Information security analyst jobs in Lehi, UT - 86 jobs
All
Information Security Analyst
Senior Security Engineer
Senior Security Analyst
Information Security Engineer
Network Security Analyst
Data Security Analyst
Information Technology Analyst
Senior Information Security Engineer
Security Architect
Jr. Information Security Analyst (Information Security Analyst I)
Lightspeed DMS
Information security analyst job in South Jordan, UT
Lightspeed is a leading provider of cloud-based software for dealerships and Original Equipment Manufacturers (OEMs), serving the Powersport, Marine, RV, Trailer, Outdoor Power Equipment, and Golf Cart industries. Lightspeed's Dealer Management Solution (DMS) enables dealerships to optimize their end-to-end business operations, including sales, parts, service, rentals, accounting, and Customer Relationship Management (CRM). When implemented into their daily operations, Lightspeed helps dealers increase their profitability by selling more units, service, and parts, all while creating a more streamlined experience for customers. For nearly 40 years, Lightspeed has been empowering 4,500+ dealers across North America with the tools and technology they need to manage their dealerships.
The Jr. InformationSecurityAnalyst I supports Lightspeed's cybersecurity operations by assisting with monitoring, analysis, and remediation of security incidents across enterprise systems and cloud environments. Working under the direction of senior analysts, this role helps ensure the confidentiality, integrity, and availability of company data while gaining experience in security tools, processes, and governance activities. The ideal candidate is detail-oriented, eager to learn, and passionate about developing technical and compliance skills in a collaborative environment.
What you'll do:
Monitor and investigate security alerts and events across SIEM, EDR, and network systems.
Assist in the investigation of potential security incidents under senior analyst guidance.
Help maintain documentation of incidents, findings, and remediation steps.
Perform vulnerability scanning and tracking remediation efforts.
Support maintenance of security tools and platforms (endpoint protection, SIEM, firewalls).
Assist with compliance tasks related to SOC 2, internal audits, and risk assessments.
Assist with gathering security metrics and reports on a monthly basis.
Contribute to updating security policies, standards, and procedures.
Perform third-party vendor security reviews and due diligence processes.
Assist in security awareness initiatives and internal training activities.
Collaborate with IT and engineering teams to ensure secure configurations and patch compliance.
Assist in the creation of automation scripts and the integration of AI with security workflows.
What you should have:
Qualifications:
Bachelor's degree in Cybersecurity, Information Technology, or a related field, or equivalent experience.
0-3 years of experience in informationsecurity, IT operations, or related technical roles.
Foundational knowledge of networking, operating systems, and cloud environments (AWS, Azure).
Strong experience securing and monitoring cloud environments (AWS, Azure).
Exposure to SIEM or EDR tools such as Splunk, Sentinel, or Defender.
Understanding of basic security concepts (vulnerabilities, exploits, least privilege, encryption).
Excellent analytical, problem-solving, and communication skills.
Knowledge of security frameworks such as NIST CSF and SOC 2.
Ability to work collaboratively in a team-oriented environment.
Preferred Qualifications:
CompTIA Security+, CySA+, or equivalent entry-level certification.
Experience with vulnerability scanners (Qualys, Nessus, or Rapid7).
Exposure to GRC or vendor risk management tools.
Exposure to SIEM platforms, Elastic, Splunk, Security Onion.
Familiarity with scripting or automation (PowerShell, Python).
Demonstrated interest in pursuing a long-term career in cybersecurity operations or compliance.
Inclusion and Diversity at Lightspeed:
At Lightspeed, we celebrate the uniqueness of every individual and encourage diverse perspectives. We believe that inclusion drives innovation and fosters meaningful connections. We are committed to building an environment where everyone feels valued and empowered to make an impact.
Equal Employment Opportunity Statement:
Lightspeed is an Equal Opportunity Employer and is dedicated to building a diverse and inclusive workforce. All qualified applicants will be considered for employment without regard to race, color, creed, ancestry, national origin, gender, sexual orientation, gender identity, gender expression, marital status, religion, age, disability, veteran status, or any other protected category.
Important Note:
Applicants must be authorized to work in the U.S.
Ready to apply?
Take the next step in your career-apply today and join a team where your skills will make an impact!
$69k-101k yearly est. Auto-Apply 10d ago
Looking for a job?
Let Zippia find it for you.
Sr. Security Analyst
Maximus 4.3
Information security analyst job in Salt Lake City, UT
Description & Requirements Maximus is seeking a qualified Sr. Technical/SecurityAnalyst for multiple projects, current and upcoming. The qualified candidate will be involved in technical/security planning and assessment projects with potentially multiple state agencies. The position requires the candidate to produce/review security relevant documentation, such as system security plans, POA&Ms, assessment plans, etc., produce technical/security analyses, develop estimates, review and contribute to requirements for large systems-planning efforts in the Child Support, Child Welfare and/or Integrated Eligibility public-sector domains. The individual will report directly to a Senior Manager. Maximus is a matrix-managed organization, which means the individual will have secondary reporting relationships to one or more Project Managers, depending on which projects they are assigned.
*This role is remote but requires working standard business hours in the US time zone of the client. This position is contingent upon award. *
Essential Duties and Responsibilities:
- Collaborate with project managers on various initiatives and projects to track progress and provide support as necessary.
- Support leadership in ensuring that the project is delivered to specifications, is on time, and within budget.
- Work closely with management and work groups to create and maintain work plan documents.
- Track the status and due dates of projects.
- Manage relationships with project staff responsible for projects.
- Produce regular weekly and monthly status reports that could include; work plan status, target dates, budget, resource capacity, and other reports as needed.
- Facilitate regular meetings and reviews.
- Adhere to contract requirements and comply with all corporate policies and procedures.
Job Specific Duties and Responsibilities:
-Perform duties independently under the direction of their direct manager and/or Project Managers on specific projects.
-Review project documentation and client materials and provide analysis of technical and security related topics.
-Participate in client meetings and offer observations and insight on technical and security related topics.
-Identify risk areas and potential problems that require proactive attention.
-Review and author artifacts and other project documents and identify potential gaps, inconsistencies, or other issues that may put the project at risk. Such artifacts and documents may include but are not limited to:
*System Security Plan
*Plan of Action and Milestones (POA&M)
*Security Assessment Plan
*Risk Assessment reports
*CMS ARC-AMPE forms and documentation
*Data Conversion and Migration Management Plan
*Deployment and/or roll-out plans
-Perform security assessments, lead security audit and assessment activities, and provide direct security oversight support to assigned clients and projects.
-Identify and escalate to the Senior Manager / Project Manager risks, alternatives, and potential quality issues.
-Attend interviews, focus groups, or other meetings necessary to gather information for project deliverables in accordance with the project scope of work.
-Attend project meetings with the client, subcontractors, project stakeholders, or other Maximus Team members, as requested by the Senior Manager / Project Manager.
-Complete project work in compliance with Maximus standards and procedures.
-Support team to complete assigned responsibilities as outlined in the Project schedule.
-Support all other tasks assigned by Senior Manager / Project Manager.
Minimum Requirements
- Bachelor's degree in related field.
- 7-10 years of relevant professional experience required.
- Equivalent combination of education and experience considered in lieu of degree.
Job Specific Requirements:
-Be available to work during standard client business hours. Projects may involve clients from any US time zone, so it is possible that work outside of the individual's local business hours will be required.
-Bachelor's degree from an accredited college or university, or equivalent work experience.
-7+ years of experience in informationsecurity, with at least 3 years of security-compliance work in a regulated industry.
-5+ years of experience working with HIPAA, NIST 800-53 and/or CMS MARS-E or ARC-AMPE security frameworks.
-Familiar with operating systems: Windows, Linux/UNIX, OS/X.
-Familiar with AI tools, capabilities.
-Strong command of cloud computing topics.
-Strong command of agile software development practices as well as waterfall development practices.
-Strong desktop software skills: proficient in MS Office, Excel, Word, Project.
-Ability to explain and communicate technical subjects to non-technical audiences.
-Ability to develop advanced concepts, techniques, and standards requiring a high level of interpersonal and technical skills.
-Ability to work independently.
-Good organizational skills and the ability to manage multiple tasks and deadlines simultaneously.
-Strong interpersonal and team building skills, as well as an understanding of client relationship building are essential.
-Excellent verbal and writing skills and be comfortable working with customers.
-Ability to multi-task with supervision.
-Self-motivated fast learner.
Preferred Skills:
-Prefer a candidate with experience in the Health & Human Services industry, which may include working with programs such as Child Support, Child Welfare, or Integrated Eligibility (SNAP, TANF, and Medicaid).
-Preference for security related certifications, such as the CISSP (Certified Information Systems Security Professional).
EEO Statement
Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics.
Pay Transparency
Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances.
Accommodations
Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at **************************.
