1

Vulnerability Management Analyst Jobs in Utah (NOW HIRING)

... Zero Trust connectivity and vulnerability management into a coherent program. This role ... Analytical Automation & DevSecOps: You are proficient in SIEM detection engineering (Splunk) and ...

Lead vulnerability management activities, including identification, prioritization, remediation tracking, and reporting * Conduct security assessments, threat modelling, and risk analysis for ...

Own the vulnerability management program end-to-end: oversee continuous vulnerability scanning (Tenable) and software composition analysis/code dependencies (Sonarqube), drive remediation across ...

Own the vulnerability management program end-to-end: oversee continuous vulnerability scanning (Tenable) and software composition analysis/code dependencies (Sonarqube), drive remediation across ...

Sr. IT Security Engineer

Draper, UT ยท On-site

$107K - $146K/yr

... vulnerability management program through assessment, prioritization, tracking, and remediation validation * Collaborate with system owners to remediate vulnerabilities and reduce cyber risk * Analyze ...

Sr. IT Security Engineer

Draper, UT ยท On-site

$107K - $146K/yr

... vulnerability management program through assessment, prioritization, tracking, and remediation validation * Collaborate with system owners to remediate vulnerabilities and reduce cyber risk * Analyze ...

Showing results 41-60

Vulnerability Management Analyst information

What is a vulnerability management analyst?

A Vulnerability Management Analyst is responsible for identifying, assessing, and mitigating security vulnerabilities within an organization's IT infrastructure. They use scanning tools, analyze threat data, and collaborate with teams to prioritize and remediate risks. Their role is crucial in maintaining cybersecurity by ensuring systems are patched and configured securely. Additionally, they may develop reports and provide recommendations to improve security posture. This position requires knowledge of security frameworks, risk assessment, and vulnerability management tools.

What are the typical daily responsibilities of a vulnerability management analyst?

On a typical day, a Vulnerability Management Analyst reviews system scans, analyzes reports for potential vulnerabilities, and works with IT or security teams to prioritize remediation efforts. They may also track the status of vulnerabilities, ensure timely patch application, and help develop or update security policies. Collaboration with various departments is common to coordinate testing, remediation, and communicate risk summary findings. This role requires keeping up with emerging threats and sometimes participating in security audits or compliance reviews, making it both dynamic and integral to the organization's overall cybersecurity posture.

What are the key skills and qualifications needed to thrive as a vulnerability management analyst?

A Vulnerability Management Analyst requires a strong background in cybersecurity principles, risk assessment, and IT networking, often supported by a relevant degree or certifications like CompTIA Security+, CISSP, or CEH. Experience with vulnerability scanning tools (such as Nessus, Qualys, or Rapid7) and familiarity with ticketing systems or SIEM platforms is essential. Strong analytical skills, attention to detail, effective communication, and the ability to work collaboratively help individuals succeed in this role. These capabilities are vital to proactively identify, assess, and mitigate security vulnerabilities, ensuring the organization's digital assets remain secure and compliant.

What are popular job titles related to Vulnerability Management Analyst jobs in Utah? For Vulnerability Management Analyst jobs in Utah, the most frequently searched job titles are:
What job categories do people searching Vulnerability Management Analyst jobs in Utah look for? The top searched job categories for Vulnerability Management Analyst jobs in Utah are:
Infographic showing various Vulnerability Management Analyst job openings in Utah as of August 2026, with employment types broken down into 78% Full Time, and 22% Contract. Highlights an 81% In-person, 5% Hybrid, and 14% Remote job distribution.

DevSecOps Engineer with Security Clearance

BLUE YONDER DEFENSE SOLUTIONS, LLC

Ogden, UT โ€ข On-site

Other

Re-posted 16 days ago


Job description

Role : DevOps Security Engineer ( US citizen) Location : Ogden, UTAH ( 100% Onsite role., NO REMOTE !! ) *** MUST relocate off their own to Ogden, Utah, if not local to that area *** US Citizens only with active clearance REQUIRED Blue Yonder Defense Solutions (BYDS) is seeking a DevSecOps Engineer to help integrate security practices into our software development and DevOps processes. This role will work closely with development, QA, and operations teams to build and maintain secure CI/CD pipelines, automate security testing, and ensure our platforms and applications meet enterprise security standards.The ideal candidate is passionate about automation, cloud-native security, and secure software delivery, and has experience embedding security into modern DevOps environments. Primary Duties and Responsibilities DevSecOps Implementation Design and implement security controls within CI/CD pipelines to ensure secure software delivery. Integrate automated security testing tools such as SAST, DAST, SCA, and container scanning. Embed security checks into build and deployment processes to identify vulnerabilities early in the SDLC. Platform & Infrastructure Security Work with DevOps teams to secure cloud infrastructure, containers, and Kubernetes environments. Implement Infrastructure-as-Code security scanning and policy enforcement. Automation & Tooling Develop automation scripts and integrations to support security workflows. Maintain and enhance CI/CD platforms and pipeline security tooling. Integrate vulnerability management tools with development workflows. Collaboration Partner with developers and QA teams to promote secure coding practices. Assist engineering teams in remediating vulnerabilities identified during testing and scanning. Collaborate with internal and customer security teams to implement organizational security standards. Compliance & Governance Support security compliance requirements such as SOC2, FedRAMP, or DoD security standards where applicable. Assist with security audits and vulnerability remediation tracking. Help maintain documentation of DevSecOps processes and controls. Required Qualifications 3โ€“6 years of experience in DevOps, DevSecOps, or security engineering. Experience building and maintaining CI/CD pipelines (GitHub Actions, Jenkins, GitLab CI, or similar). Familiarity with cloud platforms such as AWS, Azure, or GCP. Experience with container technologies (Docker, Kubernetes). Understanding of secure software development lifecycle (SSDLC) practices. Experience integrating security tools such as Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), Container vulnerability scanning Scripting experience (Python, Bash, or similar). Familiarity with Infrastructure as Code tools (Ansible, Terraform, CloudFormation, etc.). Preferred Qualifications Experience implementing DevSecOps practices in enterprise software environments. Knowledge of container and Kubernetes security best practices. Experience with secrets management solutions (Vault, AWS Secrets Manager, Azure Key Vault). Familiarity with security frameworks such as NIST, CIS Benchmarks, OWASP Top 10 Experience supporting government or regulated environments (FedRAMP, DoD Impact Levels, etc.). Security certifications such as Security+, CISSP (associate level), Certified Kubernetes Security Specialist (CKS) Key Skills DevSecOps and secure SDLC CI/CD automation Cloud security Container and Kubernetes security Vulnerability management Infrastructure as Code Security tooling integration Additional Skills Must be well versed in working with a diverse group of stakeholders - business analysts, solution architects, technical managers, developers, QA, customer IT โ€ข     Excellent communication (verbal and written) and interpersonal skills Ability to work while embedded in customersโ€™ teams remotely โ€ข    High degree of initiative and ownership to take a task and own it from inception to completion