1

Vulnerability Analyst Jobs in Utah (NOW HIRING)

Senior Web Vulnerability Analyst

Ogden, UT · On-site

$81K - $94K/yr

Senior Web Vulnerability Analyst Location: DISA Ogden, 7879 Wardleigh Rd Bldg. 891, Hill AFB, UT 84056-5997 (SCIF), Some Travel Required. Employment Type: Full-Time Shift: N/A About the Company ...

New

Coordinate with the ISSM to conduct vulnerability scans, risk assessments, and compliance reviews ... Strong analytical and problem-solving skills with attention to detail * Excellent written and ...

Cyber Defense Analyst

Clearfield, UT · On-site

$101K - $121K/yr

Coordinate with the ISSM to conduct vulnerability scans, risk assessments, and compliance reviews ... Strong analytical and problem-solving skills with attention to detail * Excellent written and ...

Cyber Defense Analyst

Clearfield, UT · On-site

$101K - $121K/yr

Coordinate with the ISSM to conduct vulnerability scans, risk assessments, and compliance reviews ... Strong analytical and problem-solving skills with attention to detail * Excellent written and ...

Cybersecurity Analyst

Provo, UT · On-site

$72K - $118K/yr

Experience conducting security reviews, risk assessments, or vulnerability analysis. * Familiarity with security tools (e.g., SIEM, EDR, identity management). * Experience in government, public ...

Analyze vulnerability scan results, pen test reports, and threat intelligence to prioritize risk and drive remediation based on exploitability and business impact. * Develop and maintain security ...

next page

Showing results 1-20

Vulnerability Analyst information

See Utah salary details

$28.2K

$66.7K

$118.3K

How much do vulnerability analyst jobs pay per year?

As of Aug 23, 2026, the average yearly pay for vulnerability analyst in Utah is $66,695.00, according to ZipRecruiter salary data. Most workers in this role earn between $47,800.00 and $79,200.00 per year, depending on experience, location, and employer.

What is a vulnerability analyst?

A Vulnerability Analyst is a cybersecurity professional responsible for identifying, assessing, and mitigating security weaknesses in an organization's systems, networks, and applications. They use tools like vulnerability scanners, penetration testing frameworks, and security assessments to identify potential threats. Their role includes analyzing vulnerabilities, prioritizing risks, and working with IT and security teams to implement necessary patches or fixes. They also stay up to date with emerging threats and ensure compliance with security policies and regulations.

What are the typical day-to-day responsibilities of a vulnerability analyst?

As a Vulnerability Analyst, your daily tasks often include running vulnerability scans, analyzing findings, prioritizing risks based on severity, and working with IT or development teams to coordinate remediation efforts. You will also document your findings, prepare reports for stakeholders, and stay informed about the latest security threats and exploits. Collaboration with other security professionals and IT staff is common, as resolving vulnerabilities often requires cross-functional teamwork. This role requires a balance of technical analysis and effective communication to ensure organizational security posture is continuously improved.

What are the key skills and qualifications needed to thrive as a vulnerability analyst, and why are they important?

To thrive as a Vulnerability Analyst, you need expertise in cybersecurity principles, risk assessment, and vulnerability management, often supported by a degree in information security or a related field. Familiarity with vulnerability scanning tools (such as Nessus, Qualys, or Rapid7), knowledge of operating systems, and certifications like CompTIA Security+ or CEH are commonly required. Strong analytical thinking, attention to detail, and effective communication skills set top candidates apart. These abilities are crucial for accurately identifying system weaknesses and effectively advising teams on how to remediate security threats.

How do you become a vulnerability analyst?

To become a vulnerability analyst, typically one needs a bachelor's degree in cybersecurity, computer science, or a related field, along with knowledge of network protocols, operating systems, and security tools. Gaining experience through internships or entry-level IT roles and obtaining certifications such as CompTIA Security+ or Certified Ethical Hacker can enhance prospects. Strong analytical skills and familiarity with vulnerability scanning tools like Nessus or Qualys are also important.

What does a vulnerability analyst do?

A vulnerability analyst identifies, assesses, and prioritizes security weaknesses in computer systems, networks, and applications. They use tools like vulnerability scanners and follow industry standards to recommend remediation strategies, often working with cybersecurity teams to improve overall security posture.

What are the most commonly searched types of Vulnerability Analyst jobs in Utah?

The most popular types of Vulnerability Analyst jobs in Utah are:

Infographic showing various Vulnerability Analyst job openings in Utah as of August 2026, with employment types broken down into 81% Full Time, 14% Part Time, and 5% Contract. Highlights an 80% Physical, 9% Hybrid, and 11% Remote job distribution, with an average salary of $66,695 per year, or $32.1 per hour.