Minimum Salary
$
120,000.00
Maximum Salary
$
140,000.00
$98k-134k yearly est. Easy Apply 5d ago
Data Security Analyst - C78843 7.5 Salt Lake City, Utah
CapB Infotek
Information security analyst job in Salt Lake City, UT
We are looking for a Data SecurityAnalyst for our long-term multiyear project out of Salt Lake City, Utah. Build software libraries and services to provide secure-by-default services to software engineering teams, including authentication systems, secure service architectures, endpoint control solutions, and cloud controls
· Partner with colleagues from across engineering and risk to ensure an outstanding developer experience that satisfies the firm's security needs
· Collaborate on feature design and problem solving
· Help to provide frictionless integration with the firm's runtime, deployment and SDLC technologies
· Manage the full lifecycle of software components, from requirements through design, testing, development, release and demise
· Help to communicate and promote best practices for security engineering across the firm
· Engage in production troubleshooting
Basic Qualifications
· A strong grounding in security concepts, including secure coding practices, trusted computing and principles of authentication and authorization
· A good understanding of public key and symmetric key cryptography
· The ability to reason about performance, security, and process interactions in complex distributed systems
· Proficiency in designing, developing and testing cross-platform software in one or more of Java, Golang or C#; open to using multiple languages
· Experience developing, deploying and supporting software across the full Continuous Delivery life-cycle
· The ability to understand and effectively debug both new and existing software
· Experience meeting demands for high availability, low latency and scale
· The ability to communicate technical concepts effectively, both in writing and orally, as well as the interpersonal skills required to collaborate effectively with colleagues across diverse engineering teams
Preferred Qualifications
· An understanding of regulated environments, e.g. financial services
· Experience building services using public cloud providers such as AWS, Azure or GCP
· Experience with threat modeling and risk assessment
· Experience of practical security engineering in a Linux and/or Windows environment
· Familiarity with service mesh concepts and service-oriented architectures
· Familiarity with data protection principles and solutions
· Experience with deploying software to containerized environments - Kubernetes/Docker
· Experience monitoring, measuring, auditing and supporting software
· Scripting skills using Python, PowerShell or bash
· Experience with Terraform or similar infrastructure-as-code platforms, as a user and/or as a service provider
$69k-98k yearly est. 60d+ ago
Information Security Analysts
University of Utah 4.0
Information security analyst job in Salt Lake City, UT
Bookmark this Posting Print Preview | Apply for this Job Please see Special Instructions for more details. About UIT: University Information Technology (UIT), the central IT service provider for the University of Utah, reports to the U's Chief Information Officer and is responsible for many of the U's shared IT services including the wired and wireless network; Campus Information Services (CIS) portal; UMail, telephone, and online collaboration; digital learning technologies; informationsecurity; software licensing; and a host of other IT systems and services.
About the University of Utah: Located in Salt Lake City, the U is the flagship institution of the State of Utah's system of higher education, home to arts and museum venues and a member of the BIG-12 Conference. Skiing and snowboarding opportunities are a short distance from campus, and opportunities to pursue activities from biking to hiking to fishing abound. Salt Lake City is home to the Utah Symphony and Opera, Ballet West, professional sports teams, and a wide range of other cultural and recreational activities.
The University of Utah offers a comprehensive benefits package for eligible employees including:
* Excellent health, dental, and wellness coverage at affordable rates
* 14.2% retirement contributions
* Generous paid leave time
* 11 paid holidays per year
* 50% tuition reduction for employees after completing probationary period, and spouse, and dependent children after three years
* Flex spending accounts
* Free transit on most UTA services
* Employee discounts on a variety of products and services including cell phones & plans, entertainment, health and fitness, restaurants, retail, and travel
* Professional development opportunities
* A wellness program to promote health and quality of life
* Learn more about the great benefits of working for University of Utah: benefits.utah.edu
For more information regarding how our salary and benefit offerings impact the overall compensation here at the University of Utah, please see our Total Compensation Calculator: ******************************************
Announcement
Details
Open Date 12/15/2025 Requisition Number PRN43780B Job Title InformationSecurityAnalysts Working Title InformationSecurityAnalysts Career Progression Track P00 Track Level P5 - Expert, P4 - Advanced, P3 - Career FLSA Code Computer Employee Patient Sensitive Job Code? No Standard Hours per Week 40 Full Time or Part Time? Full Time Shift Day Work Schedule Summary
Monday - Friday, 8:00 AM - 5:00 PM. Some nights or weekends are possible based on a rotating on call shift. This is a hybrid position.
VP Area President Department 00954 - UIT Systems & Security Location Campus City Salt Lake City, UT Type of Recruitment External Posting Pay Rate Range $88,000 - $131,300 Close Date 02/28/2026 Priority Review Date (Note - Posting may close at any time) Job Summary
InformationSecurityAnalysts
The incumbent will play a critical role in safeguarding regulated data across the enterprise by monitoring and analyzing the organization's data security posture. This position focuses on configuring Data Security Posture Management (DSPM) settings and policies, interpreting results, creating reports, identifying risks, and ensuring compliance. The analyst will take a risk-based approach to assess and remediate issues related to unauthorized storage or transmission of regulated data across cloud and on-premise environments.
Learn more about the great benefits of working for University of Utah: benefits.utah.edu
The department may choose to hire at any of the below job levels and associated pay rates based on their business need and budget.
Responsibilities
Data Security Monitoring
* Review and analyze DSPM tool outputs to identify misconfigurations, unauthorized data flows, and storage of regulated data in non-approved locations.
* Monitor the movement of sensitive data across cloud and on-prem systems, ensuring compliance with internal policies and regulatory requirements.
Risk Assessment & Governance
* Apply a risk-based methodology to prioritize remediation efforts.
* Maintain applicable risk register entries and document findings for governance reporting.
Collaboration
* Partner with the Enterprise Security team to validate technical controls.
* Work closely with the Chief Data Officer and Privacy Office to align DSPM findings with data governance and privacy requirements.
Compliance & Policy Alignment
* Ensure adherence to frameworks such as NIST CSF, CIS 18, and other applicable regulations (e.g., HIPAA, FERPA, etc. etc.).
* Support audits and compliance reviews by providing DSPM-related evidence.
Reporting & Communication
* Prepare dashboards and reports for leadership summarizing DSPM findings, trends, and risk posture.
* Communicate actionable insights to stakeholders in clear, business-focused language.
Minimum Qualifications
EQUIVALENCY STATEMENT: 1 year of higher education can be substituted for 1 year of directly related work experience (Example: bachelor's degree = 4 years of directly related work experience).
Department may hire employee at one of the following job levels:
InformationSecurityAnalyst, III: Requires a bachelor's (or equivalency) + 6 years or a master's (or equivalency) + 4 years of directly related work experience.
InformationSecurityAnalyst, IV: Requires a bachelor's (or equivalency) + 8 years or a master's (or equivalency) + 6 years of directly related work experience.
InformationSecurityAnalyst, V: Requires a bachelor's (or equivalency) + 10 years or a master's (or equivalency) + 8 years of directly related work experience.
Preferences
Certifications such as CISSP, CRISC, or equivalent.
Master's degree in informationsecurity or another relevant field.
Experience with a DSPM tool.
3+ years that are specifically tied to GRC experience.
Type Benefited Staff Special Instructions Summary
About UIT: University Information Technology (UIT), the central IT service provider for the University of Utah, reports to the U's Chief Information Officer and is responsible for many of the U's shared IT services including the wired and wireless network; Campus Information Services (CIS) portal; UMail, telephone, and online collaboration; digital learning technologies; informationsecurity; software licensing; and a host of other IT systems and services.
About the University of Utah: Located in Salt Lake City, the U is the flagship institution of the State of Utah's system of higher education, home to arts and museum venues and a member of the BIG-12 Conference. Skiing and snowboarding opportunities are a short distance from campus, and opportunities to pursue activities from biking to hiking to fishing abound. Salt Lake City is home to the Utah Symphony and Opera, Ballet West, professional sports teams, and a wide range of other cultural and recreational activities.
The University of Utah offers a comprehensive benefits package for eligible employees including:
* Excellent health, dental, and wellness coverage at affordable rates
* 14.2% retirement contributions
* Generous paid leave time
* 11 paid holidays per year
* 50% tuition reduction for employees after completing probationary period, and spouse, and dependent children after three years
* Flex spending accounts
* Free transit on most UTA services
* Employee discounts on a variety of products and services including cell phones & plans, entertainment, health and fitness, restaurants, retail, and travel
* Professional development opportunities
* A wellness program to promote health and quality of life
* Learn more about the great benefits of working for University of Utah: benefits.utah.edu
For more information regarding how our salary and benefit offerings impact the overall compensation here at the University of Utah, please see our Total Compensation Calculator: ******************************************
Additional Information
The University of Utah values candidates who have experience working in settings with students from diverse backgrounds and possess a strong commitment to improving access to higher education for historically underrepresented students.
Individuals from historically underrepresented groups, such as minorities, women, qualified persons with disabilities and protected veterans are encouraged to apply. Veterans' preference is extended to qualified applicants, upon request and consistent with University policy and Utah state law. Upon request, reasonable accommodations in the application process will be provided to individuals with disabilities.
The University of Utah is an Affirmative Action/Equal Opportunity employer and does not discriminate based upon race, ethnicity, color, religion, national origin, age, disability, sex, sexual orientation, gender, gender identity, gender expression, pregnancy, pregnancy-related conditions, genetic information, or protected veteran's status. The University does not discriminate on the basis of sex in the education program or activity that it operates, as required by Title IX and 34 CFR part 106. The requirement not to discriminate in education programs or activities extends to admission and employment. Inquiries about the application of Title IX and its regulations may be referred to the Title IX Coordinator, to the Department of Education, Office for Civil Rights, or both.
To request a reasonable accommodation for a disability or if you or someone you know has experienced discrimination or sexual misconduct including sexual harassment, you may contact the Director/Title IX Coordinator in the Office of Equal Opportunity and Affirmative Action:
Director/ Title IX Coordinator
Office of Equal Opportunity and Affirmative Action (OEO/AA)
383 University Street, Level 1 OEO Suite
Salt Lake City, UT 84112
************
************
Online reports may be submitted at oeo.utah.edu
For more information: ***************************************
To inquire about this posting, email: ******************* or call ************.
