Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Analyst IT Vulnerability Management

$70k - $120k
Full-time

JetBlue Airways Corporation

Position Summary At JetBlue, cybersecurity is driven by risk management, threat-informed defense, and operational resilience. The Analyst, Vulnerability Management - Cloud supports JetBlue's vulnerability management program across cloud-hosted infrastructure, cloud control planes, containers, infrastructure as code, and application-adjacent cloud services. This Crewmember identifies, analyzes, validates, reports, and coordinates remediation of cloud vulnerabilities and misconfigurations across JetBlue's multi-cloud environment, including AWS, Azure, GCP, OCI, and future cloud platforms as adopted. The Analyst works closely with Cybersecurity, Cloud Engineering, DevOps, Infrastructure, Application, Product, GRC, Threat Intelligence, and Managed Service Provider teams to improve vulnerability visibility, remediation accountability, and risk-based prioritization. Essential Responsibilities Conduct and support vulnerability assessments across cloud-hosted infrastructure, cloud configurations, containers, Kubernetes, infrastructure as code, application components, and related cloud services. Use approved vulnerability management, cloud security, CSPM/CNAPP, container, code-scanning, and external attack-surface tools to identify vulnerabilities, misconfigurations, exposed services, outdated software, and insecure deployment patterns. Analyze findings using severity, exploitability, CISA KEV status, exposure, asset criticality, data sensitivity, compensating controls, and business impact. Coordinate with cloud engineering, DevOps, application, infrastructure, and product owners to prioritize and track remediation through patching, configuration changes, code changes, image updates, infrastructure-as-code changes, or compensating controls. Validate remediation through rescans, evidence review, configuration review, ticket closure checks, or other approved verification methods. Assist with authenticated scan coverage, agent deployment coordination, cloud account onboarding, asset tagging, ownership validation, and CMDB/application mapping. Support remediation governance by tracking findings against JetBlue policy timelines and escalating overdue, disputed, or blocked remediation items. Collaborate with engineering and QA teams to ensure proper Software Development Life Cycle (SDLC) practices and minimize the release of vulnerable software through the deployment pipeline. Route non-remediated or delayed findings through the approved cyber risk exception / acceptance process when required. Configure and maintain vulnerability metrics and reporting for cloud findings, remediation progress, risk exposure, aging, coverage gaps, recurring issues, and exception trends. Partner with Threat Intelligence, Detection & Response, Penetration Testing, and Application Security teams to incorporate active exploitation, external exposure, attack path, and test-result context into prioritization. Support Cyber compliance requirements with evidence, reporting, and control validation for PCI, SOX, TSA-related obligations, and other applicable oversight frameworks. Participate in cross-functional working sessions to improve cloud vulnerability remediation processes, reduce direct exposure, strengthen compensating controls, and improve cloud security visibility. Other duties as assigned. Minimum Experience and Qualifications Bachelor's Degree in Computer Science, Information Security, Information Technology, Cybersecurity, Cloud Computing, or a related field; OR demonstrated capability to perform job responsibilities with a High School Diploma/GED and at least four (4) years of previous relevant work experience One (1) year of experience in vulnerability management, cloud security, security operations, infrastructure security, DevOps, application security, or a related cybersecurity role. Working knowledge of at least one major cloud provider; AWS/Azure preferred. Experience with vulnerability scanning tools such as Tenable, Qualys, Rapid7, Prisma Cloud, Wiz, Defender for Cloud, AWS Inspector, or similar. Understanding of cloud shared responsibility models, cloud networking, identity, compute, storage, containers, Kubernetes, and infrastructure-as-code concepts. Ability to analyze scan results, identify false positives, validate risk, and communicate remediation needs clearly. Knowledge of vulnerability risk factors such as CVSS, exploitability, internet exposure, asset criticality, data sensitivity, compensating controls, and remediation timelines. Familiarity with patch management, configuration remediation, change management, and remediation validation. Strong written and verbal communication skills with the ability to interact effectively with stakeholders across all levels of the organization. Ability to work collaboratively with Cybersecurity, IT, DevOps, infrastructure, product, application, compliance, and managed service provider teams.Available for occasional overnight travel (10%). Must pass a pre-employment drug test. Must be legally eligible to work in the country in which the position is located. Authorization to work in the United States is required; this position is not eligible for visa sponsorship. Preferred Experience and Qualifications Two (2) years of experience in vulnerability management, cloud security, DevSecOps, infrastructure security, or application security. Experience with CSPM, CNAPP, CWPP, container scanning, code scanning, IaC scanning, or external attack surface management. Working knowledge with AWS Systems Manager, Azure Update Manager, cloud-native patching tools, or enterprise patch platforms. Understanding with Kubernetes, container registries, golden images, base-image maintenance, and CI/CD security gates. Experience using Terraform, CloudFormation, ARM/Bicep, Kubernetes manifests, or other infrastructure-as-code technologies. Knowledge of NIST CSF, CIS Controls, CIS Benchmarks, PCI DSS, TSA cybersecurity requirements, ISO 27001, or similar standards. Certifications such as Security+, CySA+, AWS Security Specialty, Azure Security Engineer, Google Professional Cloud Security Engineer, CCSK, CCSP, or equivalent. Crewmember Expectations Regular attendance and punctuality. Potential need to work flexible hours and be available to respond on short notice. Able to maintain a professional appearance. When working or traveling on JetBlue flights, and if time permits, all capable crewmembers are asked to assist with light cleaning of aircraft. Must be an appropriate organizational fit for the JetBlue culture, that is, exhibit the JetBlue values of Safety, Caring, Integrity, Passion and Fun. Promote JetBlue's #1 value of safety as a Safety Ambassador, supporting JetBlue's Safety Management System components, Safety Policy, and behavioral standards. Identify safety and/or security concerns, issues, incidents or hazards that should be reported and report them whenever possible and by any means necessary including JetBlue's confidential reporting systems (Aviation Safety Action Program (ASAP) or Safety Action Report (SAR)) The use of ChatGPT or any other automated tool during the interview process will disqualify a candidate from being considered for the position. Equipment Computer and other office equipment. Work Environment Traditional office environment. Physical Effort Generally not required, or up to 10 pounds occasionally, 0 pounds frequently. (Sedentary) Compensation The base pay range for this position is between $70,000.00 and $120,000.00 per year. Base pay is one component of JetBlue’s total compensation package, which may also include access to healthcare benefits, a 401(k) plan and company match, crewmember stock purchase plan, short-term and long-term disability coverage, basic life insurance, free space available travel on JetBlue, and more.

