1

Security Risk Analyst Jobs in Utah (NOW HIRING)

Lead cybersecurity risk assessments, control gap analyses, and thirdparty risk assessments ... Support customer security assessments, due diligence requests, and RFP responses * Monitor ...

Lead cybersecurity risk assessments, control gap analyses, and thirdparty risk assessments ... Support customer security assessments, due diligence requests, and RFP responses * Monitor ...

Lead cybersecurity risk assessments, control gap analyses, and thirdparty risk assessments ... Support customer security assessments, due diligence requests, and RFP responses * Monitor ...

next page

Showing results 1-20

Security Risk Analyst information

See Utah salary details

$9

$45

$63

How much do security risk analyst jobs pay per hour?

As of May 30, 2026, the average hourly pay for security risk analyst in Utah is $45.89, according to ZipRecruiter salary data. Most workers in this role earn between $37.21 and $54.71 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Security Risk Analyst, and why are they important?

To thrive as a Security Risk Analyst, you need a strong background in risk assessment, information security principles, and analytical thinking, often supported by a degree in cybersecurity, IT, or a related field. Familiarity with risk management frameworks (such as NIST or ISO 27001), security assessment tools, and certifications like CISSP or CISM is highly valuable. Excellent communication, attention to detail, and problem-solving abilities help you translate complex risks for varied stakeholders and drive mitigation strategies. These skills and qualities are crucial for identifying vulnerabilities, minimizing threats, and maintaining organizational security and compliance.

What are some common challenges Security Risk Analysts face when collaborating with other departments?

Security Risk Analysts often work closely with IT, compliance, and business units to assess and mitigate risks. A common challenge is bridging the gap between technical security requirements and business objectives, as not all stakeholders may have a cybersecurity background. Effective communication and education are key to ensuring that risk recommendations are understood and adopted. Additionally, prioritizing risks with limited resources and balancing security with operational needs can be complex, requiring strong collaboration and negotiation skills.

What does a Security Risk Analyst do?

A Security Risk Analyst is responsible for identifying, assessing, and mitigating risks to an organization's information systems and data. They analyze security measures, conduct vulnerability assessments, and recommend strategies to protect against threats such as cyberattacks, data breaches, and unauthorized access. Their work helps ensure that a company's digital assets remain safe and compliant with industry regulations. Security Risk Analysts collaborate with IT teams and management to implement effective security policies and respond to incidents as needed.

What is the difference between Security Risk Analyst vs Security Analyst?

AspectSecurity Risk AnalystSecurity Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentRisk assessment, vulnerability analysis, policy developmentMonitoring security systems, incident response, security audits
Employer & Industry UsageFinancial, healthcare, government sectors focusing on risk mitigationIT departments across various industries focusing on security operations

While both roles focus on cybersecurity, Security Risk Analysts primarily assess and manage potential security threats and vulnerabilities, emphasizing risk mitigation strategies. Security Analysts tend to monitor security systems, respond to incidents, and ensure ongoing security measures. Both roles often require similar certifications and work environments but differ in their core responsibilities within cybersecurity teams.

What are popular job titles related to Security Risk Analyst jobs in Utah? For Security Risk Analyst jobs in Utah, the most frequently searched job titles are:
What job categories do people searching Security Risk Analyst jobs in Utah look for? The top searched job categories for Security Risk Analyst jobs in Utah are:
Infographic showing various Security Risk Analyst job openings in Utah as of May 2026, with employment types broken down into 1% As Needed, 92% Full Time, 5% Part Time, and 2% Contract. Highlights an 95% Physical, 2% Hybrid, and 3% Remote job distribution, with an average salary of $95,450 per year, or $45.9 per hour.

Senior Cybersecurity Information Analyst

ISSE Services

Clearfield, UT • On-site

$90K - $120K/yr

Full-time

Posted 19 days ago


Job description

Description
SENIOR CYBER SECURITY ANALYST III (ISSM)
This is a HYBRID position, not fully remote.
Only apply if you have a current security clearance.
CONTRACTED FEDERAL DRUG-FREE WORKPLACE
Location: Clearfield, UT
The Cybersecurity Analyst is a key member of the Cybersecurity team and works closely with our customers across functional teams to provide compliance assessments and help engineer secure solutions as they are being developed.
Essential Duties and Job Functions
• Assist customers design, engineer, and implement technical solutions
• Lead teams of cybersecurity engineers and analysts in developing solutions across multiple DoD programs
• Coordinate with Risk Management Framework team to ensure design meets specified requirements
• Coordinate with DoD agencies to ensure solutions meet specific security guidelines
• Conduct research, review documentation and provide input for Risk Management Framework packages to the Government for review and approval
• Review Risk Management Framework documentation for completeness and readiness for certification analysis
• Coordinate with the program team to gather artifacts and assist the Government in resolving issues precluding the program from receiving an Authority To Operate
• Assist with FISMA compliance audits and provide status updates to the PM
• Perform regular STIG and vulnerability analysis in compliance with DoD guidelines
• Review compliance with current Cybersecurity policy, regulations, and directives to ensure secure configuration and operation of all operated and maintained IT assets, recommending corrective actions as required
• Assist customers developing new system to design and engineer the systems to meet current cyber security requirements and best practices
Knowledge, Experience and Skills
• Minimum seven (7) years of experience in an Information Security position or IT Audit role with a background in performing security risk assessments
• Experience with system design across multiple areas of operations (AAA, Operating Systems, network layout and design...)
• Requirements gap analysis/traceability
• Proven ability to create and maintain effective documentation, including policies, processes and procedures
• Experience drawing Topology, Data Flow, and Boundary diagrams
• Strong understanding of security concepts and detailed implementation including using NIST 800-53r4 controls as a framework
• Deep understanding of how to tailor security implementation based on mission and threats
• Knowledge of security and IT general controls for application development and management
• Good communications skills, both verbal and written, as well as the ability to communicate well with people in a variety of positions, roles and levels
• Professional, self-motivated and a strong sense of urgency.
• Ability to provide technical direction to more junior team members
Required
• CISSP, CISSP-ISSEP, CISSP-ISSAP
• Active DoD SECRET clearance (ability to gain Top Secret)
Preferred
• BS/BA degree or an equivalent combination of education and experience
• Training in Risk Management or IT Audit Methodology strongly desired