1

Vulnerability Jobs in Utah (NOW HIRING)

Execute day-to-day vulnerability management processes, including identification and tracking of risks * Partner with infrastructure and application teams to drive timely remediation of ...

Conducts regular vulnerability scans across on-premises and cloud environments while prioritizing risks based on severity, exploitability, and business impact. Coordinates remediation with internal ...

Vulnerability Management: Architect and manage the deployment of vulnerability scanning tools, driving the remediation process to ensure rapid resolution of identified issues. * Policy Stewardship ...

CSPM, SIEM, vulnerability management, network security, ZTNA, DLP, EDR, and endpoint management * Drive the vulnerability management lifecycle end to end: scan cadence, prioritization, remediation ...

Cyber Defense Analyst

Clearfield, UT · On-site

$101K - $121K/yr

Coordinate with the ISSM to conduct vulnerability scans, risk assessments, and compliance reviews * Maintain and audit system access documentation to enforce authorization procedures and least ...

Dark Wolf is looking for a Penetration Tester who will plan and perform continuous cross-domain vulnerability assessments, full-scale penetration testing and red team operations. The ideal candidate ...

Cyber Defense Analyst

Clearfield, UT · On-site

$101K - $121K/yr

Coordinate with the ISSM to conduct vulnerability scans, risk assessments, and compliance reviews * Maintain and audit system access documentation to enforce authorization procedures and least ...

Contributes to foundational security operations which includes vulnerability management and assisting with incident response efforts. Responsibilities: * Embeds and enforces security throughout the ...

Contributes to foundational security operations which includes vulnerability management and assisting with incident response efforts. Responsibilities: * Embeds and enforces security throughout the ...

Cyber Defense Analyst

Clearfield, UT · On-site

$101K - $121K/yr

Coordinate with the ISSM to conduct vulnerability scans, risk assessments, and compliance reviews * Maintain and audit system access documentation to enforce authorization procedures and least ...

Security Operations Engineer

Lehi, UT · On-site

$120K - $180K/yr

Own the Vulnerability & Asset Lifecycle: Drive risk-based remediation across cloud, container, and endpoint environments. You will shift the needle from volume-based reporting to exploitability-led ...

Director of Cyber Security

Draper, UT · On-site

$200K - $250K/yr

Manage enterprise vulnerability and exposure management programs, including prioritization, remediation tracking, and risk reporting. * Provide leadership for security architecture and engineering to ...

Showing results 41-60

Vulnerability information

See Utah salary details

$34.1K

$98.2K

$130.2K

How much do vulnerability jobs pay per year?

As of Aug 7, 2026, the average yearly pay for vulnerability in Utah is $98,231.00, according to ZipRecruiter salary data. Most workers in this role earn between $85,600.00 and $107,000.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals working in vulnerability management roles?

Professionals in vulnerability management often face the challenge of keeping up with constantly evolving threats and newly discovered vulnerabilities. Prioritizing which vulnerabilities to address first, especially in large environments with thousands of potential risks, can be demanding. Collaborating with IT, development, and security teams to ensure timely remediation and maintaining clear communication about risk levels are also essential parts of the role. Additionally, balancing the need for quick patching with the risk of disrupting business operations requires careful judgment.

What is the difference between Vulnerability vs Penetration Tester?

AspectVulnerabilityPenetration Tester
Primary FocusIdentifying security weaknesses and vulnerabilities in systemsSimulating cyberattacks to exploit vulnerabilities and test defenses
CertificationsCompTIA Security+, CEH, OSCP (for some roles)OSCP, CEH, GPEN, CISSP (often overlapping)
Work EnvironmentSecurity analysis, vulnerability scanning, reportingActive testing, exploitation, reporting
Industry UsageSecurity assessment, risk managementSecurity testing, red teaming

Vulnerability specialists focus on identifying weaknesses in systems, while penetration testers actively exploit those vulnerabilities to assess security effectiveness. Both roles require similar certifications and work in cybersecurity, but their methods and objectives differ: vulnerability analysts aim to find issues, whereas penetration testers simulate attacks to evaluate defenses.

What are the key skills and qualifications needed to thrive as a vulnerability analyst?

To thrive as a Vulnerability Analyst, you need a solid understanding of network security, operating systems, and vulnerability assessment methodologies, typically supported by a degree in cybersecurity or IT and relevant certifications like CompTIA Security+ or CEH. Familiarity with tools such as Nessus, OpenVAS, Metasploit, and vulnerability management platforms is essential. Strong analytical thinking, attention to detail, and effective communication help in identifying risks and explaining findings to diverse stakeholders. These skills ensure timely detection and remediation of security weaknesses, protecting organizations from cyber threats.

Is vulnerability management a good career?

Vulnerability management is a valuable cybersecurity role focused on identifying and mitigating security weaknesses in systems. It requires skills in security tools, risk assessment, and often certifications like CISSP or CompTIA Security+; the field offers steady demand and opportunities for advancement. Overall, it is considered a good career for those interested in cybersecurity and protecting digital assets.

What is a vulnerability analyst?

Vulnerability analysts are cybersecurity professionals who identify, assess, and help remediate security weaknesses in computer systems, networks, and software. They use various tools and techniques to scan for vulnerabilities, analyze threats, and recommend solutions to mitigate risks. Their work is crucial in preventing cyberattacks and ensuring the security of organizational assets. Vulnerability analysts often collaborate with IT and security teams to prioritize and address vulnerabilities based on their potential impact.
What are the most commonly searched types of Vulnerability jobs in Utah? The most popular types of Vulnerability jobs in Utah are:
What job categories do people searching Vulnerability jobs in Utah look for? The top searched job categories for Vulnerability jobs in Utah are:
Infographic showing various Vulnerability job openings in Utah as of August 2026, with employment types broken down into 89% Full Time, 3% Part Time, and 8% Contract. Highlights an 82% Physical, 6% Hybrid, and 12% Remote job distribution, with an average salary of $98,231 per year, or $47.2 per hour.

IT Security Engineer

KēSTA I.T.

Draper, UT

$83K - $114K/yr

Full-time

Posted 23 days ago


Job description

Come build, innovate, disrupt, and thrive!


KēSTA I.T. is actively seeking an IT Security Engineer for an immediate full-time opportunity with our industry leading client.


Are you on the lookout for a unique career opportunity that offers leadership, responsibility, and the chance to make a significant impact? If you're eager to contribute to a thriving and stable organization while maintaining your confidentiality, continue reading.



An IT Security Engineer is responsible for monitoring, investigating, and responding to security alerts escalated from a 24/7 Security Operations Center (SOC), while supporting day-to-day security operations and continuous improvement initiatives. This role partners closely with internal IT and security teams to maintain and enhance the organization’s overall security posture.


The position blends hands-on incident response, vulnerability management, and security tooling administration with a proactive approach to improving detection, response, and operational efficiency.


Responsibilities

  • Investigate, validate, and respond to security alerts and incidents escalated from a 24/7 SOC
  • Perform event triage, root cause analysis, and containment actions in collaboration with internal teams
  • Document incidents, investigations, and response activities in accordance with established procedures
  • Participate in incident response exercises, post-incident reviews, and lessons learned activities
  • Execute day-to-day vulnerability management processes, including identification and tracking of risks
  • Partner with infrastructure and application teams to drive timely remediation of vulnerabilities
  • Support the operation, maintenance, and optimization of security platforms, systems, and services
  • Administer and maintain security tools such as endpoint protection platforms (AV, EDR, XDR) and vulnerability scanning solutions
  • Tune detection rules, alerts, and operational policies to improve accuracy and reduce false positives
  • Contribute to security improvement initiatives aligned with organizational risk priorities
  • Assist in developing and enhancing SOC processes, playbooks, and runbooks
  • Identify opportunities to automate repetitive tasks and improve operational efficiency
  • Support audits, assessments, and compliance activities by producing evidence and assisting with remediation efforts
  • Ensure security operations align with internal policies and external regulatory requirements
  • Stay current on emerging threats, vulnerabilities, and industry best practices
  • Apply threat intelligence to enhance detection and response capabilities


Requirements

  • Bachelor’s degree in Computer Science, Engineering, Cybersecurity, or a related field preferred
  • 3+ years of experience in cybersecurity operations or a related technical role
  • Relevant certifications such as CompTIA Security+, CySA+, SecurityX, or similar required


Preferred Qualifications:

  • GIAC certifications (e.g., GCIH, GCED, GCIA)
  • Experience working with SIEM platforms and alert triage workflows
  • Experience supporting enterprise environments (on-premises and cloud)
  • Prior experience working in or alongside a 24/7 SOC environment


Technical Skills:

  • Hands-on experience supporting vulnerability management programs
  • Experience with endpoint security tools (e.g., AV, EDR, XDR platforms)
  • Understanding of common attack techniques, threat actors, and incident response methodologies
  • Familiarity with ticketing systems and ITSM processes


Core Skills:

  • Strong documentation skills with the ability to clearly communicate findings and recommendations
  • Analytical and problem-solving mindset
  • Ability to balance reactive incident response with proactive security improvements



About KēSTA I.T.:


Our name says it all; KēSTA I.T. (Keys-to-I.T.) AND our people are our keys to our success!


KēSTA I.T. is a premier Utah-based technical staffing and consulting services firm. We specialize in temporary and permanent placement of Software, Hardware, Network, Cloud, CRM/ERP, Data, End-User support, Web and Executive / leadership-based positions on a full time and consulting basis. If you're interested in a role where top performance is rewarded, personal time is valued, and excellence is demanded at every level we want to talk to you today!


Where do you want to go? We've got the keys! ~ KēSTA I.T.


WWW.KeSTAIT.COM