1

Security Risk Analyst Jobs in Utah (NOW HIRING)

Sr. IT Security Engineer

Draper, UT · On-site

$107K - $146K/yr

Analyze security findings and recommend appropriate compensating controls or risk reduction measures * Track remediation progress and support risk reporting activities Cloud & Infrastructure Security:

Sr. IT Security Engineer

Draper, UT · On-site

$107K - $146K/yr

Analyze security findings and recommend appropriate compensating controls or risk reduction measures * Track remediation progress and support risk reporting activities Cloud & Infrastructure Security:

Sr. IT Security Engineer

Draper, UT · On-site

$107K - $146K/yr

Analyze security findings and recommend appropriate compensating controls or risk reduction measures * Track remediation progress and support risk reporting activities Cloud & Infrastructure Security:

Sr. IT Security Engineer

Draper, UT · Hybrid

$100K - $130K/yr

Analyze security findings and recommend appropriate compensating controls or risk-reduction measures * Track remediation progress and support risk reporting activities Cloud & Infrastructure Security

Sr. IT Security Engineer

Draper, UT · On-site

$107K - $146K/yr

Analyze security findings and recommend appropriate compensating controls or risk reduction measures * Track remediation progress and support risk reporting activities Cloud & Infrastructure Security:

The ability to balance security principles with business realities as part of a risk-managed ... Closing detection gaps with ATT&CK aligned analytics and proactive threat hunts. * Driving ...

The ability to balance security principles with business realities as part of a risk-managed ... Closing detection gaps with ATT&CK aligned analytics and proactive threat hunts. * Driving ...

The ability to balance security principles with business realities as part of a risk-managed ... Closing detection gaps with ATT&CK aligned analytics and proactive threat hunts. * Driving ...

The ability to balance security principles with business realities as part of a risk-managed ... Closing detection gaps with ATT&CK aligned analytics and proactive threat hunts. * Driving ...

The ability to balance security principles with business realities as part of a risk-managed ... Closing detection gaps with ATT&CK aligned analytics and proactive threat hunts. * Driving ...

Pleasant Grove, Utah, USA (hybrid role) About The Role The Cyber Operations Analyst manages incoming security incidents and works within the Security Operations team and Enterprise Security & Risk ...

Showing results 21-40

Security Risk Analyst information

See Utah salary details

$9

$45

$63

How much do security risk analyst jobs pay per hour?

As of Aug 20, 2026, the average hourly pay for security risk analyst in Utah is $45.89, according to ZipRecruiter salary data. Most workers in this role earn between $37.21 and $54.71 per hour, depending on experience, location, and employer.

What does a security risk analyst do?

A Security Risk Analyst is responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze security measures, conduct vulnerability assessments, and recommend strategies to protect against threats such as cyberattacks, data breaches, and unauthorized access. Their work helps ensure that a company's digital assets remain safe and compliant with industry regulations. Security Risk Analysts collaborate with IT teams and management to implement effective security policies and respond to incidents as needed.

What are the key skills and qualifications needed to thrive as a security risk analyst?

To thrive as a Security Risk Analyst, you need a strong background in risk assessment, information security principles, and analytical thinking, often supported by a degree in cybersecurity, IT, or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security assessment tools, and certifications like CISSP or CISM is highly valuable. Excellent communication, attention to detail, and problem-solving abilities help you translate complex risks for varied stakeholders and drive mitigation strategies. These skills and qualities are crucial for identifying vulnerabilities, minimizing threats, and maintaining organizational security and compliance.

What are some common challenges security risk analysts face when collaborating with other departments?

Security Risk Analysts often work closely with IT, compliance, and business units to assess and mitigate risks. A common challenge is bridging the gap between technical security requirements and business objectives, as not all stakeholders may have a cybersecurity background. Effective communication and education are key to ensuring that risk recommendations are understood and adopted. Additionally, prioritizing risks with limited resources and balancing security with operational needs can be complex, requiring strong collaboration and negotiation skills.

What is the difference between Security Risk Analyst vs Security Analyst?

AspectSecurity Risk AnalystSecurity Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, vulnerability analysis, policy developmentMonitoring security systems, incident response, security audits
Employer & Industry UsageFinancial, healthcare, government sectors focusing on risk mitigationIT departments across various industries focusing on security operations

While both roles focus on cybersecurity, Security Risk Analysts primarily assess and manage potential security threats and vulnerabilities, emphasizing risk mitigation strategies. Security Analysts tend to monitor security systems, respond to incidents, and ensure ongoing security measures. Both roles often require similar certifications and work environments but differ in their core responsibilities within cybersecurity teams.