The University is a participating employer with Utah Retirement Systems ("URS"). Eligible new hires with prior URS service, may elect to enroll in URS if they make the election before they become eligible for retirement (usually the first day of work). Contact Human Resources at ************** for information. Individuals who previously retired and are receiving monthly retirement benefits from URS are subject to URS' post-retirement rules and restrictions. Please contact Utah Retirement Systems at ************** or ************** or University Human Resource Management at ************** if you have questions regarding the post-retirement rules.
This position may require the successful completion of a criminal background check and/or drug screen.
************************************ This report includes statistics about criminal offenses, hate crimes, arrests and referrals for disciplinary action, and Violence Against Women Act offenses. They also provide information about safety and security-related services offered by the University of Utah. A paper copy can be obtained by request at the Department of Public Safety located at 1658 East 500 South.
Posting Specific Questions
Required fields are indicated with an asterisk (*).
* * What is your highest level of completed education?
* None
* High School Diploma or Equivalent
* Associate Degree
* Bachelor's Degree
* Master's Degree
* Doctorate Degree
* * How many years of related work experience do you have?
* Less than 6 years
* 6 years or more, but less than 9 years
* 9 years or more, but less than 12 years
* 12 years or more, but less than 15 years
* 15 years or more
Applicant Documents
Required Documents
* Resume
* Cover Letter
* List of References
Optional Documents
$88k-131.3k yearly Auto-Apply 33d ago
Network Security Analyst
Mindlance 4.6
Information security analyst job in Lehi, UT
Mindlance is a national recruiting company which partners with many of the leading employers in the Life Sciences, IT, and Financial Services sectors, feel free to check us out at ************************* Job Description Job Title: Network SecurityAnalyst
Duration: 6 Months
Location: Lehi, UT
Required:
• Minimum 3+ years exp.
• Experience with implementing policy on firewalls (Juniper & Palo alto experience preferred)
• Review requests for new firewall policy
• Understanding of IP stack
• Ability to prioritize work and meet defined SLAs
• Good communication skills - both verbal and written
Additional Information
Thanks & Regards,
______________________________________________________________________________________________________
Vikram Bhalla | Team-Recruitment | Mindlance, Inc. | Office: **************
$75k-95k yearly est. 1d ago
Senior Information Security Engineer
Utah County, Ut 4.2
Information security analyst job in Provo, UT
UTAH COUNTY OFFICE OF HUMAN RESOURCE MANAGEMENT 100 East Center, Suite 3800, Provo, UT 84606 Phone: ************** Fax: ************** Email: ***************************** ************************* "The Value of Public Service Employment is vital to the success of our state, county, and local communities."
Utah County Government Employees start every day with the well-being of the entire community in mind:
How can I make my community a better place?
Who will need my help and protection?
How will I make a difference for someone?
We hire smart, compassionate, loyal, ethical, committed, innovative people.
Apply today and join our Team.
JOB ANNOUNCEMENT
The Information Systems department provides technology support to all Utah County government agencies. This support includes acquisition, deployment and management of computer-based workstations, software applications, local and wide-area network infrastructure, security, and information use policy.
Posting Date: January 8, 2026 Closing Date: January 22, 2026
POSITION: Senior InformationSecurity Engineer POSTING #: 2903-0126sr
This IS NOT a remote position and requires on-site presence at our physical office location during regular business hours.
The Opportunity:
Under general supervision of the Division Manager - InformationSecurity, responsible for the design, development, implementation, monitoring, and maintenance of Utah County's informationsecurity programs. Protects the confidentiality, integrity, and availability of Utah County's Information Technology (IT) systems, networks, applications, and data. Assists with the creation of a comprehensive informationsecurity strategy, ensuring compliance with regulatory frameworks and best practices while mitigating security risks to County resources and infrastructure.
Starting Pay: Grade 731 $104,145.60 - $119,724.80 Annually
Schedule: 8 a.m. - 5 p.m. Monday thru Frida
Job Qualifications:
1. Bachelor's degree from an accredited college or university in informationsecurity or a closely related field.
2. Four (4) years of hands-on experience in informationsecurity, including roles focused on network security, application security, and incident response.
3. Equivalent combinations of education, experience, and demonstrated work competence may also be considered.
Preferred Candidates will possess some of the below attributes:
1. Preference may be given to applicants with lead or supervisory experience.
2. Preference may be given to applicants with certifications such as Certified Information Systems Security Professional (CISSP) and/or Certified InformationSecurity Manager (CISM).
3. Preference may be given to applicants with experience in implementation of the NIST Cyber Security Framework (NIST CSF).
4. Preference may be given to applicants with a master's degree in informationsecurity or a closely related field.
Additional Eligibility Qualifications:
1. Applicants must possess a valid driver's license and obtain a valid State of Utah driver's license
within sixty (60) days of employment.
2. Selected applicants will be required to submit to a pre-employment drug screen and background check. Due to potential access to sensitive protected data, this position is subject to additional criminal background checks as directed by the Information Systems Department.
Click here for a full job description **********************************************************************************************
Benefits Package Includes:
100% paid premiums for health insurance
Up to 6.2% match in your 401(k)
Utah Retirement Systems (Pension and 401(k) options)
Pre-tax savings Health Savings Account (HSA)
Fourteen (14) paid Holidays
Dental and Vision Insurance
Employee Assistance Program
AAP/EEO Statement
It is the policy of Utah County Government to assure equal employment opportunity to its employees and applicants for employment without regard to race, color, religion, national origin, disability, age, sex, sexual orientation, genetic status of gender identity.
UTAH COUNTY IS AN EQUAL OPPORTUNITY EMPLOYER
$104.1k-119.7k yearly Auto-Apply 1d ago
Engineer, Information Security and Risk
Cardinal Health 4.4
Information security analyst job in Salt Lake City, UT
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**InformationSecurity and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
We are seeking a highly skilled and experienced Identity and Access Management (IAM) Engineer to join our team. In this pivotal role, you will be instrumental in designing, implementing, and managing IAM solutions that secure our enterprise applications and facilitate the secure, efficient, and seamless integration of identity and access systems in context of our rapid growth through Mergers and Acquisitions. You will ensure robust access controls, streamline user experiences, and maintain operational continuity across our diverse IT landscape. The ideal candidate will have deep technical expertise in modern IAM principles, protocols and products along with strong management and communication skills.
**Responsibilities:**
+ **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning.
+ **M&A Integration Strategy & Execution:** Lead the planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions.
+ **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Privileged Access Management (PAM), and Role-Based Access Control (RBAC) frameworks.
+ **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including InformationSecurity, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications:**
+ **Education:** Bachelor's degree in Computer Science, Information Technology, InformationSecurity, or a related field, or equivalent practical experience.
+ **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
+ **Technical Expertise:**
+ Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
+ Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA, and privileged access management (PAM).
+ Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint).
+ Experience with scripting languages (e.g., PowerShell, Python) for automation and integration.
+ Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
+ Understanding of DevOps practices.
+ Familiarity with Zero Trust architecture principles.
+ Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
+ **M&A Specific Skills:** Proven track record of managing complex integration projects, including assessing existing IAM capabilities, workflow, systems, and processes of acquired entities. Ability to navigate the complexities of integrating diverse identity infrastructures.
+ Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
+ Detail-oriented mindset to ensure precise access control configurations and compliance.
+ Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
+ Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
+ Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
+ Adaptability to stay ahead of evolving IAM technologies and security threats.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
$94.9k-135.6k yearly 59d ago
AWS Security Architect
Slalom 4.6
Information security analyst job in Salt Lake City, UT
Candidates can live within commutable distance to any Slalom office in the US. We have a hybrid and flexible environment. Who You'll Work With As a modern technology company, we've never met a technical challenge we didn't like. We enable our clients to learn from their data, create incredible digital experiences, and make the most of new technologies. We blend design, engineering, and analytics expertise to build the future. We surround our technologists with interesting challenges, innovative minds, and emerging technologies.
We are seeking an experienced AWS Security Architect with deep expertise in AWS cloud architecture, native & external security services, and regulatory compliance to provide advisory and delivery services aligned with the standards of a top-tier consulting firm. This role will partner with enterprise clients to design, assess, and implement secure AWS environments that meet business, compliance, and regulatory requirements. This role requires a strong blend of hands-on technical capabilities, architectural leadership, and client-facing advisory skills.
As a trusted advisor, you will lead security strategy sessions, assess current cloud security postures, and deliver AWS-native and third-party solutions that align with best practices. You will work across multiple industry verticals, collaborating with engineering, security, risk, and compliance teams, and guiding clients through security transformation journeys and ensuring AWS adoption is secure, compliant, and resilient.
This is a strategic technical consulting role suited for individuals who are passionate about cloud security, compliance, and helping clients adopt secure architectures in regulated environments.
Key Responsibilities
* Serve as a client-facing advisor, providing strategic guidance on cloud security transformation, governance, and operating models.
* Lead cloud security assessments, maturity evaluations, and gap analyses, producing recommendations aligned with regulatory frameworks (e.g., NIST, ISO 27001, CIS, PCI DSS, HIPAA).
* Design and implement AWS-native security architectures leveraging IAM, KMS, CloudTrail, Security Hub, GuardDuty, Macie, Detective, and Control Tower.
* Establish governance, risk, and compliance (GRC) frameworks for AWS adoption, including policy-as-code and automated compliance monitoring.
* Define and implement identity and access management (IAM) strategies, including federation, least privilege, and Zero Trust principles.
* Guide clients in adopting secure application and data architectures, including encryption, data loss prevention, and secure API integrations.
* Support incident response and forensics readiness through AWS-native logging, monitoring, and detection services.
* Collaborate with DevOps and platform teams to integrate security into DevOps pipelines (DevSecOps) with automation for vulnerability management, code scanning, and compliance validation.
* Collaborate with client executives to articulate cloud security roadmaps, business cases, and investment priorities.
