1

Senior Vulnerability Management Jobs in Utah (NOW HIRING)

Senior Security Engineer

West Jordan, UT · On-site

$106K - $146K/yr

Position Summary NOVVA Data Centers is seeking a highly skilled Senior Security Engineer to lead ... Vulnerability Management platforms * Engineer secure cloud and hybrid infrastructure across ...

Senior Security Engineer

West Jordan, UT · On-site

$106K - $146K/yr

Position Summary NOVVA Data Centers is seeking a highly skilled Senior Security Engineer to lead ... Vulnerability Management platforms * Engineer secure cloud and hybrid infrastructure across ...

Position Summary NOVVA Data Centers is seeking a highly skilled Senior Security Engineer to lead ... Vulnerability Management platforms * Engineer secure cloud and hybrid infrastructure across ...

Sr. IT Security Engineer

Draper, UT · On-site

$107K - $146K/yr

A Senior IT Security Engineer in Operations & Engineering supports the design, implementation, and ... Support the vulnerability management program through assessment, prioritization, tracking, and ...

Sr. IT Security Engineer

Draper, UT · On-site

$107K - $146K/yr

A Senior IT Security Engineer in Operations & Engineering supports the design, implementation, and ... Support the vulnerability management program through assessment, prioritization, tracking, and ...

Sr. IT Security Engineer

Draper, UT · Hybrid

$100K - $130K/yr

A Senior IT Security Engineer in Operations & Engineering supports the design, implementation, and ... Support the vulnerability management program through assessment, prioritization, tracking, and ...

Sr. IT Security Engineer

Draper, UT · On-site

$107K - $146K/yr

A Senior IT Security Engineer in Operations & Engineering supports the design, implementation, and ... Support the vulnerability management program through assessment, prioritization, tracking, and ...

CSPM * SIEM * Vulnerability Management * Network Security * Zero Trust Network Access (ZTNA) * Data Loss Prevention (DLP) * Endpoint Detection & Response (EDR) * Endpoint Management * Lead ...

IT Security Operations Manager

Draper, UT · On-site

$120K - $150K/yr

A Sr. Manager of IT Security Operations is responsible for leading and advancing an organization ... Oversee the vulnerability management program, including scanning, prioritization, and remediation ...

Sr. IT Security Engineer

Draper, UT · On-site

$107K - $146K/yr

A Senior IT Security Engineer in Operations & Engineering supports the design, implementation, and ... Support the vulnerability management program through assessment, prioritization, tracking, and ...

Senior Cyber Threat Hunter If you're passionate about building a better future for individuals ... work in vulnerability management, penetration testing support, threat hunting, or security ...

Senior Application Security Engineer

American Fork, UT · On-site

$102K - $140K/yr

ABOUT THIS ROLE As a Senior Application Security Engineer at LVT, you will be a cornerstone of our ... Vulnerability Management: Architect and manage the deployment of vulnerability scanning tools ...

DevSecOps Engineer

Draper, UT · On-site

$145K - $170K/yr

T. is actively seeking a Sr. DevSecOps Engineer for an immediate opportunity with our industry ... The role also supports foundational security operations, including vulnerability management and ...

Lead vulnerability management activities, including identification, prioritization, remediation tracking, and reporting * Conduct security assessments, threat modelling, and risk analysis for ...

next page

Showing results 1-20

Senior Vulnerability Management information

What does a senior vulnerability management professional do?

A Senior Vulnerability Management professional is responsible for identifying, assessing, and mitigating security vulnerabilities within an organization's IT systems. They lead vulnerability scanning efforts, analyze threats, prioritize remediation actions, and collaborate with IT and security teams to implement solutions. In addition, they often develop vulnerability management policies, provide guidance on best practices, and report on the organization's security posture to leadership. Their role is crucial in reducing the risk of cyberattacks and ensuring compliance with security standards.

What are the key skills and qualifications needed to thrive as a senior vulnerability management professional?

To thrive as a Senior Vulnerability Management professional, you need deep knowledge of cybersecurity principles, threat analysis, and risk assessment, often supported by a relevant degree and certifications like CISSP, CISM, or CompTIA Security+. Familiarity with vulnerability scanning tools (e.g., Nessus, Qualys), patch management systems, and security information and event management (SIEM) platforms is required. Strong analytical thinking, communication, and leadership skills are vital for prioritizing risks and collaborating across teams. These competencies are crucial for identifying, mitigating, and communicating security vulnerabilities to protect organizational assets and ensure regulatory compliance.