What is a security risk analyst?

A security risk analyst is a professional who identifies, assesses, and mitigates security threats to an organization’s information systems. They analyze vulnerabilities, develop security strategies, and often use tools like risk assessment frameworks and security software to protect data and infrastructure.
Infographic showing various Security Risk Analyst job openings in Utah as of August 2026, with employment types broken down into 92% Full Time, 6% Part Time, and 2% Contract. Highlights an 88% In-person, 4% Hybrid, and 8% Remote job distribution, with an average salary of $95,450 per year, or $45.9 per hour.

Sr. IT Security Engineer

swirecc

Draper, UT • On-site

$107K - $146K/yr

Full-time

Posted 21 days ago


Job description

What does the Sr. IT Security Engineer, Operations & Engineering do at Swire Coca-Cola?

A Senior IT Security Engineer in Operations & Engineering supports the design, implementation, and operation of enterprise cybersecurity technologies and services. They are responsible for strengthening the organization's security posture through the deployment, administration, and optimization of security controls across on-premises, cloud, and hybrid environments. They serve as a technical leader within the Cybersecurity team, partnering closely with IT Infrastructure, Network Engineering, Cloud Operations, Application Development, and Security Operations teams to ensure security controls are effectively implemented and maintained. This role supports both operational security activities and strategic security initiatives, helping to reduce risk through automation, engineering excellence, and continuous improvement.

This position requires a strong technical foundation across multiple security domains, including endpoint security, identity and access management, cloud security, network security, vulnerability management, and security monitoring. The ideal candidate can balance engineering, operational support, and project execution while driving security best practices throughout the organization.

Responsibilities

Security Engineering & Architecture:

  • Design, implement, and maintain cybersecurity technologies across endpoint, network, cloud, and identity platforms
  • Evaluate, deploy, and optimize security tools and controls to improve the organization's security posture
  • Support the development and implementation of cybersecurity standards, architectures, and technical roadmaps
  • Partner with IT teams to ensure security controls are integrated into infrastructure and application designs

Security Operations & Incident Response:

  • Support security monitoring, threat detection, and incident response activities
  • Investigate security alerts, identify root causes, and assist with containment and remediation efforts
  • Develop and maintain operational procedures, runbooks, and response documentation
  • Participate in incident response exercises and continuous improvement initiatives

Identity & Access Management (IAM):

  • Implement and support IAM capabilities, including identity lifecycle management, authentication, authorization, and privileged access controls
  • Manage role-based access controls, multifactor authentication, conditional access, and identity governance processes
  • Support periodic access reviews, entitlement management, and segregation of duties initiatives
  • Partner with application and infrastructure teams to integrate IAM solutions and automate identity processes

Vulnerability & Security Risk Management:

  • Support the vulnerability management program through assessment, prioritization, tracking, and remediation validation
  • Collaborate with system owners to remediate vulnerabilities and reduce cyber risk
  • Analyze security findings and recommend appropriate compensating controls or risk reduction measures
  • Track remediation progress and support risk reporting activities

Cloud & Infrastructure Security:

  • Design and implement security controls for Microsoft Azure, Microsoft 365, and hybrid environments
  • Support cloud security monitoring, configuration reviews, and hardening efforts
  • Evaluate cloud architectures and services to ensure alignment with security requirements
  • Implement security best practices for infrastructure, applications, and data protection

Automation, Reporting & Continuous Improvement:

  • Identify opportunities to automate security processes and improve operational efficiency
  • Develop metrics, dashboards, and reporting to support cybersecurity decision-making
  • Maintain technical documentation, standards, and operational procedures
  • Stay current on emerging threats, technologies, and industry best practices

Requirements

  • Bachelor's Degree in Cybersecurity, Information Technology, Computer Science, or related field
  • 5-8 years of experience in cybersecurity engineering, security operations, or infrastructure security
  • Experience managing and supporting enterprise security technologies, including EDR, SIEM, IAM, vulnerability management, and cloud security platforms
  • Strong knowledge of Microsoft security technologies, including Microsoft Defender, Entra ID (Azure AD), Intune, and Azure security services
  • Experience supporting incident response, vulnerability management, and security investigations
  • Knowledge of cybersecurity frameworks and best practices such as NIST CSF, CIS Controls, and Zero Trust principles
  • Experience scripting or automating security processes using PowerShell, Python, or similar technologies preferred
  • Strong troubleshooting, analytical, and problem-solving skills
  • Excellent communication and collaboration skills with both technical and non-technical stakeholders
  • Industry certifications such as CISSP, GSEC, Security+, Azure Security Engineer (AZ-500), or similar preferred

#LI-HH1