Mountain America Credit Union is a member-owned, not-for-profit financial institution operating across the Intermountain West and the western United States. The credit union serves over one million members through more than 100 branches, offering a full suite of financial products including deposit accounts, auto loans, credit cards, mortgages, SBA loans, and commercial lending solutions. Its structure means there are no shareholders - the institution exists to serve its members.
From a security standpoint, the threat model is what you'd expect: a financial institution with over a million members and a broad product portfolio means PII, account data, transaction systems, and lending platforms all in scope. The attack surface spans member-facing digital channels, branch infrastructure, and backend core banking systems. Regulatory pressure is constant - PCI-DSS, GLBA, NCUA requirements - and the operational tempo reflects that.
The team operates in an environment where protecting member data and financial assets is the baseline expectation. With over 100 physical branches plus digital services, the security posture has to cover endpoint, network, application, and cloud layers simultaneously. No public detail on specific tooling or team size, but the scale - over one million members across a multi-state footprint - demands serious operational discipline.