What are some common challenges faced by senior vulnerability management professionals, and how can they be addressed?

Senior Vulnerability Management professionals often encounter challenges such as prioritizing vulnerabilities based on risk, coordinating remediation efforts across multiple teams, and managing a high volume of security findings. Addressing these challenges requires strong communication skills to collaborate effectively with IT, development, and business units, as well as the use of automation tools to streamline vulnerability scanning and reporting. Staying current with threat intelligence and regulatory requirements also helps in accurately assessing risks and ensuring comprehensive coverage.

What is the difference between Senior Vulnerability Management vs Vulnerability Analyst?

AspectSenior Vulnerability ManagementVulnerability Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, CEH
Work EnvironmentOversees vulnerability programs, manages teams, develops strategiesPerforms vulnerability scans, analyzes findings, reports issues
Employer & Industry UsageUsed in large organizations, cybersecurity teams, IT departmentsCommon in security operations centers, IT security teams

Senior Vulnerability Management roles focus on leading vulnerability programs, strategy, and team management, while Vulnerability Analysts primarily conduct scans and analyze vulnerabilities. Both roles require similar certifications but differ in scope and responsibilities within cybersecurity teams.

What are the most commonly searched types of Vulnerability Management jobs in Utah?

The most popular types of Vulnerability Management jobs in Utah are:

What are popular job titles related to Senior Vulnerability Management jobs in Utah?

For Senior Vulnerability Management jobs in Utah, the most frequently searched job titles are:

What job categories do people searching Senior Vulnerability Management jobs in Utah look for?

The top searched job categories for Senior Vulnerability Management jobs in Utah are:

What cities in Utah are hiring for Senior Vulnerability Management jobs?

Cities in Utah with the most Senior Vulnerability Management job openings:

Senior Security Manager - Vulnerability Management

alter Domus

Salt Lake City, UT • Hybrid

$110K - $151K/yr

Full-time

Posted 24 days ago


Job description

ABOUT US:

As a world leading provider of integrated solutions for the alternative investment industry, Alter Domus (meaning "The Other House" in Latin) is proud to be home to 90% of the top 30 asset managers in the private markets, and more than 6,000 professionals across 24 jurisdictions.

With a deep understanding of what it takes to succeed in alternatives, we believe in being different in what we do, how we work, and most importantly in how we enable and develop our people. Invest yourself in the alternative, and join an organization where you progress on merit, where you can speak openly with whoever you are speaking to, and where you will be supported along whichever path you choose to take. 

Find out more about life at Alter Domus at careers.alterdomus.com  

We are seeking a Senior Security Manager, Vulnerability Management to own and mature Alter Domus's enterprise vulnerability management program and drive continuous reduction of our attack surface. Reporting to the CISO, you will lead the strategy, tooling, and operating cadence for identifying, prioritizing, and remediating vulnerabilities across infrastructure, cloud, and business applications - while leading a small team and representing the program in governance, audit, and executive reporting forums. 


KEY RESPONSIBILITIES:

Vulnerability Management Program Leadership 

  • Own and continuously mature the end-to-end enterprise Vulnerability Management (VM) program - policy, scanning cadence, risk-based prioritization, and remediation SLAs - across on-premises, cloud, and hybrid environments. 

  • Build, lead, and develop a small team of vulnerability management analysts/engineers, setting priorities and managing delivery against program KPIs. 

  • Partner with Infrastructure, Application, and DevOps teams to drive timely remediation of critical and high-risk findings; manage formal risk-acceptance and exception processes for items that cannot be remediated on schedule. 

  • Identify and reduce the organization's attack surface, including unmanaged assets, shadow IT, and internet-facing exposures, in partnership with IT and Network teams. 


Vulnerability Management Platform Deployment & Operations 

  • Own the deployment, configuration, and ongoing administration of the enterprise vulnerability management (VM) scanning and detection-response platform across the enterprise estate. 

  • Drive scanner/agent coverage expansion, asset discovery accuracy, and integration of the VM platform with ITSM/ticketing and CMDB tools. 

  • Continuously tune scan policies, authentication, and reporting configurations to improve detection accuracy and reduce false positives. 

  • Evaluate and recommend enhancements to the VM tooling stack as the threat landscape and business needs evolve. 


AI-Augmented Vulnerability Management 

  • Leverage AI/ML-driven risk scoring and predictive exploitability signals (beyond static CVSS) to sharpen remediation prioritization and focus analyst effort on the highest-impact exposures. 