#LI-AC1

#LI-Hybrid

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Analyst IT Vulnerability Management in Utah vacancy
  • $70k - $120k

     ...Analyst IT Vulnerability Management Location: Long Island City, NY, US, 11101 Washington, DC, US, 20005 Orlando, FL, US, 32827 Salt Lake City, UT, US, 84121 Req ID: 58229 Category: Information Technology Position Summary: At JetBlue, cybersecurity is driven by risk... 
    Suggested
    Temporary work
    Work experience placement
    Night shift

    JetBlue

    Salt Lake City, UT
    22 hours ago
  •  ...Principal Reporting Analyst This Reporting Analyst will join the Commercial and Private...  ...the development of briefings for executive management Aggregate data from multiple sources...  ...Large Financial Institution performing in an IT capacity ~3+ years supporting SDLC ~2... 
    Suggested
    Work experience placement

    Professional Recruiters

    Salt Lake City, UT
    4 days ago
  •  ...Role: Business Systems Analyst The Firm: Wasatch Global Investors is a stable, independent, employee-owned investment management firm in Salt Lake City, Utah. We focus exclusively...  ...up-to-date on the latest process and IT advancements to automate and modernize... 
    Suggested
    Work experience placement

    Wasatch Global Investors

    Salt Lake City, UT
    2 days ago
  •  ...Conservice: Conservice is a fast-growing leader in utility management services, committed to enhancing operational efficiency and...  ...through data. We are seeking a dynamic and experienced Business Analyst to join our analytics team. This individual will play a... 
    Suggested

    Conservice

    Logan, UT
    2 days ago
  •  ...operating as a collection of great banks under local brands and management teams in high-growth western markets. Zions is regularly...  ...Zions Bancorporation is now accepting resumes for our Business Analyst position in our Loan Collections department located in at our... 
    Suggested
    Work experience placement
    Work at office
    Local area
    Flexible hours

    Zions Bancorporation

    Midvale, UT
    4 days ago
  • $60k - $66k

     ...Number PRN45299B Job Title Technical Business Analysts Working Title Technical Business Analyst I...  ...Biomedical Informatics Core (BMIC) on the core application and data management, user services support team to provide support to research teams... 
    Full time
    Part time
    Work experience placement
    Work at office
    Shift work

    University of Utah

    Salt Lake City, UT
    4 days ago
  •  ...implementation and ongoing optimization of Karbon, our firm-wide practice management platform, and provide support across other key business...  ...services firm providing tax, accounting, assurance, IT consulting, and wealth management services to small and medium sized... 
    Work at office
    Remote work

