Experience with FedRAMP is preferred , as well as SOC II Type I & II, HIPAA Security Rule, CJIS ... reviewing applications, analyzing resumes, or assessing responses and identifying potential ...
Experience with FedRAMP is preferred , as well as SOC II Type I & II, HIPAA Security Rule, CJIS ... reviewing applications, analyzing resumes, or assessing responses and identifying potential ...
Experience with FedRAMP is preferred , as well as SOC II Type I & II, HIPAA Security Rule, CJIS ... reviewing applications, analyzing resumes, or assessing responses and identifying potential ...
Quick apply
Experience with FedRAMP is preferred , as well as SOC II Type I & II, HIPAA Security Rule, CJIS ... reviewing applications, analyzing resumes, or assessing responses and identifying potential ...
Experience with FedRAMP is preferred , as well as SOC II Type I & II, HIPAA Security Rule, CJIS ... reviewing applications, analyzing resumes, or assessing responses and identifying potential ...
Experience with FedRAMP is preferred , as well as SOC II Type I & II, HIPAA Security Rule, CJIS ... reviewing applications, analyzing resumes, or assessing responses and identifying potential ...
Cybersecurity Analyst
Sunset, UT · On-site
Knowledge of the OSI model, defense-in-depth security principles, and common security elements for effective threat detection, analysis, and mitigation as a SOC Security Analyst. * Education and ...
Cybersecurity Analyst
Sunset, UT · On-site
Knowledge of the OSI model, defense-in-depth security principles, and common security elements for effective threat detection, analysis, and mitigation as a SOC Security Analyst. * Education and ...
Lead RainFocus's GRC program across SOC 2, ISO 27001, PCI DSS, and other client/regulatory ... Strong analytical and problem-solving skills, with keen attention to detail. Excellent ...
Lead RainFocus's GRC program across SOC 2, ISO 27001, PCI DSS, and other client/regulatory ... Strong analytical and problem-solving skills, with keen attention to detail. Excellent ...
Lead RainFocus's GRC program across SOC 2, ISO 27001, PCI DSS, and other client/regulatory ... Strong analytical and problem-solving skills, with keen attention to detail. Excellent ...
Lead RainFocus's GRC program across SOC 2, ISO 27001, PCI DSS, and other client/regulatory ... Strong analytical and problem-solving skills, with keen attention to detail. Excellent ...
Planner/Buyer Analyst
Draper, UT · On-site
$32 - $37/hr
Ability to analyze financial reports, price proposals and other technical data. * Ability to ... Our organization is certified to ISO 9001, ISO 14001, ISO 27001, and SOC 2 Type II standards ...
Quick apply
Planner/Buyer Analyst
Draper, UT · On-site
$32 - $37/hr
Ability to analyze financial reports, price proposals and other technical data. * Ability to ... Our organization is certified to ISO 9001, ISO 14001, ISO 27001, and SOC 2 Type II standards ...
Defensive Cyber Operations (DCO) Analyst
Ogden, UT · On-site
$90K - $145K/yr
Utilize AI-assisted analysis, automation, and correlation of data from various log sources to ... Required Qualifications: * 4+ years of relevant cybersecurity experience, including direct SOC ...
Defensive Cyber Operations (DCO) Analyst
Ogden, UT · On-site
$90K - $145K/yr
Utilize AI-assisted analysis, automation, and correlation of data from various log sources to ... Required Qualifications: * 4+ years of relevant cybersecurity experience, including direct SOC ...
Defensive Cyber Operations (DCO) Analyst
$90K - $145K/yr
Utilize AI-assisted analysis, automation, and correlation of data from various log sources to ... Required Qualifications: * 4+ years of relevant cybersecurity experience, including direct SOC ...
Defensive Cyber Operations (DCO) Analyst
$90K - $145K/yr
Utilize AI-assisted analysis, automation, and correlation of data from various log sources to ... Required Qualifications: * 4+ years of relevant cybersecurity experience, including direct SOC ...
Defensive Cyber Operations (DCO) Analyst
$90K - $145K/yr
Utilize AI-assisted analysis, automation, and correlation of data from various log sources to ... Required Qualifications: * 4+ years of relevant cybersecurity experience, including direct SOC ...
Defensive Cyber Operations (DCO) Analyst
$90K - $145K/yr
Utilize AI-assisted analysis, automation, and correlation of data from various log sources to ... Required Qualifications: * 4+ years of relevant cybersecurity experience, including direct SOC ...
IT Risk Analyst II
Salt Lake City, UT · On-site
$108K - $162K/yr
Conduct third-party and supplier risk assessments end to end: scoping, evidence review (SOC 2 reports, questionnaires, contracts), risk analysis, and a clear residual risk conclusion. * Conduct ...