  • Evaluate and adopt AI-assisted capabilities within the VM platform - automated finding triage, deduplication, and correlation with threat intelligence - to increase remediation velocity and reduce manual analyst workload. 

  • Extend vulnerability and attack surface management practices to AI/ML assets in use across the business - models, training data pipelines, and AI-enabled applications - identifying and remediating AI-specific exposures. 

  • Partner with Security Governance on emerging AI risk frameworks (e.g., NIST AI RMF, OWASP Top 10 for LLM Applications) where they intersect with vulnerability and configuration management practices. 


Governance, Metrics & Reporting 

  • Design and maintain executive and operational reporting (KPIs/KRIs, remediation SLA performance, risk trends) for the CISO, technology leadership, and risk committees. 

  • Own and keep current the vulnerability management policies, standards, and procedures in line with the evolving threat landscape and regulatory expectations. 

  • Present program status, risk posture, and remediation progress at security governance forums and, as needed, executive-level updates. 


Audit & Compliance 

  • Serve as the primary control owner for vulnerability and configuration management controls during SOC 2 (Type I/II) and related audits (e.g., ISO 27001, client due-diligence reviews). 

  • Manage evidence collection, auditor engagement, and remediation tracking for audit findings tied to vulnerability, patch, and configuration management. 

  • Support broader information security governance activities, including risk assessments and control testing, as needed. 

 

PREFERRED EXPERIENCE & QUALIFICATIONS:

The ideal candidate will bring deep, hands-on expertise in vulnerability and attack surface management, with demonstrated leadership in regulated financial services environments. Preferred experience includes: 


Leadership & General 

  • 10+ years of information security experience, including 5+ years leading or managing a vulnerability management or attack surface management function - ideally within financial services or another regulated industry. 

  • Proven track record of representing risk and program status to senior stakeholders, translating technical findings into clear business narrative. 

  • Proven people-management experience, with a track record of building, coaching, and developing a small security team. 


Technical Skills 

  • Hands-on experience deploying, administering, and optimizing an enterprise vulnerability management (VM) platform at scale. 

  • Working knowledge of CIS Benchmarks, CVE/CVSS scoring, and secure configuration and hardening practices across Windows, Linux, cloud (AWS/Azure), and network infrastructure. 

  • Experience leading or coordinating vulnerability assessments and penetration testing of business applications, and turning findings into actionable remediation plans. 

  • Direct experience as a control owner supporting SOC 2 (Type I/II) or comparable compliance audits (e.g., ISO 27001, NIST CSF). 

  • Strong written and verbal communication skills, with the ability to present risk and program metrics to both technical and executive/non-technical audiences. 


AI & Automation 

  • Familiarity with AI/ML-driven vulnerability prioritization and risk-scoring capabilities (e.g., predictive exploitability, threat-intel correlation) available in modern VM platforms. 

  • Familiarity with using or evaluating AI-powered automation for vulnerability triage, deduplication, or remediation-guidance generation. 

  • Working knowledge of AI/LLM-specific risk considerations (e.g., OWASP Top 10 for LLM Applications, model and data-pipeline exposures) as they relate to attack surface and vulnerability management. 

  • Practical use of generative AI tools to accelerate reporting, documentation, or remediation playbooks is a plus. 


Certifications (Preferred) 

CISSP, CISM, GCVA, GPEN, or equivalent. AI/ML security credential (e.g., GIAC AI Security Automation Engineer - GASAE) a plus.

WHAT WE OFFER:

We are committed to supporting your development, advancing your career, and providing benefits that matter to you.

Our industry-leading Alter Domus Academy offers six learning zones for every stage of your career, with resources tailored to your ambitions and resources from LinkedIn Learning. 

Our global benefits also include:

  • Support for professional accreditations 
  • Flexible arrangements, generous holidays, plus an additional day off for your birthday!
  • Continuous mentoring along your career progression 
  • Active sports, events and social committees across our offices 
  • 24/7 support available from our Employee Assistance Program 
  • The opportunity to invest in our growth and success through our Employee Share Plan 
  • Plus additional local benefits depending on your location 

Alter Domus is an Equal Opportunity Employer: Equity Statement
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, or protected veteran status. 

(Alter Domus Privacy notice can be reviewed via Alter Domus webpage: https://alterdomus.com/privacy-notice/)

#LI-HYBRID
#TC-1