    Platform Accounting

    Salt Lake City, UT
    3 days ago
  •  ...Job Description The IAR Lead Data Analyst is responsible for extracting, processing...  ...leaders across IAR, Data Engineering, Product Management, Finance, EdTech, and Faculty staff. They...  ...from analyses and research, making it accessible in ways that increase the university... 
    Full time
    Flexible hours

    Western Governors University

    Salt Lake City, UT
    5 days ago
  •  ...IT Software QA Analyst III or Sr. Schedule: Monday - Friday (40 hrs/wk) 8:00 AM - 5:00 PM Department: IT Software QA - 215 Primary...  ...progress and test results. Communicate with product team members, management and technical support on test efforts and support needs.... 
    Work at office
    Monday to Friday

    ARUP Laboratories

    Salt Lake City, UT
    2 days ago
  • $32.9k - $63.77k

     ...Number PRN45334B Job Title Financial Reporting Analysts Working Title Grant Financial Analyst I/II...  ...and beyond. Within this environment, the Office of Research Management & Compliance (RMC) plays a critical role in ensuring research... 
    Full time
    Part time
    Work experience placement
    Work at office
    Monday to Friday
    Flexible hours
    Shift work

    University of Utah

    Salt Lake City, UT
    1 day ago
  • $41.59 - $70.69 per hour

     ...IT Analyst III - GIS Data Analyst/Programmer FT / PT Status - Full-Time Salary - $41.59 - $70.69 Hourly Wage Remote Work / In...  ...position's eligibility for telework is established by agency management and is subject to change at their discretion at any time and for... 
    Hourly pay
    Full time
    Work at office
    Local area
    Remote work
    2 days per week

    Utah Division of Human Resource Management

    Taylorsville, UT
    2 days ago
  • $137.5k - $171.88k

     ...service, and world-class user experience design. As a Lead Data Analyst , you will be the primary technical lead for our most...  ...governance and compliance standards. Advanced Project & Knowledge Management: Oversee the reporting roadmap and project lifecycle via Jira... 
    Full time
    Work at office
    Flexible hours
    2 days per week

    Collective Health

    Lehi, UT
    1 day ago
  • $60k - $65k

    About the Role iCapital is seeking an Alternative Data Management Analyst to join the Data Solutions team. This individual must be comfortable working in a dynamic, performance-driven, fast-paced environment, and committed to delivering a high-quality, accurate product... 
    Full time
    Work at office
    Remote work

    iCapital

    Salt Lake City, UT
    4 days ago
  •  ...ZipRecruiter SENIOR CYBER SECURITY ANALYST III (ISSM)   This is a...  ...· Coordinate with Risk Management Framework team to ensure design...  ...· Perform regular STIG and vulnerability analysis in compliance with DoD...  ...all operated and maintained IT assets, recommending corrective... 

    ISSE SERVICES LLC

    Clearfield, UT
    5 days ago
  • $100k - $135k

     ...This individual will be responsible for moving and transforming data and developing a deep understanding of the business context behind it and help teams act on insights. Responsibilities Develop and automate large scale, high-performance data platform pipelines and... 
    Full time
    Work at office
    Remote work

    iCapital

    Salt Lake City, UT
    1 day ago
  •  ...Job Description Job Description The Management Trust Position Title: Reserve Analyst Location: St. George and Lindon, UT Reporting To: Assistant Director of Central Reserves Status: Exempt, Full-Time Salary: DOE COMPANY PROFILE: The Management... 
    Full time
    Work at office
    Relocation
    Monday to Friday
    Shift work
    Night shift

    The Management Association, Inc.

    Saint George, UT
    1 day ago
  •  ...Senior Cyber and Technology Risk Analyst serves as a member of the Cyber and Technology Risk Management team in our second line of...  ...Assess risk and control gaps of IT systems, processes, and...  ...scenarios across domains such as vulnerability management, resilience, SDLC,... 
    Full time
    Work experience placement
    Work at office
    Remote work

    Mountain America Credit Union

    Sandy, UT
    1 day ago
  •  ...intention at everystage;from design and development to construction, management, and community impact. Every detail reflects a belief that...  ...seen,safeand valued. Job Description: The Development Analyst will focus primarily on multifamily projects, especially those... 
    Full time
    Temporary work
    Work at office
    Monday to Friday
    Flexible hours

    Lotus Company

    Salt Lake City, UT
    4 days ago
  •  ...Sr Metering Analyst location: SALT LAKE CITY, UT, US, 84116 Company: PacifiCorp POWER YOUR GREATNESS PacifiCorp...  ...and recommendations. Presents analysis and recommendations to management and may implement selected alternative. Analyses include, but... 
    Full time
    Temporary work
    Local area