IT Risk Analyst II
Salt Lake City, UT · On-site
$108K - $162K/yr
Conduct third-party and supplier risk assessments end to end: scoping, evidence review (SOC 2 reports, questionnaires, contracts), risk analysis, and a clear residual risk conclusion. * Conduct ...
IT Risk Analyst II
Salt Lake City, UT · On-site
$108K - $162K/yr
Conduct third-party and supplier risk assessments end to end: scoping, evidence review (SOC 2 reports, questionnaires, contracts), risk analysis, and a clear residual risk conclusion. * Conduct ...
IT Risk Analyst II
Salt Lake City, UT · On-site
$108K - $162K/yr
Conduct third-party and supplier risk assessments end to end: scoping, evidence review (SOC 2 reports, questionnaires, contracts), risk analysis, and a clear residual risk conclusion. * Conduct ...
Mentor engineers and analysts, establish investigation standards, and raise technical capability across the SOC. Required Qualifications and Experience * Eight or more years of hands-on experience in ...
Mentor engineers and analysts, establish investigation standards, and raise technical capability across the SOC. Required Qualifications and Experience * Eight or more years of hands-on experience in ...
Mentor engineers and analysts, establish investigation standards, and raise technical capability across the SOC. Required Qualifications and Experience * Eight or more years of hands-on experience in ...
Mentor engineers and analysts, establish investigation standards, and raise technical capability across the SOC. Required Qualifications and Experience * Eight or more years of hands-on experience in ...
Mentor engineers and analysts, establish investigation standards, and raise technical capability across the SOC. Required Qualifications and Experience * Eight or more years of hands-on experience in ...
Mentor engineers and analysts, establish investigation standards, and raise technical capability across the SOC. Required Qualifications and Experience * Eight or more years of hands-on experience in ...
This role is critical to maintaining our SOC 1, SOC 2, and PCI certifications and to raising our ... analysis, with appropriate human oversight. * Participate in incident management as the GRC/risk ...
This role is critical to maintaining our SOC 1, SOC 2, and PCI certifications and to raising our ... analysis, with appropriate human oversight. * Participate in incident management as the GRC/risk ...
Senior Vendor Risk Analyst - Remote
Draper, UT · On-site +1
Familiarity with industry compliance standards and frameworks, including ISO 27001, SIG, and SOC 2 * Proven solid ability to read and analyze financial statements as part of risk evaluation and due ...
Senior Vendor Risk Analyst - Remote
Draper, UT · On-site +1
Familiarity with industry compliance standards and frameworks, including ISO 27001, SIG, and SOC 2 * Proven solid ability to read and analyze financial statements as part of risk evaluation and due ...
Familiarity with industry compliance standards and frameworks, including ISO 27001, SIG, and SOC 2 * Proven solid ability to read and analyze financial statements as part of risk evaluation and due ...
Familiarity with industry compliance standards and frameworks, including ISO 27001, SIG, and SOC 2 * Proven solid ability to read and analyze financial statements as part of risk evaluation and due ...
Investigate, validate, and respond to security alerts and incidents escalated from a 24/7 SOC * Perform event triage, root cause analysis, and containment actions in collaboration with internal teams
Quick apply
Investigate, validate, and respond to security alerts and incidents escalated from a 24/7 SOC * Perform event triage, root cause analysis, and containment actions in collaboration with internal teams
Cybersecurity and Compliance Professional
Lehi, UT · On-site +1
$88K - $88K/yr
Our approach incorporates a clear understanding of the client's desired objectives and analysis ... Knowledge of HIPAA, HITRUST, ISO 27001, NIST, PCI DSS, or SSAE SOC standards. * Experience with ...
Cybersecurity and Compliance Professional
Lehi, UT · On-site +1
$88K - $88K/yr
Our approach incorporates a clear understanding of the client's desired objectives and analysis ... Knowledge of HIPAA, HITRUST, ISO 27001, NIST, PCI DSS, or SSAE SOC standards. * Experience with ...
Soc Analyst information
See Utah salary details
$32.3K - $39.9K
2% of jobs
$39.9K - $47.5K
3% of jobs
$47.5K - $55K
12% of jobs
$55K - $62.6K
7% of jobs
$63.2K is the 25th percentile. Wages below this are outliers.
$62.6K - $70.2K
9% of jobs
$70.2K - $77.8K
5% of jobs
$77.8K - $85.3K
3% of jobs
$85.3K - $92.9K
6% of jobs
The median wage is $94.8K / yr.
$92.9K - $100.5K
6% of jobs
$100.5K - $108K
2% of jobs
$111.2K is the 75th percentile. Wages above this are outliers.
$108K - $115.6K
43% of jobs
$32.3K
$90.3K
$115.6K
How much do soc analyst jobs pay per year?
What is a SOC analyst?
What are the key skills and qualifications needed to thrive as a SOC analyst?
What are some typical challenges a SOC analyst faces during incident response, and how can these be managed?