* Partner with internal teams to develop accelerators, templates, and reusable security patterns that improve time-to-value for clients.
* Author client deliverables such as risk assessments, security architecture design documents, gap analyses, and roadmap plans.
* Provide thought leadership via security workshops, executive briefings, and architecture reviews.
* Stay current with AWS service releases, regulatory changes, and emerging cyber risks to inform recommendations.
Core Qualifications
* 8+ years of IT security experience with at least 4+ years focused on AWS security.
* Proven consulting experience delivering security assessments, compliance programs, and cloud security roadmaps for enterprise clients.
* Strong expertise in AWS security services (i.e. IAM, KMS, CloudTrail, GuardDuty, Macie, Security Hub, Detective, WAF, Shield).
* Deep knowledge of cloud governance, risk management, and regulatory compliance frameworks (NIST, ISO, CIS Benchmarks, SOC 2, HIPAA, PCI DSS) and experience designing or assessing AWS environments aligned with these frameworks.
* Hands-on experience embedding security into DevOps/DevSecOps pipelines and Infrastructure-as-Code (Terraform, CloudFormation, AWS CDK).
* Experience designing ransomware detection, response, and business resilience strategies in AWS including backup, recovery, and isolation patterns.
About Us
Slalom is a fiercely human business and technology consulting company that leads with outcomes to bring more value, in all ways, always. From strategy through delivery, our agile teams across 52 offices in 12 countries collaborate with clients to bring powerful customer experiences, innovative ways of working, and new products and services to life. We are trusted by leaders across the Global 1000, many successful enterprise and mid-market companies, and 500+ public sector organizations to improve operations, drive growth, and create value. At Slalom, we believe that together, we can move faster, dream bigger, and build better tomorrows for all.
Compensation and Benefits
Slalom prides itself on helping team members thrive in their work and life. As a result, Slalom is proud to invest in benefits that include meaningful time off and paid holidays, parental leave, 401(k) with a match, a range of choices for highly subsidized health, dental, & vision coverage, adoption and fertility assistance, and short/long-term disability. We also offer yearly $350 reimbursement account for any well-being-related expenses, as well as discounted home, auto, and pet insurance.
Slalom is committed to fair and equitable compensation practices. For this position, the target base salary pay range in the following locations: Boston, Houston, Los Angeles, Orange County, Seattle, San Diego, Washington DC, New York, New Jersey, for Consultant level is $119,000-$147,500 and for Senior Consultant level it is $136,500-$169,500 and for Principal level it is $151,000-$187,500.
In all other markets, the target base salary pay range for Senior Consultant level it is $125,000-$155,500 and for Principal level it is $138,500-$172,000.
In addition, individuals may be eligible for an annual discretionary bonus. Actual compensation will depend upon an individual's skills, experience, qualifications, location, and other relevant factors. The salary pay range is subject to change and may be modified at any time.
We will accept applications until 3/31/2026 or until the positions are filled.
We are committed to pay transparency and compliance with applicable laws. If you have questions or concerns about the pay range or other compensation information in this posting, please contact us at: ********************.
EEO and Accommodations
Slalom is an equal opportunity employer and is committed to attracting, developing and retaining highly qualified talent who empower our innovative teams through unique perspectives and experiences. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veterans' status, or any other characteristic protected by federal, state, or local laws. Slalom will also consider qualified applications with criminal histories, consistent with legal requirements. Slalom welcomes and encourages applications from individuals with disabilities. Reasonable accommodations are available for candidates during all aspects of the selection process. Please advise the talent acquisition team or contact ****************************** if you require accommodations during the interview process.
$151k-187.5k yearly Easy Apply 2d ago
Senior Security Engineer
Adobe Systems Incorporated 4.8
Information security analyst job in Lehi, UT
Our Company Changing the world through digital experiences is what Adobe's all about. We give everyone-from emerging artists to global brands-everything they need to design and deliver exceptional digital experiences! We're passionate about empowering people to create beautiful and powerful images, videos, and apps, and transform how companies interact with customers across every screen.
We're on a mission to hire the very best and are committed to creating exceptional employee experiences where everyone is respected and has access to equal opportunity. We realize that new ideas can come from everywhere in the organization, and we know the next big idea could be yours!
Position summary:
The Senior Security Engineer position will be part of the Enterprise Security organization consisting of IAM professionals across several technologies. This specific position will have a specialized role in directory services and SaaS applications! It will focus on large implementations of Entra ID with integrations with other directories, IDPs, applications, and automated workflows. We give technical direction, administer tools, and provide support for various security technologies. We participate in driving Enterprise Security projects that use our cloud directory services for various internal and external Adobe services. We work with other specialists, architects, security teams, and software engineer teams across Adobe and collectively provide services, guidance, and strategies that protect services and data as well as adhere to various global government regulations. You will work with business customers, management teams, infrastructure teams, development teams, project managers, and other security teams to help implement the vision, structure, standards, and plan solutions that support the future architecture.
At Adobe, you will be immersed in an exceptional work environment that is recognized throughout the world on Best Companies lists! You will also be surrounded by colleagues who are committed to helping each other grow through our Check-In approach where ongoing feedback flows freely.
If you're looking to make an impact, Adobe is the place for you. Discover what our employees are saying about their career experiences on the Adobe Life blog and explore the meaningful benefits we offer.
Adobe is an equal opportunity employer. We welcome and encourage diversity in the workplace regardless of race, gender, religion, age, sexual orientation, gender identity, disability or veteran status.
Primary Responsibilities May Include, but Are Not Limited To:
* Managing deep and complex directory architectures and services span directories, IDPs, and federated environments.
* Providing guidance and architecting solutions for directory service strategies across a variety of internal customers at Adobe.
* We help test, implement, and support secure services used by end-users, devices, and application workflows to all of Adobe.
* We engineer secure identity solutions for on-premises and cloud environments.
* We are a team of Security Engineers that handle incoming requests, respond to issues, solve reported problems, and develop solutions.
* We meet with teams to get business requirements, understand workflows, and devise solutions.
* We help assess SaaS implementations for identity integrations and general security.
* We generate useful metrics to help make decisions, identify issues, and manage our sevices.
Requirements:
* Possess a Bachelor's or advanced degree in MIS, Computer Science, Cybersecurity, or Engineering OR 10+ years in IT or Cybersecurity
* Comfortable working on and leading different projects with many teams at one time
* In-depth understanding of Windows, Mac and UNIX/Linux based systems, permissions, and interoperability.
* Strong knowledge of machine to machine and application to machine connections using MFA, certificates, tokens, and other methods.
* Strong understanding of the identity lifecycle, secure by design, least privileged and zero trust.
* An in-depth knowledge and understanding of managing and securing cloud directories (e.g. Entra ID/AWS/Okta) and integrating with traditional directories (e.g. Active Directory/389DS/ LDAP based directories).
* Proficient in written and verbal communications, skilled at working alongside differing viewpoints to accomplish shared objectives.
* Able to work independently and as a team member.
* Capable of conveying technical concepts to diverse audiences including non-technical users, architects, and senior leadership.
* Professional written, verbal, and presentation communication skills to engage with senior leadership.
* A deep understanding of Cloud Directories, especially Entra ID, and how to secure it, use conditional access policies, and apply/create automation.
* Ability to teach and mentor others while fostering a collaborative environment.
* Can model leadership behavior and help to grow other's leadership behavior.
Preferred:
* Understanding of Desktop operating systems including Windows, Linux, and Mac
* Experience or knowledge of Public Key Infrastructure
* Strong abilities in programming/scripting languages for automating repeatable tasks like Python, PowerShell, etc.
* Experience and/or Knowledge of dashboarding and log correlation engines such as Grafana, Telegraph, Splunk, etc.
* Experience with SaaS Security Posture Management technologies.
* Experience with developing PowerBI dashboards.
The Person Should:
* Have strong social skills, ability to "win people over" and be a great teammate.
* Be able to communicate, influence and mentor across business and executive leadership as well as partners while being able to explain the benefits for their teams.
* Be neutral toward technology, vendor and product choices; more interested in results than in personal preferences.
* Have the ability to think creatively and to solve complex tasks and problems with minimal direction.
Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets. The U.S. pay range for this position is $168,200 -- $310,100 annually. Pay within this range varies by work location and may also depend on job-related knowledge, skills, and experience. Your recruiter can share more about the specific salary range for the job location during the hiring process. In California, the pay range for this position is $214,100 - $310,100 In Washington, the pay range for this position is $194,000 - $281,000
At Adobe, for sales roles starting salaries are expressed as total target compensation (TTC = base + commission), and short-term incentives are in the form of sales commission plans. Non-sales roles starting salaries are expressed as base salary and short-term incentives are in the form of the Annual Incentive Plan (AIP).
In addition, certain roles may be eligible for long-term incentives in the form of a new hire equity award.
State-Specific Notices:
California:
Fair Chance Ordinances
Adobe will consider qualified applicants with arrest or conviction records for employment in accordance with state and local laws and "fair chance" ordinances.
Colorado:
Application Window Notice
If this role is open to hiring in Colorado (as listed on the job posting), the application window will remain open until at least the date and time stated above in Pacific Time, in compliance with Colorado pay transparency regulations. If this role does not have Colorado listed as a hiring location, no specific application window applies, and the posting may close at any time based on hiring needs.
Massachusetts:
Massachusetts Legal Notice
It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Adobe is proud to be an Equal Employment Opportunity employer. We do not discriminate based on gender, race or color, ethnicity or national origin, age, disability, religion, sexual orientation, gender identity or expression, veteran status, or any other applicable characteristics protected by law. Learn more.
