $136,600.00 per year, depending on experience, location, and employer.

What is offensive security?

An Offensive Security job involves proactively identifying and exploiting security vulnerabilities in systems, networks, and applications to help organizations strengthen their defenses. Professionals in this field, such as ethical hackers and penetration testers, simulate real-world cyberattacks to find weaknesses before malicious actors can exploit them. They use various tools, techniques, and frameworks to assess security risks, provide recommendations, and improve overall cybersecurity posture. Offensive security experts often work for security firms, enterprises, or government agencies to ensure robust digital protection.

What does a typical day look like for someone working in offensive security?

A typical day in Offensive Security involves conducting penetration tests, vulnerability assessments, and red teaming exercises to identify and exploit potential weaknesses in systems and networks. You may spend time analyzing findings, preparing detailed reports, and collaborating with IT teams to discuss remediation strategies. The role often requires staying current with emerging threats and tools, as well as participating in team meetings to review attack simulations or incident scenarios. Regular communication with clients or internal stakeholders is also common to explain technical concepts in an accessible way. The dynamic nature of the work keeps each day interesting and fosters continuous learning and problem-solving.

What are the key skills and qualifications needed to thrive in offensive security, and why are they important?

To thrive as an Offensive Security professional, you need a deep understanding of networks, operating systems, penetration testing methodologies, and typically hold a degree in computer science or a related field. Familiarity with tools such as Metasploit, Burp Suite, Nmap, as well as certifications like OSCP or CEH, is often required. Strong analytical thinking, attention to detail, effective communication, and ethical judgment are essential soft skills. These abilities are crucial for identifying vulnerabilities, communicating risks, and helping organizations improve their security posture.

What job categories do people searching Offensive Security jobs in Utah look for?

The top searched job categories for Offensive Security jobs in Utah are:

What cities in Utah are hiring for Offensive Security jobs?

Cities in Utah with the most Offensive Security job openings:

Infographic showing various Offensive Security job openings in Utah as of August 2026, with employment types broken down into 79% Full Time, 19% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $121,045 per year, or $58.2 per hour.

Senior Application Security Engineer

LVT

American Fork, UT

$102K - $140K/yr

Full-time

Re-posted 24 days ago


Job description

ABOUT THIS ROLE

As a Senior Application Security Engineer at LVT, you will be a cornerstone of our commitment to building secure-by-design technology. You will partner deeply with our Engineering and Product teams to weave advanced security protocols into every layer of our Software Development Lifecycle (SDLC). This isn't just about finding bugs; it's about architecting a proactive security culture and scaling our defenses alongside our rapid growth. You will serve as a technical expert, mentor, and advocate, ensuring our AI-driven platform remains as resilient as it is innovative.

This role is based in-office out of our Headquarters in American Fork, Utah.

ROLE RESPONSIBILITIES
  • Strategic Integration: Partner with Product and Engineering to embed reproducible, high-standard security practices directly into the SDLC.

  • Defense Engineering: Develop and maintain sophisticated manual and automated security processes to identify, evaluate, and mitigate risks across our software ecosystem.

  • Offensive Security: Lead proactive security initiatives including threat modeling, deep-dive code reviews, and offensive security exercises/penetration testing.

  • Vulnerability Management: Architect and manage the deployment of vulnerability scanning tools, driving the remediation process to ensure rapid resolution of identified issues.

  • Policy Stewardship: Assist in the development and continuous improvement of secure development policies and procedural documentation.

  • Technical Translation: Communicate complex vulnerability details and risk assessments to both technical and non-technical stakeholders, ensuring organizational alignment.

  • Security Culture: Mentor junior team members and foster a strong, transparent security culture across the company.

  • Impact Measurement: Success in this role is measured by the reduction of critical vulnerabilities in production, the speed of remediation cycles, and the successful adoption of security tools by the broader engineering team.

OUR IDEAL CANDIDATE
  • Proven Experience: At least 3+ years of professional experience in an Information Security role with a dedicated focus on modern application environments.

  • Cloud Proficiency: 3+ years of hands-on security experience with AWS and other cloud service platforms.

  • Modern Stack Familiarity: Comfortable navigating common web languages and frameworks such as HTML, PHP, Node.js, React.js, Nest.js, and Next.js.

  • Pipeline Expertise: A solid understanding of CI/CD tools and artifacts including GitHub, Docker, JFrog, CircleCI, and ArgoCD.

  • Technical Depth: A comprehensive understanding of common application vulnerabilities (OWASP Top 10) and the orchestration of automated tools used to combat them (SAST, DAST, SCA).

  • IT Foundations: Strong grasp of foundational IT domains, including operating systems, networking protocols, and the OSI model.

  • Compliance Awareness: Familiarity with standard security and regulatory compliance frameworks such as CIS, NIST, ISO/IEC 27001, SOC2, or FedRAMP.

  • Exceptional Communicator: Ability to articulate risk with clarity and professional poise, maintaining high levels of personal integrity while working with cross-functional partners.

  • Preferred Credentials: A degree in IT/Security or industry certifications such as Security+, OSCP, GPEN, or ITCA are highly valued.