1

Vulnerability Jobs in Utah (NOW HIRING)

Product Security Engineer

Lehi, UT · On-site

$67.61 - $84.51/hr

Triage incoming vulnerability reports from the bug bounty platform, assess validity, impact, and scope. * Assign CVSS scores and severity ratings following internal guidelines and industry standards.

Own the Vulnerability & Asset Lifecycle: Drive risk-based remediation across cloud, container, and endpoint environments. You will shift the needle from volume-based reporting to exploitability-led ...

DevSecOps Engineer

Draper, UT · On-site

$145K - $170K/yr

The role also supports foundational security operations, including vulnerability management and incident response, ensuring consistent security standards and improved threat visibility across the ...

Oversee the vulnerability management program, including scanning, prioritization, and remediation tracking * Partner with IT and application teams to reduce risk exposure and improve patching ...

Showing results 21-40

Vulnerability information

See Utah salary details

$34.1K

$98.2K

$130.2K

How much do vulnerability jobs pay per year?

As of Aug 6, 2026, the average yearly pay for vulnerability in Utah is $98,231.00, according to ZipRecruiter salary data. Most workers in this role earn between $85,600.00 and $107,000.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals working in vulnerability management roles?

Professionals in vulnerability management often face the challenge of keeping up with constantly evolving threats and newly discovered vulnerabilities. Prioritizing which vulnerabilities to address first, especially in large environments with thousands of potential risks, can be demanding. Collaborating with IT, development, and security teams to ensure timely remediation and maintaining clear communication about risk levels are also essential parts of the role. Additionally, balancing the need for quick patching with the risk of disrupting business operations requires careful judgment.

What is the difference between Vulnerability vs Penetration Tester?

AspectVulnerabilityPenetration Tester
Primary FocusIdentifying security weaknesses and vulnerabilities in systemsSimulating cyberattacks to exploit vulnerabilities and test defenses
CertificationsCompTIA Security+, CEH, OSCP (for some roles)OSCP, CEH, GPEN, CISSP (often overlapping)
Work EnvironmentSecurity analysis, vulnerability scanning, reportingActive testing, exploitation, reporting
Industry UsageSecurity assessment, risk managementSecurity testing, red teaming

Vulnerability specialists focus on identifying weaknesses in systems, while penetration testers actively exploit those vulnerabilities to assess security effectiveness. Both roles require similar certifications and work in cybersecurity, but their methods and objectives differ: vulnerability analysts aim to find issues, whereas penetration testers simulate attacks to evaluate defenses.

What are the key skills and qualifications needed to thrive as a vulnerability analyst?

To thrive as a Vulnerability Analyst, you need a solid understanding of network security, operating systems, and vulnerability assessment methodologies, typically supported by a degree in cybersecurity or IT and relevant certifications like CompTIA Security+ or CEH. Familiarity with tools such as Nessus, OpenVAS, Metasploit, and vulnerability management platforms is essential. Strong analytical thinking, attention to detail, and effective communication help in identifying risks and explaining findings to diverse stakeholders. These skills ensure timely detection and remediation of security weaknesses, protecting organizations from cyber threats.

Is vulnerability management a good career?

Vulnerability management is a valuable cybersecurity role focused on identifying and mitigating security weaknesses in systems. It requires skills in security tools, risk assessment, and often certifications like CISSP or CompTIA Security+; the field offers steady demand and opportunities for advancement. Overall, it is considered a good career for those interested in cybersecurity and protecting digital assets.

What is a vulnerability analyst?

Vulnerability analysts are cybersecurity professionals who identify, assess, and help remediate security weaknesses in computer systems, networks, and software. They use various tools and techniques to scan for vulnerabilities, analyze threats, and recommend solutions to mitigate risks. Their work is crucial in preventing cyberattacks and ensuring the security of organizational assets. Vulnerability analysts often collaborate with IT and security teams to prioritize and address vulnerabilities based on their potential impact.
What are the most commonly searched types of Vulnerability jobs in Utah? The most popular types of Vulnerability jobs in Utah are:
What job categories do people searching Vulnerability jobs in Utah look for? The top searched job categories for Vulnerability jobs in Utah are:
Infographic showing various Vulnerability job openings in Utah as of August 2026, with employment types broken down into 89% Full Time, 3% Part Time, and 8% Contract. Highlights an 82% Physical, 6% Hybrid, and 12% Remote job distribution, with an average salary of $98,231 per year, or $47.2 per hour.