Adobe aims to make Adobe.com accessible to any and all users. If you have a disability or special need that requires accommodation to navigate our website or complete the application process, email accommodations@adobe.com or call **************.
$94k-130k yearly est. 60d+ ago
Senior Security Engineer
Goodleap 4.6
Information security analyst job in Lehi, UT
About GoodLeap:GoodLeap is a technology company delivering best-in-class financing and software products for sustainable solutions, from solar panels and batteries to energy-efficient HVAC, heat pumps, roofing, windows, and more. Over 1 million homeowners have benefited from our simple, fast, and frictionless technology that makes the adoption of these products more affordable, accessible, and easier to understand. Thousands of professionals deploying home efficiency and solar solutions rely on GoodLeap's proprietary, AI-powered applications and developer tools to drive more transparent customer communication, deeper business intelligence, and streamlined payment and operations. Our platform has led to more than $30 billion in financing for sustainable solutions since 2018. GoodLeap is also proud to support our award-winning nonprofit, GivePower, which is building and deploying life-saving water and clean electricity systems, changing the lives of more than 1.6 million people across Africa, Asia, and South America.
Position Summary The GoodLeap security team is responsible for both business enablement and safeguarding the organization's information assets; it is involved in virtually all aspects of the business, from product safety and resilience, to building security paved roads, customer, partner, and regulatory trust, managing technology governance and compliance, and ensuring the privacy, and safety of GoodLeap's customers, partners, and employees information.
The senior security engineer role provides a unique opportunity to shape the security and resilience of GoodLeap corporate systems, services, and operational processes. In this role, you will work closely with product, engineering, IT, and business teams within GoodLeap, acting as the key individual with both the authority and responsibility to ensure the safety and resilience of enterprise systems, products, and services.
Your oversight will encompass: - Enterprise systems:Identifying potential misuse and abuse cases, proposing solutions to address these scenarios, and identifying product features, configuration settings, and/or mitigating or compensating controls to meet resilience requirements. - Build-time controls: Managing applications/products security controls and activities during development. - Runtime controls: Overseeing security measures at runtime, from prevention to detection and response.
Additionally, you will be involved with aspects of internally built products and represent all areas of security, spanning governance, risk, and compliance (GRC) to security monitoring, for a number of departments/teams. You will also have the authority and ability to involve other security team members as needed.
While you will take on multiple responsibilities-from advisor to builder and beyond-your primary focus will be designing and building security patterns and practices for services and processes, and fostering strong relationships with product, business, and engineering. Essential Job Duties & Responsibilities
Lead, participate in, and contribute to partnerships between security, IT, General & Administrative teams, engineering, product, and operations teams to build, orchestrate, and automate security controls and services in GoodLeap enterprise systems, products, services, and operational processes.
Identify potential misuse and abuse cases in enterprise systems, propose solutions to address these scenarios, and identify product features, configuration settings, and/or mitigating or compensating controls to meet resilience requirements.
Support or develop components of the security analytics platform.
Contribute to investigations, threat hunting, and incident response activities in a supporting role.
Collaborate with the monitoring and response team to create playbooks for specific incident response scenarios related to the products and services you oversee. These investigations, incidents, and playbooks may address security, fraud, privacy, resilience, and related concerns.
Support the security operations team with the vulnerability management lifecycle for products and services under your purview.
Ensure technical alignment for the products and services you oversee with team initiatives, including GRC, security operations, and monitoring and response activities.
Required Skills, Knowledge & Abilities
Strong communicator with the ability to lead technical architecture discussions, drive technical decisions, and effectively communicate with non-technical audiences.
Expertise in agile product lifecycles. Ideally, you have experience in a product manager or engineering manager role and understand how SaaS products (B2B, B2B2C, and B2C) are built, including roadmap planning and feature and defect prioritization.
Experience with threat modeling methodologies, with the ability to create efficient and scalable approaches to conducting such assessments.
Familiarity with AWS services, including KMS, SST, Container Registry, ELBs, Lambda, API Gateway, CloudTrail, and IAM (knowledge of GCP and/or Azure is a plus).
Proven ability to establish credibility and build trust with business, engineers, and operational staff; confident yet humble.
Hands-on experience with managing security for core enterprise systems, e.g., ERP, HCM, Salesforce, etc.
Strong understanding of both human and non-human identity management and common enterprise and consumer authentication standards and use cases.
Practical experience with CI/CD pipelines and DevOps tools, including Infrastructure-as-Code (IaC) tools like Terraform, Pulumi, or CDK; GitHub and GitHub Actions; artifact management; and secrets management tools like Doppler and HashiCorp Vault.
Passionate about learning new technologies. While you're not expected to know everything, you should demonstrate a willingness and ability to learn as needed.
Prior experience interfacing and supporting with G&A teams, internal product teams, and other cross-functional areas.
Proficiency in writing automation scripts in multiple languages, with prior experience automating security processes in cloud or SaaS environments.
Experience engaging with vendors in design partnerships.
Experience overseeing vulnerability and threat management at the platform and application levels.
Familiarity with penetration testing and red team exercises, including manual verification, exploitation, and lateral movement.
Ability to balance a high-level view of security strategy with attention to detail, ensuring thorough and effective execution.
In addition to the above salary, this role may be eligible for a bonus. Additional Information Regarding Job Duties and s:
Job duties include additional responsibilities as assigned by one's supervisor or other managers related to the position/department. This job description is meant to describe the general nature and level of work being performed; it is not intended to be construed as an exhaustive list of all responsibilities, duties and other skills required for the position. The Company reserves the right at any time with or without notice to alter or change job responsibilities, reassign or transfer job position or assign additional job responsibilities, subject to applicable law. The Company shall provide reasonable accommodations of known disabilities to enable a qualified applicant or employee to apply for employment, perform the essential functions of the job, or enjoy the benefits and privileges of employment as required by the law.
If you are an extraordinary professional who thrives in a collaborative work culture and values a rewarding career, then we want to work with you! Apply today!
We are committed to protecting your privacy. To learn more about how we collect, use, and safeguard your personal information during the application process, please review our Employment Privacy Policy and Recruiting Policy on AI.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
$97k-121k yearly est. 5d ago
Information Security Data and Risk Analyst
Ivanti 4.5
Information security analyst job in Salt Lake City, UT
Are you an experienced Security Data and Risk Analyst that wants to develop and create awareness around security-relevant key performance and key risk indicators? At Ivanti, we work passionately and authentically, striving to win together and make a real impact for our customers and each other. Join us to elevate your career and help deliver innovative solutions in a dynamic, empowering environment.
Why this role matters
As the Security Data and Risk Analyst, you will generate enterprise visibility, awareness and understanding of major risk and security issues in a comprehensive and easily consumed manner to support the corporate objectives and especially the reduction of risk. You will be a leader in our InformationSecurity Group which is a global team of experienced professionals dedicated to ensuring the security of Ivanti's products, corporate and production networks, environments, and of course, its data
What you'll do:
Lead the execution of multiple functions: Taking ownership of and creating awareness around security-relevant key performance and key risk indicators
Develop automation for data gathering, analysis and presentation using Python and Go
Educate as well as inform audiences of a wide variety of security and risk expertise, including building libraries of material to support understanding of benefits and costs of security management.
Generating insights and supporting information for decisions to be made including wrangling data from complex data sets and data sources
Create dynamic dashboards and presentations
Articulate risk and risk management as realistic, measurable harm; Create dynamic dashboards and presentations
Support the Security Governance and executive workstreams, including analysis and presentations materials.
Coordinate, chair and present data to management, leadership and C-suite stakeholders in their languages.
What you will bring:
Minimum of a bachelor's degree, preferably in information systems or data analytics.
4+ years' experience with Python or Go automation and scripting
2+ experience with Risk Management
1 years' experience with Risk Modeling
4+ years Data Analytics experience
Familiarity with informationsecurity and security terms
Experience conducting reporting operations such as presentations, metrics, dashboards, KPIs, KRIs, OKRs.
1 year experience executing/leading project management efforts in a technology-related arena.
Can show evidence has created effective KPIs, KRIs and OKRs and a means to measure and report each.
Experience with cloud, onprem, corporate, remote, solutions/products dev and transformative environments.
Ability to articulate themes from: NIST, ISO, SOC 2, FedRAMP, GDPR and DORA, and Security, Privacy principles.
Why Ivanti?
Friendly flexible working model: Empower excellence whether you're at home or in the office and support work-life balance.
Competitive compensation & total rewards: Including health, wellness, and financial plans tailored for you and your family.
Global, diverse teams: Collaborate with talented people from 23+ countries.
Learning & development: Grow your skills with access to best-in-class learning tools and programs.
Equity & belonging: We value every voice. Your story helps inform our solutions for a changing world.
What drives us
Ivanti's mission is to elevate human potential within organizations by managing, protecting and automating technology for continuous innovation.
It is through diverse and inclusive hiring, decision-making, and commitment to our employees and partners that we will continue to build and deliver world-class solutions for our customers.
To learn more about Ivanti's
Mission and Core Values.
Inclusion at Ivanti
Ivanti is proud to be an Equal Opportunity Employer. We're committed to building a diverse team and fostering an inclusive environment where everyone belongs. We welcome applicants from all backgrounds and walks of life.
Need adjustments during the process? Reach out to ***************** we're happy to help.
#LI-Remote
$70k-100k yearly est. Auto-Apply 29d ago
IT Analyst
HK Tech 4.3
Information security analyst job in Salt Lake City, UT
We are seeking a highly experienced Salesforce Developer / IT Analyst to support and enhance complex, enterprise-scale Salesforce solutions. This role requires deep hands-on development expertise, strong architectural thinking, and the ability to translate business objectives into scalable, secure technical solutions.