What is the difference between Soc Analyst vs Security Engineer?
| Aspect | Soc Analyst | Security Engineer |
|---|---|---|
| Credentials | Certifications like CompTIA Security+, CEH, CISSP (entry-level to mid-level) | Certifications like CISSP, CEH, OSCP, often more technical and advanced |
| Work Environment | Security operations centers, monitoring and analyzing security alerts | Designing, implementing, and maintaining security systems and infrastructure |
| Employer & Industry Usage | Financial, healthcare, government, and corporate sectors | Tech companies, cybersecurity firms, large enterprises |
| Common Search & Comparison Intent | Understanding roles in security monitoring and incident response | Understanding technical security implementation and architecture |
While both roles focus on cybersecurity, Soc Analysts primarily monitor security alerts and respond to incidents within security operations centers. Security Engineers design and build security systems to prevent breaches. The roles complement each other but differ in focus, skills, and responsibilities.
Do SOC analysts get paid well?
Is a SOC analyst a hard job?
What are the most commonly searched types of Soc Analyst jobs in Utah?
The most popular types of Soc Analyst jobs in Utah are:
What are popular job titles related to Soc Analyst jobs in Utah?
For Soc Analyst jobs in Utah, the most frequently searched job titles are:
What job categories do people searching Soc Analyst jobs in Utah look for?
The top searched job categories for Soc Analyst jobs in Utah are:
What cities in Utah are hiring for Soc Analyst jobs?
Cities in Utah with the most Soc Analyst job openings:
What are popular job titles related to Soc Analyst jobs in UT?
For Soc Analyst jobs in UT, the most frequently searched job titles are:

Full-time
Medical, Dental, Vision
Re-posted 15 days ago
Job description
- Manage CJIS obligations, including monthly and yearly audits, clearances for employees, and associated CJIS efforts
- Assist with Federal and international government security audits (e.g. FedRAMP, StateRAMP, Canadian government compliance obligations Strategize and outline goals and objectives of the GRC (IT Audit and Risk management) programs.
- Assist with security efforts to meet HIPAA, SOC 2 Type I & II, and other compliance requirements.
- Work directly with Information Security, Legal, HR, Compliance and Development teams to ensure secure IT and IS best practices are fully adopted at Filevine.
- Help train employees on auditing secure coding techniques to mitigate the need for break-fix/out-of-band patching.
- Review audit, compliance and risk assessment issues that arise and manage them to resolution.
- Provide audit frameworks and risk assessment methodologies contemplating new software solutions to help mitigate security vulnerabilities and other business risks.
- Maintain documented Policy and Procedure libraries for compliance purposes.
- Complete Third-party vendor risk management and security questionnaires for Filevine.
- Provided annual Internal audit and risk assessment functions.
- Facilitate and lead annual penetration testing and auditing efforts.
- Develop a familiarity with new auditing and risk assessment tools and techniques.
- Bachelor's Degree or equivalent in Computer Science, Computer Engineering, Information Technology, or related field
- 4+ years of experience in IT Auditing, Compliance Analysst and/or direct experience related to risk assessment methodologies.
- Proven work experience as IT Audit & Risk Assessor with a passion for details and security.
- Familiarity with auditing and assessing the OWASP Top 10.
- Experience with managing risks, fraud, and security threats.
- Knowledge of web related technologies (Web applications, Web Services and Service Oriented Architectures, Web Databases) and of network/web related protocols.
- Experience assessing, testing, or auditing technical IT and security controls.
- Working knowledge of and demonstrated experience with ISO 27701, ISO 27018, ISO 27001
- Experience with FedRAMP is preferred, as well as SOC II Type I & II, HIPAA Security Rule, CJIS, GDPR, CCPA/CPRA and other compliance frameworks.
- Demonstrated knowledge of assessing development methodologies (Agile, Waterfall).
- Ability to work in a fast-paced environment.
- Must exhibit excellence in partnering, teamwork, and quality performance.
- Able to effectively give, receive, and respond to feedback.
- Excellent oral and written communication skills with the ability to communicate security concepts to a technical and non-technical audience including senior management.
- Demonstrated ability to establish relationships and build rapport to influence colleagues at all levels, uncover issues, and identify needs.
- This will be a hybrid schedule position ( 3/2 or 4/1 - TBD)
- Significant experience with auditing frameworks, formal audits, and risk assessment experience.
- Significant experience with automated auditing and compliance tools.
- GRC tool Certification or equivalent experience.
- CISSP Certification or equivalent experience.
- CISM Certification or equivalent experience.
- CISA Certification or equivalent experience.
- CIPP/US Certification or equivalent experience.
- CRISC Certification or equivalent experience.
About Filevine
Sourced by ZipRecruiter
Industry
Software development
Company size
11 - 50 Employees
Headquarters location
Provo, UT, US
Year founded
2014