Senior Web Vulnerability Analyst

ATG

Ogden, UT • On-site

$81K - $94K/yr

Full-time

Medical, Dental, Vision, Life, Retirement

Posted 2 days ago

New


Job description

Job Title: Senior Web Vulnerability Analyst
Location: DISA Ogden, 7879 Wardleigh Rd Bldg. 891, Hill AFB, UT 84056-5997 (SCIF), Some Travel Required.
Employment Type: Full-Time
Shift: N/A
About the Company
Athena Technology Group, Inc. (ATG) is a Service-Disabled Veteran Owned Small Business (SDVOSB) focused on Information Technology and Communications consulting, system engineering, integration, deployment and operation of state of the art command and control and information systems that deliver critical network centric solution to the warfighter. With a proven track record of technical support to our customers, we are looking for innovative industry professionals to join our team.
ATG is an Equal Opportunity/Affirmative Action Employer Minorities/Females/Vets/Disability
Job Summary
We are seeking a Senior Web Vulnerability Analyst to join our team. In this role, you will provide Cybersecurity management support for the DISA Cybersecurity Division by supporting compliance monitoring/reporting, response and mitigation, automation and management services, compliance validation, configuration, change management and account management. This person will work as part of a disperse team requiring coordination, teamwork and must provide aproven ability to strategize and implement high-level program initiatives.
Key Responsibilities
  • Serve as a Web technical specialist for assets connected to isolated environments, NIPRNet and SIPRNet to support cybersecurity and IT services.
  • Review, identify, and report problems with the installation and operations of web instances to include system options, software used and not used, default security controls that are enabled, disabled, or bypassed, and system wide options or parameters that may create security vulnerabilities.
  • Determine the impact and risk of submitted change requests prior to implementation and participate in CAB meetings (up to daily) to provide cyber oversight for database changes that affect the level of risk.
  • Recommend security countermeasures to mitigate identified web risks.
  • Identify, monitor, analyze, report, and brief status of vulnerabilities.
  • Ensure high risk and high severity vulnerabilities are managed with increased visibility and escalated.
  • Analyze, validate, monitor, and report compliance status of DoD and DISA directives and orders.
  • Create, maintain, and provide automated and customized vulnerability reports.
  • Analyze mission requirements and organizational feedback to improve vulnerability reports and processes.
  • Provide recommendations for web vulnerability analysis, guidance, deficiency resolution, and implementation suggestions to DISA customers and Mission Partners.
  • Assess, audit, review, analyze, validate, and report database SRG and STIG vulnerabilities, and ensure security controls are implemented within databases IAW DoD, DISA and cybersecurity policies and procedures.
  • Evaluate discrepancies as they relate to policy, orders, and database SRG and/or STIGs, and document recommended additions, deletions, or changes.
  • Identify and report the need to add technical guidance for modification of policies and orders.
  • Review and validate the installation and configuration of cyber tools on assets, and report deficiencies.
  • Review database SRG and/or STIGs as updates are released, and report changes with the potential to have significant impact.
  • Determine the impact and risk of submitted change requests prior to implementation and participate in meetings to provide cyber oversight for web changes that affect the level of risk.
  • Recommend security countermeasures to mitigate identified web risks.
  • Participate in audits and provide documentation (up to daily).

Qualifications
Required:
  • Active Secret clearance
  • Bachelor's degree or higher
  • 5+ years of professional experience with endpoint tools and cybersecurity
  • 3+ Years experience with Microsoft Products
  • Current 8570/8140 Certificate with Network Environment focus and ESS certifications
  • Strong communication, leadership, and organizational skills
  • Must be a US citizen

Desired:
  • Experience working with teams in multiple locations across the United States.
  • Experience working with IT teams in various capacities.

Physical and Environmental Conditions
  • Normal Office Environment. Requires Sitting, Standing, Near Acuity, Speaking with colleagues and customers, Listening, Sight, Use of hands/fingers.

Additional Benefits
  • Performance Bonuses and annual salary reviews
  • Health, dental, and vision insurance
  • Short Term Disability, Long Term Disability, and Life Insurance
  • 401(k) plan with company match
  • Opportunities for professional growth and development
  • A collaborative and inclusive work environment

ATG is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, religion, creed, color, national origin, ancestry, sex (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, medical condition, marital or domestic partner status, sexual orientation, gender, gender identity, gender expression and transgender status, mental disability or physical disability, genetic information, military or veteran status, citizenship, low-income status or any other status or characteristic protected by applicable law. Learn more about your rights under Federal EEO laws and supplemental language.