The ideal candidate is a strong communicator who can work effectively across engineering teams and business leadership, facilitate Agile delivery, and contribute to systems that handle sensitive, high-impact data.
This position is required 80% onsite (4 days onsite), 20% remote a week.
Key Responsibilities
Design, develop, and maintain enterprise Salesforce solutions using Apex, Visualforce, Lightning, Java, and JavaScript
Collaborate with business analysts, architects, and stakeholders to gather requirements and translate them into technical designs
Act as a technical bridge between business leadership and engineering teams, ensuring alignment between strategy and execution
Facilitate sprint demonstrations and incorporate stakeholder feedback into actionable development plans
Design, develop, secure, and maintain APIs (REST and/or SOAP) for system integrations
Integrate Salesforce with enterprise platforms such as identity management, case management, and data exchange systems
Develop and maintain clear technical documentation including system designs, integration specifications, and deployment instructions
Provide guidance and mentorship to development team members
Support Agile or hybrid SDLC environments while ensuring documentation keeps pace with rapid delivery cycles
Participate in architectural reviews and contribute to long-term platform strategy
Required Experience & Skills
3+ years of hands-on Salesforce development experience in enterprise environments
Strong experience designing and developing Salesforce solutions using Java and JavaScript
Proven ability to produce clear and comprehensive technical documentation
Demonstrated experience working within Agile or hybrid SDLC environments
Exceptional communication skills, with the ability to explain complex technical concepts to non-technical stakeholders
Experience developing and integrating APIs (REST and/or SOAP) with enterprise systems
Strong understanding of software development security principles, including role-based access control, audit logging, and secure API design
Domain & Platform Expertise
Direct experience developing or supporting production systems within criminal justice-related domains (e.g., courts, public safety, corrections, parole, or justice information systems)
Experience working with highly sensitive data and privacy-driven workflows
Extensive experience developing and customizing ServiceNow, including workflows, business rules, integrations, and platform configuration
Knowledge of data protection, compliance, and secure system design practices
Nice to Have
Salesforce certifications
Experience working with large-scale enterprise integrations
Strong background in cross-platform system architecture
Experience supporting systems with strict compliance, audit, and privacy requirements
$74k-103k yearly est. Auto-Apply 2d ago
Sr. Security Engineer
Rocky Mountain ATV 3.7
Information security analyst job in Payson, UT
Job DescriptionDescription:
Rocky Mountain is hiring a new Team Member to join our IT Department as a Sr. Security Engineer.
For over 40 years, Rocky Mountain ATV/MC has grown to become one of the world's largest providers for power-sport enthusiasts - having the largest selection of riding gear and parts available. Rocky Mountain ATV/MC is not just a distributor, we are also gear testers, product developers, manufacturers of off-road parts/components, and one of the powersports industries leading resources for instruction and demonstration.
There has never been a better time to start your career with us! In 2021, Rocky Mountain ATV/MC became a 100% Employee-Owned Organization. Come join us as an Employee-Owner and work with the best in a fast paced, exciting industry. Do you love powersports? Do you want to work for a company with a fun and rewarding environment? Rocky Mountain ATV/MC is that company, we are comprised of powersports enthusiasts just like you. We currently have amazing opportunities for dynamic and dependable individuals who want to share their passion and experience. GET READY.
As a colleague at Rocky Mountain ATV/MC, you can enjoy benefits and perks including:
Employee Stock Ownership Program (ESOP)
Competitive compensation with regular bonuses
Excellent tuition reimbursement, graduation bonus and ZERO interest education loans for all employees
Delicious onsite cafeterias with discounted meals
Excellent Medical, Dental, Vision, and Voluntary Life insurance plans
401K with company match
PTO and holiday pay
Wellness programs and discounted local gym membership
Powersport and wellness race/participation reimbursements
Generous employee discount on thousands of products
Career advancement, professional development, and opportunities to grow
What you will do in this role:
Assist in the development, testing, and implementation of secure end-user security technologies
Conduct static and dynamic code analysis using industry standard tools
Ability to effectively give, receive, and respond to feedback
Ensure company compliance with security standards and company policy
Create and maintain company documentation regarding security policies and procedures
Mentor and train junior team members
Make recommendations in response to current security events, covering the spectrum from sudden zero-day vulnerabilities to upcoming end-of-life system preparations
Research and give security recommendations regarding new technologies, evolution of business requirements, system and network designs
Ability to troubleshoot security related issues
Monitor security posture, respond to incidents, and manage day-to-day security tasks
Work collaboratively and cooperatively with others, committing to a workplace of teamwork, dignity, and respect
Other duties as assigned
How you will thrive in this role:
CCSP or similar
Working knowledge of next-gen firewall administration and configuration, network security, and operations best practices
5+ years of informationsecurity applications and systems experience
5+ years of experience with network security, endpoint security, or security threat vectors
1+ year of Packet Analysis experience
Excellent communications skills
Good Project Management skills
Well versed in security frameworks (NIST/CIS)
Ability to conduct forensic analytical studies and investigations effectively and efficiently
Detail oriented
Networking - VLAN, WAN, LAN, Routers, Switches, Access Points, Firewalls, IPS, VPN, etc
Proficiency with LINUX commands
Scripting skills (python, PowerShell, bash)
Ability to understand, read, and/or comprehend instructions and directions including different numbers and specifications
Be a collaborative team player who is willing to work with others and independently.
Strong work ethic focused on commitment, pride of work, quality, desire to learn, and dependability
Physical Demands:
Position performance will require the regular physical ability to walk and function in elevation changes means of self-propulsion to include steps, ladders, and varied walking and working surfaces. Ability to negotiate warehouse work areas in a safe manner and behavior. Vision abilities specific to the position will include close vision, peripheral vision, depth perception, and the ability to focus. Performing in this role will require the use of hands to use and handle tools, objects, materials, and controls. Performance requires the frequent ability to sit, talk, hear, stand, climb, balance, stoop kneel, crouch, or crawl. Employee may have to lift and/or move up to 45 pounds.
Equality:
Rocky Mountain ATV/MC is proud to be a company of inclusion, belonging, and fairness. We rely on our colleagues to collaborate, have a voice, and perspective. We embrace everyone and are proud to be an equal opportunity employer that does not discriminate on the basis of race, color, ethnicity, ancestry, religion, sex, national origin, sexual orientation, age, citizenship status, marital status, disability, gender identity/expression, veteran status, or genetic information or any other category protected under applicable law.
Requirements:
$106k-139k yearly est. 26d ago
IT Financial Analyst
Cayuse Holdings
Information security analyst job in Salt Lake City, UT
**JOB TITLE:** IT Financial Analyst **CAYUSE COMPANY:** Cayuse Commercial Services, LLC **SALARY:** $28.00-$35.00/hr **EMPLOYEE TYPE:** Full-Time Hourly Non-Exempt **The Work** The IT Financial Analyst will provide day-to-day support for invoice review and approval processing. The role will also assist IT managers with other financial tasks as assigned.
This position performs all duties and responsibilities in accordance with the Mission, Vision, and Core Values of Cayuse.
**Responsibilities**
**Key Responsibilities**
+ Monitor vendor invoice mailbox
+ Review vendor invoices
+ Match against contract or purchase order
+ Verify invoice for payment or return to vendor
+ Record invoice in general ledger
+ Notify Accounts Payable for vendor payment
+ Work with IT managers on other financial tasks as assigned
+ Respond to assigned tasks in accordance with predefined guidelines.
+ Other duties as assigned.
**Qualifications**
**Qualifications - Here's What You Need**
+ High school diploma or equivalent required
+ Two (2) to five (5) years of experience working in a finance position with focus on billing, invoicing, vendor management.
+ Preference with experience supporting an IT organization
+ Must be able to pass a background check. May require additional background checks as required by projects and/or clients at any time during employment.
**Minimum Skills:**
+ Microsoft Office experience (Work, Excel)
+ Experience with JD Edwards preferred
+ Financial billing, accounts payable experience
+ General accounting
+ Excellent communication skills
+ Experience working with suppliers and third-party vendors
+ Ability to quickly analyze a situation and react appropriately and effectively
+ Effective prioritization skills
+ Self-starter
+ Financial analysis credibility and independent judgment
+ Able to contribute to IT financial planning and operations
**Our Commitment to you / overview of benefits**
+ Medical, Dental and Vision Insurance; Wellness Program
+ Flexible Spending Accounts (Healthcare, Dependent Care, Commuter)
+ Short-Term and Long-Term Disability options
+ Basic Life and AD&D Insurance (Company Provided)
+ Voluntary Life and AD&D options
+ 401(k) Retirement Savings Plan with matching after one year
+ Paid Time Off
**Reports to:** **Program Manager**
**Working Conditions**
+ Professional remote office environment.
+ Must reside in Central or Eastern Time Zone.
+ Must be physically and mentally able to perform duties extended periods of time.
+ Ability to use a computer and other office productivity tools with sufficient speed to meet the demands of this position.
+ Must be able to establish a productive and professional workspace.
+ Must be able to sit for long periods of time looking at computer screen.
+ May be asked to work a flexible schedule which may include holidays.
+ May be asked to travel for business or professional development purposes.
+ May be asked to work hours outside of normal business hours.
**Other Duties:** _Please note this job description is not designed to cover or contain a comprehensive list of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice._
**_Cayuse is an Equal Opportunity Employer. All employment decisions are based on merit, qualifications, skills, and abilities. All qualified applicants will receive consideration for employment in accordance with any applicable federal, state, or local law._**
**Pay Range**
USD $28.00 - USD $35.00 /Hr.
