Analyst III - Information Security
UST · IT Services & Consulting
- Bangalore, Chennai
- On-site
- Posted today
- Cybersecurity
About the job
Linux Patch & Vulnerability Management Engineer Job Summary We are seeking an experienced Linux Patch & Vulnerability Management Engineer responsible for managing enterprise Linux server patching, vulnerability remediation, and security compliance activities. The role involves planning, testing, deploying, and validating operating system patches while ensuring system stability, security compliance, and operational excellence across the Linux infrastructure estate. Key Responsibilities Linux Server Administration Maintain and support Linux servers, including Red Hat Enterprise Linux (RHEL) and related distributions. Manage repositories, package configurations, and operating system baselines. Install, upgrade, and troubleshoot operating system patches and packages. Resolve package dependencies and conflicts. Perform planned server reboots and system maintenance activities. Troubleshoot and resolve issues arising from patch deployments. Validate application and operating system health following patch implementation. Provide technical documentation and evidence for compliance and audit requirements. Patch Management Develop monthly and quarterly patch management plans. Review vendor security advisories and released patches. Identify applicable patches for server groups and environments. Coordinate patch testing and validation before production deployment. Create patch deployment schedules and maintenance plans. Deploy patches using enterprise tools such as Ansible, BigFix, Satellite, or similar platforms. Monitor patch deployment success, failures, and exceptions. Coordinate maintenance windows with infrastructure and application teams. Troubleshoot failed patch installations and deployment issues. Perform post-patch validation and system health checks. Track patch compliance and remediation metrics. Generate patching, compliance, and deployment reports. Escalate systems that cannot be patched within defined timelines. Vulnerability Management Manage vulnerability management and remediation programs. Review vulnerability assessment and scanner findings. Analyze CVEs, security advisories, and associated risks. Determine whether identified vulnerabilities affect specific Linux servers and services. Prioritize vulnerabilities based on severity, exploitability, asset criticality, and business impact. Define remediation timelines and Service Level Agreements (SLAs). Map vulnerabilities to required patches, configuration changes, or remediation actions. Assign and coordinate remediation tasks with infrastructure and application support teams. Monitor critical, high-risk, and overdue vulnerabilities. Coordinate enterprise vulnerability remediation campaigns. Ensure vulnerabilities are remediated, mitigated, or formally risk accepted according to governance requirements. Required Skills & Experience Strong experience administering Linux environments (RHEL/CentOS/Rocky Linux/Oracle Linux). Expertise in Linux package management (RPM, YUM, DNF). Hands-on experience with enterprise patch management processes. Knowledge of vulnerability management and security remediation practices. Experience analyzing CVEs, vendor security bulletins, and vulnerability scanner reports. Experience with patch deployment tools such as Ansible, BigFix, Red Hat Satellite, or equivalent. Strong troubleshooting skills related to operating systems, patching, and system performance. Understanding of security compliance frameworks and audit requirements. Experience working with maintenance windows, change management, and production support environments. Strong coordination and stakeholder management skills. Preferred Qualifications Bachelor's degree in Computer Science, Information Technology, or related field. Red Hat Certified System Administrator (RHCSA) or Red Hat Certified Engineer (RHCE). Security certifications such as Security+, CISSP, or equivalent. Experience with enterprise vulnerability scanning tools such as Qualys, Tenable/Nessus, Rapid7, or similar solutions. Experience working in regulated enterprise environments with strict compliance requirements. Key Deliverables Timely deployment of operating system patches. Improved Linux patch compliance across environments. Reduction of critical and high-risk vulnerabilities. Accurate vulnerability reporting and remediation tracking. Successful completion of security audits and compliance reviews. Stable and secure Linux infrastructure with minimal patch-related incidents.