Position Overview
We are seeking an experienced Server Patch & Vulnerability Remediation Engineer to join our centralized Patch Management team.
The successful candidate will be responsible for identifying, analyzing, prioritizing, and remediating security vulnerabilities across Windows and Unix server environments. This role requires strong operating system administration skills, hands-on experience with vulnerability remediation, knowledge of third-party and open-source software vulnerabilities, and the ability to develop, test, and deploy automated remediation solutions.
The engineer will work closely with application owners, infrastructure teams, security teams, and software vendors to ensure vulnerabilities are addressed within established remediation timelines while maintaining system stability, availability, and compliance with organizational security standards.
•Windows and Unix Operating System Administration
•Strong hands-on experience administering Windows Server and Unix/Linux operating systems.
•Knowledge of Group Policy Objects (GPOs), shared file systems, user and access management, software installation, configuration, and system administration.
•Ability to troubleshoot operating system, application, and patch installation issues.
•Understanding of server dependencies, system services, permissions, and configurations that may affect patch deployment and remediation.
•Experience supporting enterprise server environments and performing security updates with minimal operational disruption.
•Vulnerability Analysis and Third-Party Software Remediation
•Experience investigating vulnerabilities identified through Software Composition Analysis (SCA), software scanning, and vulnerability assessment tools.
•Ability to analyze vulnerability findings affecting operating systems, third-party applications, open-source components, and installed software.
•Knowledge of software installation paths, package dependencies, vulnerable libraries, application versions, and other factors required to determine the root cause of vulnerabilities.
•Ability to identify appropriate remediation options, including vendor patches, software upgrades, configuration changes, component replacement, or removal of vulnerable software.
•Experience coordinating with software vendors, opening support cases, reviewing release notes, validating remediation recommendations, and implementing tested solutions.
•Ability to develop remediation plans and coordinate with application and infrastructure owners to complete remediation within SLAs.
•Scripting, Automation, and BigFix
•Proficiency in scripting and automation using PowerShell, shell scripting, and other relevant automation technologies.
•Hands-on experience with BigFix or similar enterprise patch management platforms.
•Ability to develop, test, and maintain automation scripts for vulnerability remediation, patch deployment, software upgrades, and compliance validation.
•Experience automating repetitive operational activities to improve remediation efficiency, consistency, and scalability.
•Ability to troubleshoot failed deployments and automate post-remediation verification wherever feasible.
•Application Packaging and Software Deployment
•Knowledge of application packaging, software installation, configuration, and deployment processes is a plus.
•Experience preparing, testing, and deploying third-party and open-source software updates across enterprise server environments.
•Ability to analyze application installation requirements, dependencies, compatibility considerations, and potential operational impacts.
•Understanding of software versioning, package management, installation parameters, and silent installation techniques.
•Experience with BigFix or similar tools for software distribution and deployment is desirable.
•Vulnerability Remediation, Change Management, and Troubleshooting
•Experience executing security patching and vulnerability remediation activities across enterprise server environments.
•Ability to prioritize remediation based on vulnerability severity, exploitability, asset criticality, and organizational remediation timelines.
•Knowledge of change management processes, maintenance windows, implementation plans, rollback procedures, and post-deployment validation.
•Ability to investigate failed patches, installation errors, application compatibility issues, and other remediation blockers.
•Experience coordinating with application owners, infrastructure teams, security teams, and other stakeholders to resolve remediation challenges.
•Ability to maintain accurate remediation records, provide status updates, and support security compliance and audit reporting.