Submit a Referral (*********************************************************************************************************************************
**Can't find the right opportunity?**
Join our Talent Community (********************************************************** or Language Services Talent Community (******************************************************** and be among the first to discover exciting new possibilities!
**Location** _US-_
**ID** _103881_
**Category** _Accounting/Finance_
**Position Type** _Full-Time Hourly Non Exempt_
**Remote** _Yes_
**Clearance Required** _None_
$28-35 hourly 6d ago
Jr. Information Security Analyst (Information Security Analyst I)
Lightspeed DMS
Information security analyst job in South Jordan, UT
Job Description
Lightspeed is a leading provider of cloud-based software for dealerships and Original Equipment Manufacturers (OEMs), serving the Powersport, Marine, RV, Trailer, Outdoor Power Equipment, and Golf Cart industries. Lightspeed's Dealer Management Solution (DMS) enables dealerships to optimize their end-to-end business operations, including sales, parts, service, rentals, accounting, and Customer Relationship Management (CRM). When implemented into their daily operations, Lightspeed helps dealers increase their profitability by selling more units, service, and parts, all while creating a more streamlined experience for customers. For nearly 40 years, Lightspeed has been empowering 4,500+ dealers across North America with the tools and technology they need to manage their dealerships.
The Jr. InformationSecurityAnalyst I supports Lightspeed's cybersecurity operations by assisting with monitoring, analysis, and remediation of security incidents across enterprise systems and cloud environments. Working under the direction of senior analysts, this role helps ensure the confidentiality, integrity, and availability of company data while gaining experience in security tools, processes, and governance activities. The ideal candidate is detail-oriented, eager to learn, and passionate about developing technical and compliance skills in a collaborative environment.
What you'll do:
Monitor and investigate security alerts and events across SIEM, EDR, and network systems.
Assist in the investigation of potential security incidents under senior analyst guidance.
Help maintain documentation of incidents, findings, and remediation steps.
Perform vulnerability scanning and tracking remediation efforts.
Support maintenance of security tools and platforms (endpoint protection, SIEM, firewalls).
Assist with compliance tasks related to SOC 2, internal audits, and risk assessments.
Assist with gathering security metrics and reports on a monthly basis.
Contribute to updating security policies, standards, and procedures.
Perform third-party vendor security reviews and due diligence processes.
Assist in security awareness initiatives and internal training activities.
Collaborate with IT and engineering teams to ensure secure configurations and patch compliance.
Assist in the creation of automation scripts and the integration of AI with security workflows.
What you should have:
Qualifications:
Bachelor's degree in Cybersecurity, Information Technology, or a related field, or equivalent experience.
0-3 years of experience in informationsecurity, IT operations, or related technical roles.
Foundational knowledge of networking, operating systems, and cloud environments (AWS, Azure).
Strong experience securing and monitoring cloud environments (AWS, Azure).
Exposure to SIEM or EDR tools such as Splunk, Sentinel, or Defender.
Understanding of basic security concepts (vulnerabilities, exploits, least privilege, encryption).
Excellent analytical, problem-solving, and communication skills.
Knowledge of security frameworks such as NIST CSF and SOC 2.
Ability to work collaboratively in a team-oriented environment.
Preferred Qualifications:
CompTIA Security+, CySA+, or equivalent entry-level certification.
Experience with vulnerability scanners (Qualys, Nessus, or Rapid7).
Exposure to GRC or vendor risk management tools.
Exposure to SIEM platforms, Elastic, Splunk, Security Onion.
Familiarity with scripting or automation (PowerShell, Python).
Demonstrated interest in pursuing a long-term career in cybersecurity operations or compliance.
Inclusion and Diversity at Lightspeed:
At Lightspeed, we celebrate the uniqueness of every individual and encourage diverse perspectives. We believe that inclusion drives innovation and fosters meaningful connections. We are committed to building an environment where everyone feels valued and empowered to make an impact.
Equal Employment Opportunity Statement:
Lightspeed is an Equal Opportunity Employer and is dedicated to building a diverse and inclusive workforce. All qualified applicants will be considered for employment without regard to race, color, creed, ancestry, national origin, gender, sexual orientation, gender identity, gender expression, marital status, religion, age, disability, veteran status, or any other protected category.
Important Note:
Applicants must be authorized to work in the U.S.
Ready to apply?
Take the next step in your career-apply today and join a team where your skills will make an impact!
$69k-101k yearly est. 28d ago
Network Security Analyst
Mindlance 4.6
Information security analyst job in Lehi, UT
Mindlance is a national recruiting company which partners with many of the leading employers in the Life Sciences, IT, and Financial Services sectors, feel free to check us out at *************************
Job Description
Job Title: Network SecurityAnalyst
Duration: 6 Months
Location: Lehi, UT
Required:
• Minimum 3+ years exp.
• Experience with implementing policy on firewalls (Juniper & Palo alto experience preferred)
• Review requests for new firewall policy
• Understanding of IP stack
• Ability to prioritize work and meet defined SLAs
• Good communication skills - both verbal and written
Additional InformationThanks & Regards,
______________________________________________________________________________________________________
Vikram Bhalla | Team-Recruitment | Mindlance, Inc. | Office: **************
$75k-95k yearly est. 60d+ ago
Data Security Analyst Sr
The University of Utah 4.0
Information security analyst job in Salt Lake City, UT
The Data SecurityAnalyst Senior position in the InformationSecurity Office ( ISO ) is responsible for leading and supporting security initiatives which mitigate risk and ensure data integrity at the University of Utah and University Health Care. This includes providing security guidance and technical risk assessments of new or ongoing projects, responding to, and analyzing security incidents, and implementing new security technologies or processes. This is a highly collaborative position which requires strong analytical and communication skills.
Responsibilities
· Communicate security risks, incidents, and mitigation strategies to senior management and relevant stakeholders. · Collaborate with IT teams, system administrators, and network securityanalysts to ensure cohesive security strategy and technical implementations. · Collaborate in the development of action plans to improve security posture. · Assist the University in meeting compliance obligations regarding informationsecurity. · Contribute to incident response procedures and play a key role in incident response activities and help develop strategies to prevent future occurrences. · Analyze digital evidence from endpoints, servers, and cloud environments to identify the root cause of breaches, malware infections, or other security issues. · Provide security evaluation and guidance regarding new technologies or processes. · Assist in legal discovery and evidence acquisition and preservation. · Support and configure security safeguards in major cloud platforms. · Participate in security assessments of departments and colleges. · Evaluate, select, implement, and maintain endpoint security solutions such as endpoint detection and response ( EDR ). This will include working with portions of the Microsoft Extended Detection and Response suite. · Support the Security Operations Center ( SOC ) leverage technology and data to accomplish their responsibilities. · Stay up-to-date and informed about emerging threats, vulnerabilities, and security solutions through research and industry publications. This job description is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to the job. Work Environment and Level of Frequency typically required Nearly Continuously: Office environment. Physical Requirements and Level of Frequency that may be required Nearly Continuously: Sitting, hearing, listening, talking. Often: Repetitive hand motion (such as typing), walking. Seldom: Bending, reaching overhead.
Minimum Qualifications
Requires a bachelor's degree in area of specialty, or equivalency (one year of education can be substituted for two years of related work experience); and 2-4 years of experience in the field or in a related area. Applicants must demonstrate the potential ability to perform the essential functions of the job as outlined in the position description.
$54k-74k yearly est. 60d+ ago
Engineer, Information Security and Risk
Cardinal Health 4.4
Information security analyst job in Salt Lake City, UT
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**InformationSecurity and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
**Responsibilities:**
+ **M&A Integration Execution:** Collaborate and engage with IAM Lead and other business partners on planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions.
+ **Design and Implement Sailpoint IIQ Solutions:** Configure and customize Sailpoint IIQ components (Lifecycel Manager, Compliance Manager etc). Also develop workflows, rules, and connectors for identity governance.
+ **Application integration with Sailpoint IIQ:** Integrate Sailpoint IIQ with enterprise applications, directories and cloud platforms in addition to developing and maintaining connectros for provisioning and de-provisioning.
+ **Sailpoint IIQ Development and Scripting:** Write and maintain BeanShell scripts, Java code and XML configurations, develop customer Sailpoint tasks and workflows.
+ **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including InformationSecurity, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications**
+ Experience with SailPoint IdentityIQ (IIQ) is a must
+ Experience with SailPoint IIQ Integrations (Workday, Active Directory/LDAP, Webservices, SCIM, JDBC, SAP)
+ Experience implementing Life Cycle Manager (LCM) Configuration workflow tasks that model business functions, including Lifecycle Requests (Role or Entitlement), Lifecycle Events (Joiner, Mover, or Leaver), and LCM Workflow Details (Workflows and Subprocesses)
+ Solid understanding of the SailPoint object model, rules, and policies
+ Experience with both lifecycle manager (LCM) and compliance manager (CM) modules
+ Knowledge of Active Directory, LDAP, Workday, and cloud platforms (GCP, MS Entra ID) is required
+ Proven track record of successful IAM implementations including large scale enterprise deployments.
+ Experience working within regulatory standards and requirements such as, SOX, HIPAA, GDPR etc. is desired.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
$94.9k-135.6k yearly 59d ago
Senior Security Engineer
Goodleap 4.6
Information security analyst job in Lehi, UT
About GoodLeap:GoodLeap is a technology company delivering best-in-class financing and software products for sustainable solutions, from solar panels and batteries to energy-efficient HVAC, heat pumps, roofing, windows, and more. Over 1 million homeowners have benefited from our simple, fast, and frictionless technology that makes the adoption of these products more affordable, accessible, and easier to understand. Thousands of professionals deploying home efficiency and solar solutions rely on GoodLeap's proprietary, AI-powered applications and developer tools to drive more transparent customer communication, deeper business intelligence, and streamlined payment and operations. Our platform has led to more than $30 billion in financing for sustainable solutions since 2018. GoodLeap is also proud to support our award-winning nonprofit, GivePower, which is building and deploying life-saving water and clean electricity systems, changing the lives of more than 1.6 million people across Africa, Asia, and South America.
