ARUP Laboratories

Vulnerability Analyst IV

ARUP Laboratories • $95K — $115K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in cybersecurity and vulnerability management.
  • Proficient in conducting security impact analyses (SIA).
  • Strong understanding of operating systems, application software, and cloud architecture security.
  • Experience with vulnerability assessment tools and techniques.
  • Ability to communicate complex technical information to a non-technical audience.

Responsibilities

  • Lead advanced cyber vulnerability assessments across various IT environments.
  • Analyze scan results to prioritize remediation efforts based on risk and severity.
  • Maintain vulnerability tracking systems and compliance reports.
  • Develop and present detailed reports on vulnerability status and remediation progress.
  • Conduct comprehensive risk assessments and recommend security improvements.
  • Collaborate closely with various IT teams to address and resolve vulnerabilities.
  • Provide expert support and training on vulnerability management and incident response.

Benefits

  • Health, dental, and vision insurance coverage.
  • 401(k) plan with company match.
  • Generous paid time off policy.
  • Professional development opportunities.
  • Access to cutting-edge cybersecurity tools and technology.
Full Job Description
Schedule:
Monday - Friday (40 hrs/wk)
8:00 AM - 5:00 PM

Department: IT General - 210

Primary Purpose:

The Vulnerability Analyst conducts extensive research on newly discovered vulnerabilities in operating systems, application software, infrastructure, and firewalls. Serves as a senior technical leader within the Security Operations Center (SOC), responsible for overseeing enterprise-wide vulnerability management strategies. This role investigates, analyzes, and develops methods for exploiting such vulnerabilities. The analyst performs Security Impact Analysis (SIA) to determine how proposed or completed changes to information systems affect overall security. This process involves assessing potential vulnerabilities and risks introduced by modifications to components such as operating systems, networks, software, and security controls. The Vulnerability Analyst reports directly to the Security Operations Center (SOC) Manager.

Essential Functions:

Lead advanced cyber vulnerability assessments of applications, systems, vendor IT networks, and cloud architecture.

Analyze and validate scan results, correlate findings, and determine severity and risk impact to prioritize remediation efforts.

Maintain and update vulnerability tracking systems, dashboards, and compliance reports.

Develop and present reports, briefs, and metrics to communicate vulnerability status, remediation progress, and compliance standing to leadership.

Stay informed about emerging vulnerabilities, CVEs, threat intelligence, and cybersecurity best practices.

Conduct comprehensive risk assessments of IT systems, applications, and business processes, recommending improvements to security controls.

Maintain detailed risk registers by analyzing threat intelligence and vulnerability data to identify emerging risks.

Develop and perform cybersecurity risk assessments and mitigation strategies.

Collaborate with administrators, DevOps teams, researchers, Change Approval Board (CAB), and IT Tech Debt Committee to identify, prioritize, and remediate vulnerabilities.

Lead efforts with remediation teams, system owners, and senior security staff to track and resolve identified vulnerabilities.

Apply advanced techniques threat modeling, penetration testing, and exploit development techniques to identify risks across on-premises and cloud environments.

Contribute to recurring cyber vulnerability updates and prepare executive-level summaries of findings for senior leadership.

Provide subject matter expert support in incident response investigations and provide technical recommendations to strengthen system defenses.

Develop and deliver training and awareness programs for team members and stakeholders on vulnerability identification, remediation, and secure system design practices.

Provide expert support to the Security Operations Center (SOC) Tier 1 and Tier 2 Analyst teams as needed in performing threat detection and incident response.

Physical Requirements:

Stooping: Bending body downward and forward by bending spine at the waist.

Reaching: Extending hand(s) and arm(s) in any direction.

Mobility: The person in this position needs to occasionally move between work sites and inside the office to access file cabinets, office machinery, etc.

Communication: The person in this position will work in a highly collaborative environment which requires frequent, clear, and professional communication with others.

PPE: Biohazard laboratory environment that requires use of personal protective equipment in accordance with CDC and OSHA regulations and company policies.

ARUP Policies and Procedures: To conduct self in compliance with all ARUP Policies and Procedures.

Sedentary Work: Exerting up to 10 pounds of force occasionally and/or negligible amount of force frequently or constantly to lift, carry, push, pull or otherwise move objects.

Fine Motor Control: Picking, pinching, typing or otherwise working on computer equipment.

Vision: Having close, far, and peripheral visual acuity to perform a variety of tasks such as making general observations of depth and distance.

About ARUP Laboratories

ARUP Laboratories is a national clinical and anatomic pathology reference laboratory and a worldwide leader in innovative laboratory research and development. ARUP offers an extensive lab testing menu of highly complex and unique medical tests in clinical and anatomic pathology. Owned by the University of Utah, ARUP Laboratories' clients include more than half of the nation's university teaching hospitals and children's hospitals, as well as multihospital groups, major commercial laboratories, group purchasing organizations, military and government facilities, and major clinics. In addition, ARUP is a worldwide leader in innovative laboratory research and development, led by the efforts of the ARUP Institute for Clinical and Experimental Pathology®.
Learn more about ARUP Laboratories
Size
4,000 employees
Industry
Founded
1983

Similar Jobs

More Jobs at ARUP Laboratories

  • ARUP Laboratories
    Vulnerability Analyst IV
    $95K — $115K *
    Salt Lake City, UT 84118 (Salt Lake County)
    Information Technology
    In-Person
  • ARUP Laboratories
    Data Consultant II
    $80K — $95K *
    Salt Lake City, UT 84118 (Salt Lake County)
    Healthcare
    In-Person
  • ARUP Laboratories
    Group Manager - Ops NYQ
    $95K — $115K *
    Salt Lake City, UT 84118 (Salt Lake County)
    Pharmaceuticals & Biotech
    In-Person
  • ARUP Laboratories
    Software Engineer IV - Biocomputing
    $110K — $130K *
    Salt Lake City, UT 84118 (Salt Lake County)
    Pharmaceuticals & Biotech
    In-Person
  • ARUP Laboratories
    Product Manager II -Technical
    $95K — $115K *
    Salt Lake City, UT 84118 (Salt Lake County)
    Pharmaceuticals & Biotech
    In-Person

More Information Technology Jobs

Find similar Vulnerability Analyst IV jobs: