1

Phishing Simulation Jobs in Utah (NOW HIRING)

Conduct security awareness initiatives, including phishing simulations and end-user training campaigns * Evaluate and onboard security tools and vendors; assist with security assessments, penetration ...

Phishing Simulation information

What is a phishing simulation?

A phishing simulation is a cybersecurity exercise where organizations send fake phishing emails to employees to test their ability to recognize and report malicious messages. The goal is to raise awareness about phishing tactics and improve employees' responses to real threats. These simulations help identify vulnerabilities within the organization and guide future training efforts to reduce the risk of successful phishing attacks.

What are some common challenges faced by professionals running phishing simulation programs, and how can they be addressed?

Professionals managing phishing simulation programs often encounter challenges such as employee resistance, maintaining engagement, and ensuring simulations stay relevant to evolving threats. To address these, it's important to communicate the purpose of simulations clearly, provide timely feedback and education, and regularly update campaigns to reflect current phishing tactics. Collaborating closely with IT, HR, and leadership teams helps foster a culture of security awareness and ensures the program's effectiveness.

What are the key skills and qualifications needed to thrive as a phishing simulation specialist, and why are they important?

To thrive as a Phishing Simulation Specialist, you need a solid understanding of cybersecurity principles, social engineering tactics, and experience with security awareness training programs, usually backed by a degree in information security or related certifications like CEH or CISSP. Familiarity with phishing simulation platforms (e.g., KnowBe4, Cofense), email security systems, and data analytics tools is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for designing realistic scenarios and educating users. These skills and qualifications are essential for helping organizations identify vulnerabilities, reduce human risk, and strengthen their overall security posture.

What is the difference between Phishing Simulation vs Security Analyst?

AspectPhishing SimulationSecurity Analyst
CredentialsCertifications like CEH, CompTIA Security+Certifications like CISSP, CISA, CEH
Work EnvironmentTypically in cybersecurity teams, focusing on training and awarenessIn IT/security departments, analyzing threats and implementing security measures
Employer & IndustryUsed by organizations to test employee awareness in cybersecurityEmployed by organizations to protect IT infrastructure and respond to security incidents

While both roles are part of cybersecurity, Phishing Simulation focuses on testing and training employees against phishing attacks, whereas Security Analysts monitor, analyze, and respond to security threats within an organization.

What are popular job titles related to Phishing Simulation jobs in Utah?

For Phishing Simulation jobs in Utah, the most frequently searched job titles are:

What cities in Utah are hiring for Phishing Simulation jobs?

Cities in Utah with the most Phishing Simulation job openings:

Full-time

Re-posted 26 days ago


Job description

Job Purpose:

Navitas Semiconductor (Nasdaq: NVTS) is a high-growth, publicly traded technology company seeking an IT Cybersecurity Administrator to protect the company’s on-premises and cloud environments against evolving threats. The ideal candidate will be self-motivated, detail-oriented, and security-minded, with hands-on experience hardening systems, monitoring for and responding to threats, and supporting compliance across a hybrid, multi-region infrastructure, and understands the dynamics of a fast-growing, publicly traded company with global operations.

Key Responsibilities and Duties:

  • Administer and maintain security controls across on-premises and cloud environments (GCP / AWS, Microsoft 365 / Azure), including firewalls, endpoint protection, and identity systems
  • Collaborate with the global cybersecurity team to align on security standards, share threat intelligence, and coordinate incident response across regions
  • Monitor security alerts and events through SIEM / MDR and managed detection tooling; triage, investigate, and escalate incidents as needed
  • Lead and support incident response activities, including containment, eradication, recovery, and post-incident documentation
  • Manage vulnerability scanning, patch management, and remediation tracking across servers, endpoints, and cloud workloads
  • Configure and maintain identity and access management, including MFA, conditional access, privileged access, and periodic access reviews in Active Directory and Microsoft Entra ID
  • Administer the Fortinet network security stack (FortiGate, FortiSwitch), including firewall policies, VPN, and network segmentation
  • Implement and maintain endpoint security and compliance through Intune / MDM and EDR platforms
  • Administer email security controls (e.g., Proofpoint), including anti-phishing, anti-malware, anti-spam, and email authentication (SPF, DKIM, DMARC)
  • Administer data loss prevention (DLP) controls (e.g., Mimecast), protecting sensitive data across email, endpoints, and cloud services
  • Support cloud security posture management (CSPM) and workload protection across GCP / AWS and Microsoft 365
  • Develop, document, and enforce security policies, standards, and operating procedures
  • Support SOX, data privacy, and regulatory compliance efforts, including evidence collection and control testing across global locations (US, China, Taiwan, and India)
  • Conduct security awareness initiatives, including phishing simulations and end-user training campaigns
  • Evaluate and onboard security tools and vendors; assist with security assessments, penetration tests, and audits
  • Maintain accurate documentation of the security environment, configurations, and risk register
  • Any and all other duties, as assigned

Knowledge, Skills, Abilities:

  • Solid understanding of cybersecurity principles, frameworks (NIST CSF, CIS Controls, ISO 27001), and defense-in-depth strategies
  • Hands-on experience securing both on-premises and cloud environments (GCP / AWS, Microsoft 365 / Azure)
  • Working knowledge of firewalls and network security (Fortinet preferred), VPN, segmentation, and zero-trust concepts
  • Experience with SIEM / MDR, EDR, and vulnerability management tools
  • Strong proficiency with Active Directory, Microsoft Entra ID (Azure AD), conditional access, and MFA
  • Familiarity with endpoint management and compliance tooling (Intune, SCCM, or MDM)
  • Working knowledge of securing and administering Windows, Linux, and macOS endpoints alongside Microsoft 365 / MS Office
  • Understanding of identity and access management, encryption, and data protection
  • Experience supporting compliance and audit activities (SOX, SOC 2, or similar)
  • Experience using AI-powered tools (e.g., Microsoft Copilot, Claude, AI assistants) to investigate threats, draft documentation, and improve security operations
  • Strong analytical, problem-solving, and risk-assessment skills
  • Excellent written and verbal communication skills, including the ability to translate technical risk to non-technical stakeholders
  • Maintains accountability for actions and handles sensitive information with discretion

Requirements:

Basic

  • 3+ years of experience in cybersecurity, information security, or IT administration with a security focus
  • Demonstrated experience securing Windows, Microsoft 365, and Active Directory / Entra ID environments
  • Hands-on experience with firewalls, endpoint protection, and identity / access management

Preferred

  • BS in computer science, cybersecurity, information systems, or a similar discipline
  • 5+ years of experience in a cybersecurity or security administration role
  • Industry certifications such as Security+, CySA+, AWS Certified Security, or Google Professional Cloud Security Engineer
  • Hands-on experience with Fortinet products, GCP / AWS security, and cloud security posture management (CSPM) tools
  • Scripting experience with PowerShell, Python, or similar for security automation
  • Experience supporting publicly traded companies and SOX / regulatory compliance