Sr. Manager, IT Security Operations

swirecc

Draper, UT

Other

Re-posted 3 days ago


Job description

What does a Sr. Manager of IT Security Operations do at Swire Coca - Cola?
Swire Coca-Cola is seeking a Sr. Manager, IT Security - Operations to lead and mature the organization's security operations capabilities. This role is responsible for overseeing the detection, response, and remediation of cybersecurity threats while ensuring the stability and continuous improvement of core security services. The Sr. Manager will lead Security Operations, Incident Response, Vulnerability Management, Identity & Access Management and Monitoring functions, ensuring the organization can effectively identify and respond to evolving threats. This role partners closely with Security Architecture, GRC, IT Infrastructure, and business teams to ensure operational security controls are aligned with enterprise risk priorities. This position requires a strong leader with deep technical expertise, operational discipline, and the ability to translate complex security events into clear business impact for leadership. The ideal candidate will bring a balance of hands-on operational experience and strategic leadership to drive continuous improvement across the cybersecurity program.
Responsibilities

  • Lead and oversee Security Operations (SOC) activities, including monitoring, detection, and alert triage
  • Ensure effective operation of security tools such as SIEM, EDR, NDR, and related monitoring platforms
  • Continuously improve detection capabilities through tuning, use case development, and threat intelligence integration
  • Establish and maintain operational runbooks and standard operating procedures
  • Lead incident response activities, including investigation, containment, eradication, and recovery
  • Ensure incident response processes are well-defined, tested, and continuously improved
  • Oversee root cause analysis and post-incident reviews to strengthen controls
  • Coordinate with legal, communications, and leadership during high-impact incidents
  • Lead the vulnerability management program, including scanning, prioritization, and remediation tracking
  • Partner with IT and application teams to reduce exposure and improve patching effectiveness
  • Lead the design and continuous improvement of IAM capabilities, including identity lifecycle management (Joiner/Mover/Leaver), authentication, and authorization aligned with least privilege principles
  • Lead, mentor, and develop cybersecurity operations team members
  • Oversee the implementation, integration, and optimization of security technologies
  • Ensure security tools are configured, maintained, and delivering value
  • Partner with Security Architecture on tool selection and roadmap planning
  • Drive automation and efficiency within security operations workflows
  • Track and report on vulnerability trends and remediation metrics
  • Implement and manage access control models (RBAC/ABAC), MFA, conditional access, and privileged access management (PAM) to secure enterprise identities
  • Oversee identity governance processes, including access reviews, certifications, role design, and segregation of duties (SoD) controls
  • Partner with cross-functional teams to integrate IAM solutions, drive automation, and report on key metrics such as provisioning timelines, access risks, and compliance status
  • Develop and deliver operational metrics, dashboards, and reporting for leadership
  • Track KPIs such as detection time, response time, and remediation timelines
  • Provide clear, actionable reporting on threats, incidents, and operational risk posture
  • Drive continuous improvement initiatives across operational processes
  • Establish risk-based prioritization aligned to business impact and threat intelligence
  • Partner with GRC, Security Architecture, IT, and business stakeholders
  • Support cross-functional incident response coordination and tabletop exercises
  • Foster a culture of accountability, continuous learning, and operational excellence


Requirements

  • Bachelor’s Degree in Cybersecurity, Information Technology, Computer Science, or related field required
  • Certifications such as CISSP, CISM, or GIAC preferred
  • 8+ years of cybersecurity experience, focused on operations, incident response, or threat management required
  • 3+ years of leadership experience managing security teams or programs required
  • Strong experience with SIEM, EDR, vulnerability management, and detection tools required
  • Experience leading vulnerability management and remediation programs required
  • Experience developing metrics, dashboards, and executive reporting required
  • Deep understanding of incident response methodologies and frameworks
  • Strong analytical and problem-solving skills
  • Excellent communication skills translating technical issues into business impact

#LI-HH1