Position Summary The GoodLeap security team is responsible for both business enablement and safeguarding the organization's information assets; it is involved in virtually all aspects of the business, from product safety and resilience, to building security paved roads, customer, partner, and regulatory trust, managing technology governance and compliance, and ensuring the privacy, and safety of GoodLeap's customers, partners, and employees information.
The senior security engineer role provides a unique opportunity to shape the security and resilience of GoodLeap corporate systems, services, and operational processes. In this role, you will work closely with product, engineering, IT, and business teams within GoodLeap, acting as the key individual with both the authority and responsibility to ensure the safety and resilience of enterprise systems, products, and services.
Your oversight will encompass: - Enterprise systems:Identifying potential misuse and abuse cases, proposing solutions to address these scenarios, and identifying product features, configuration settings, and/or mitigating or compensating controls to meet resilience requirements. - Build-time controls: Managing applications/products security controls and activities during development. - Runtime controls: Overseeing security measures at runtime, from prevention to detection and response.
Additionally, you will be involved with aspects of internally built products and represent all areas of security, spanning governance, risk, and compliance (GRC) to security monitoring, for a number of departments/teams. You will also have the authority and ability to involve other security team members as needed.
While you will take on multiple responsibilities-from advisor to builder and beyond-your primary focus will be designing and building security patterns and practices for services and processes, and fostering strong relationships with product, business, and engineering. Essential Job Duties & Responsibilities
Lead, participate in, and contribute to partnerships between security, IT, General & Administrative teams, engineering, product, and operations teams to build, orchestrate, and automate security controls and services in GoodLeap enterprise systems, products, services, and operational processes.
Identify potential misuse and abuse cases in enterprise systems, propose solutions to address these scenarios, and identify product features, configuration settings, and/or mitigating or compensating controls to meet resilience requirements.
Support or develop components of the security analytics platform.
Contribute to investigations, threat hunting, and incident response activities in a supporting role.
Collaborate with the monitoring and response team to create playbooks for specific incident response scenarios related to the products and services you oversee. These investigations, incidents, and playbooks may address security, fraud, privacy, resilience, and related concerns.
Support the security operations team with the vulnerability management lifecycle for products and services under your purview.
Ensure technical alignment for the products and services you oversee with team initiatives, including GRC, security operations, and monitoring and response activities.
Required Skills, Knowledge & Abilities
Strong communicator with the ability to lead technical architecture discussions, drive technical decisions, and effectively communicate with non-technical audiences.
Expertise in agile product lifecycles. Ideally, you have experience in a product manager or engineering manager role and understand how SaaS products (B2B, B2B2C, and B2C) are built, including roadmap planning and feature and defect prioritization.
Experience with threat modeling methodologies, with the ability to create efficient and scalable approaches to conducting such assessments.
Familiarity with AWS services, including KMS, SST, Container Registry, ELBs, Lambda, API Gateway, CloudTrail, and IAM (knowledge of GCP and/or Azure is a plus).
Proven ability to establish credibility and build trust with business, engineers, and operational staff; confident yet humble.
Hands-on experience with managing security for core enterprise systems, e.g., ERP, HCM, Salesforce, etc.
Strong understanding of both human and non-human identity management and common enterprise and consumer authentication standards and use cases.
Practical experience with CI/CD pipelines and DevOps tools, including Infrastructure-as-Code (IaC) tools like Terraform, Pulumi, or CDK; GitHub and GitHub Actions; artifact management; and secrets management tools like Doppler and HashiCorp Vault.
Passionate about learning new technologies. While you're not expected to know everything, you should demonstrate a willingness and ability to learn as needed.
Prior experience interfacing and supporting with G&A teams, internal product teams, and other cross-functional areas.
Proficiency in writing automation scripts in multiple languages, with prior experience automating security processes in cloud or SaaS environments.
Experience engaging with vendors in design partnerships.
Experience overseeing vulnerability and threat management at the platform and application levels.
Familiarity with penetration testing and red team exercises, including manual verification, exploitation, and lateral movement.
Ability to balance a high-level view of security strategy with attention to detail, ensuring thorough and effective execution.
Additional Information Regarding Job Duties and s:
Job duties include additional responsibilities as assigned by one's supervisor or other managers related to the position/department. This job description is meant to describe the general nature and level of work being performed; it is not intended to be construed as an exhaustive list of all responsibilities, duties and other skills required for the position. The Company reserves the right at any time with or without notice to alter or change job responsibilities, reassign or transfer job position or assign additional job responsibilities, subject to applicable law. The Company shall provide reasonable accommodations of known disabilities to enable a qualified applicant or employee to apply for employment, perform the essential functions of the job, or enjoy the benefits and privileges of employment as required by the law.
If you are an extraordinary professional who thrives in a collaborative work culture and values a rewarding career, then we want to work with you! Apply today!
We are committed to protecting your privacy. To learn more about how we collect, use, and safeguard your personal information during the application process, please review our Employment Privacy Policy and Recruiting Policy on AI.
$97k-121k yearly est. Auto-Apply 60d+ ago
Sr Security Analyst
Lightspeed DMS
Information security analyst job in South Jordan, UT
Lightspeed is a leading provider of cloud-based software for dealerships and Original Equipment Manufacturers (OEMs), serving the Powersport, Marine, RV, Trailer, Outdoor Power Equipment, and Golf Cart industries. Lightspeed's Dealer Management Solution (DMS) enables dealerships to optimize their end-to-end business operations, including sales, parts, service, rentals, accounting, and Customer Relationship Management (CRM). When implemented into their daily operations, Lightspeed helps dealers increase their profitability by selling more units, service, and parts, all while creating a more streamlined experience for customers. For nearly 40 years, Lightspeed has been empowering 4,500+ dealers across North America with the tools and technology they need to manage their dealerships.
The Senior SecurityAnalyst is responsible for team lead activities, such as monitoring, analyzing, and responding to security incidents across enterprise systems, cloud environments, and networks. This role ensures the confidentiality, integrity, and availability of organizational information through proactive detection, incident response, and continuous improvement. The ideal candidate will have a strong technical background in leading threat analysis, SIEM integration and management, vulnerability management, and incident handling.
What you'll do:
Monitor and investigate security alerts and events across SIEM, EDR, and network systems.
Conduct root cause analysis and coordinate remediation of security incidents.
Lead vulnerability assessments and ensure timely patching and mitigation.
Develop and maintain incident response playbooks and escalation procedures.
Collaborate with IT, DevOps, and Development teams to strengthen overall security posture.
Lead proactive threat hunting and continuous tuning of detection mechanisms.
Support internal and external audits (e.g., SOC 2) and risk assessments by providing evidence and guidance.
Perform firewall management, including rule changes, troubleshooting, and SOP development for hybrid cloud/on-prem environments.
Lead to red/blue team exercises and implement findings to improve defenses.
Coordinate and assist with enterprise pen-tests, risk assessments, and compliance initiatives.
Serve as a lead security advisor to business and technical teams, providing guidance on secure design, risk mitigation, and compliance using industry frameworks and best practices.
What you should have:
Qualifications:
Bachelor's degree in Cybersecurity, Information Technology, or a related field, or equivalent experience.
8+ years of experience in informationsecurity, incident response, or SOC operations.
Proven hands-on experience with SIEM tools (Splunk, Sentinel, QRadar, etc.) and EDR/XDR platforms (CrowdStrike, Darktrace, Microsoft Defender).
Strong experience securing and monitoring cloud environments (AWS, Azure).
Deep knowledge of security frameworks (NIST CSF, ISO 27001, SOC 2).
Advanced scripting and automation proficiency (Python, PowerShell, Terraform).
Excellent analytical, problem-solving, and communication skills.
Preferred Qualifications:
Relevant certifications such as AWS Security, CISSP, GCIH, GCIA, GPEN, GWAPT preferred.
Experience integrating AI and automation into security operations workflows.
Hands-on experience performing dynamic application security testing and red team exercises across endpoint and cloud environments.
Expert-level networking and firewall expertise with platforms such as Palo Alto, Cisco, or Checkpoint.
Master's degree in Cybersecurity, Information Technology, or a related field.
Inclusion and Diversity at Lightspeed:
At Lightspeed, we celebrate the uniqueness of every individual and encourage diverse perspectives. We believe that inclusion drives innovation and fosters meaningful connections. We are committed to building an environment where everyone feels valued and empowered to make an impact.
Equal Employment Opportunity Statement:
Lightspeed is an Equal Opportunity Employer and is dedicated to building a diverse and inclusive workforce. All qualified applicants will be considered for employment without regard to race, color, creed, ancestry, national origin, gender, sexual orientation, gender identity, gender expression, marital status, religion, age, disability, veteran status, or any other protected category.
Important Note:
Applicants must be authorized to work in the U.S.
Ready to apply?
Take the next step in your career-apply today and join a team where your skills will make an impact!
$90k-125k yearly est. Auto-Apply 10d ago
Learn more about information security analyst jobs
How much does an information security analyst earn in Lehi, UT?
The average information security analyst in Lehi, UT earns between $58,000 and $119,000 annually. This compares to the national average information security analyst range of $71,000 to $135,000.
Average information security analyst salary in Lehi, UT