    PacifiCorp

    Salt Lake City, UT
    9 days ago
  • $75.2k - $124.1k

     ...range of clients from our most venerable institutions to dynamic new entrants across Banking and Capital Markets, Wealth and Asset Management and Insurance. Our purpose is to help build a financial services industry in which financial institutions are trusted and... 
    Full time
    Summer holiday
    Flexible hours

    EY

    Utah
    15 hours ago
  • $58k - $65k

     ...Cybersecurity Information Analyst Location 1366 S. Legend Hills Dr., Suite 210, Clearfield, UT, 84015, United States Base Pay $...  ...Analyst Employee Type FT Exempt Required Degree High school Manage Others No Minimum Experience 2 Years Description Summary... 

    ISSE Services

    Hill Air Force Base, UT
    4 days ago
  •  .... Subject: Cybersecurity Analyst I (Junior) Location: Clearfield...  ...and provide input for Risk Management Framework packages to the...  ...updates to the PM Perform vulnerability analysis and STIG validation...  ...all operated and maintained IT assets, recommending corrective... 

    ISSE Services

    Clearfield, UT
    3 days ago
  •  ...thrive! KēSTA I.T. is actively seeking a Sr. Data Governance Analyst for an immediate full-time opportunity with our industry...  ...individual oversees data validation and stewardship processes, manages complex data structures, and supports strategic reporting and data... 
    Permanent employment
    Full time
    Temporary work
    Immediate start

    KēSTA I.T.

    Draper, UT
    23 days ago
  •  ...Florida. We provide flexible financing solutions to small businesses across the United States. We are seeking a Senior Data Protection Analyst (DLP) to lead our Data Egress & Collaboration Security program. This role focuses on preventing unauthorized data exfiltration,... 
    Remote work
    Monday to Friday
    Flexible hours

    One Park Financial

    Salt Lake City, UT
    5 days ago
  •  ...00+ funds and SPVs, representing nearly $185B in assets under management, with tools designed to enhance the strategic impact of fund CFOs...  ...markets data. The Problems You’ll Solve As a Data Ops Analyst, you will be responsible for the lifecycle of quarterly data... 
    Work at office

    Carta

    Sandy, UT
    17 days ago
  • $15.05 - $23.08 per hour

     ...Background Verification Analyst Since 2003, Entrata has evolved from a visionary, student-led startup into a global leader in AI-driven property management technology. Today, we power the industry's most essential operating system, serving owners and residents worldwide... 
    Local area
    Remote work
    Worldwide
    Flexible hours

    Entrata

    Salt Lake City, UT
    3 days ago
  •  ...of a portfolio of companies managed by Waseyabek Development Company...  ...Senior Business Intelligence Analyst (BIA) supports the Program...  ...functional line for the Hill CEDC IT Operations & Maintenance...  ...cybersecurity analytics, including vulnerability trends, system hardening... 
    Contract work
    For subcontractor
    Casual work
    Work at office
    Monday to Friday
    Afternoon shift

    WASEYABEK DEVELOPMENT COMPANY LLC

    Hill Air Force Base, UT
    7 days ago
  •  ...Strategy Analyst Or Associate PDQ, founded in Salt Lake City, UT, USA, makes device management simple, secure, and Pretty Damn Quick. IT teams use our products to reduce complexity, improve efficiency, and enhance control in their unique environments. We are backed... 
    Full time
    Temporary work
    H1b
    Local area
    Flexible hours

    PDQ

    Salt Lake City, UT
    9 days ago
  • $65k - $70k

     ...know how to rise to a challenge and handle it head on. EōS Fitness' Core Purpose is to...  ...is growing fast and looking for an IT Analyst who loves supporting reliable systems, solving...  ...(including PowerShell) Mobile device management (Intune and JAMF Pro) Software... 
    Daily paid
    Full time
    Part time
    Work at office

    EŌS Fitness

    Salt Lake City, UT
    1 day ago
  •  ...energy, exploration, and connection.   Reports to: Sr. Pricing Analyst Location: Cottonwood Heights, Utah (Hybrid - 3x/week in-...  ..., your background, and what you are looking for. # Hiring Manager Interview - Conversation with the Sr. Pricing Analyst focused... 
    Price work
    Seasonal work
    Work at office
    Remote work

    CSC Generation

    Cottonwood Heights, UT
    7 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Analyst IT Vulnerability Management. Be the first to apply!