…

Server Patch & Vulnerability Remediation Engineer

UST · IT Services & Consulting

  • Pune, Ahmedabad, Gurgaon, Coimbatore, Kolkata, Trivandrum, Noida, Chennai, Bangalore, Kochi
  • On-site
  • Posted today
  • Cybersecurity

About the job

Position Overview

We are seeking an experienced Server Patch & Vulnerability Remediation Engineer to join our centralized Patch Management team.

The successful candidate will be responsible for identifying, analyzing, prioritizing, and remediating security vulnerabilities across Windows and Unix server environments. This role requires strong operating system administration skills, hands-on experience with vulnerability remediation, knowledge of third-party and open-source software vulnerabilities, and the ability to develop, test, and deploy automated remediation solutions.

The engineer will work closely with application owners, infrastructure teams, security teams, and software vendors to ensure vulnerabilities are addressed within established remediation timelines while maintaining system stability, availability, and compliance with organizational security standards.

Windows and Unix Operating System Administration
Strong hands-on experience administering Windows Server and Unix/Linux operating systems.
Knowledge of Group Policy Objects (GPOs), shared file systems, user and access management, software installation, configuration, and system administration.
Ability to troubleshoot operating system, application, and patch installation issues.
Understanding of server dependencies, system services, permissions, and configurations that may affect patch deployment and remediation.
Experience supporting enterprise server environments and performing security updates with minimal operational disruption.
Vulnerability Analysis and Third-Party Software Remediation
Experience investigating vulnerabilities identified through Software Composition Analysis (SCA), software scanning, and vulnerability assessment tools.
Ability to analyze vulnerability findings affecting operating systems, third-party applications, open-source components, and installed software.
Knowledge of software installation paths, package dependencies, vulnerable libraries, application versions, and other factors required to determine the root cause of vulnerabilities.
Ability to identify appropriate remediation options, including vendor patches, software upgrades, configuration changes, component replacement, or removal of vulnerable software.
Experience coordinating with software vendors, opening support cases, reviewing release notes, validating remediation recommendations, and implementing tested solutions.
Ability to develop remediation plans and coordinate with application and infrastructure owners to complete remediation within SLAs.
Scripting, Automation, and BigFix
Proficiency in scripting and automation using PowerShell, shell scripting, and other relevant automation technologies.
Hands-on experience with BigFix or similar enterprise patch management platforms.
Ability to develop, test, and maintain automation scripts for vulnerability remediation, patch deployment, software upgrades, and compliance validation.
Experience automating repetitive operational activities to improve remediation efficiency, consistency, and scalability.
Ability to troubleshoot failed deployments and automate post-remediation verification wherever feasible.
Application Packaging and Software Deployment
Knowledge of application packaging, software installation, configuration, and deployment processes is a plus.
Experience preparing, testing, and deploying third-party and open-source software updates across enterprise server environments.
Ability to analyze application installation requirements, dependencies, compatibility considerations, and potential operational impacts.
Understanding of software versioning, package management, installation parameters, and silent installation techniques.
Experience with BigFix or similar tools for software distribution and deployment is desirable.
Vulnerability Remediation, Change Management, and Troubleshooting
Experience executing security patching and vulnerability remediation activities across enterprise server environments.
Ability to prioritize remediation based on vulnerability severity, exploitability, asset criticality, and organizational remediation timelines.
Knowledge of change management processes, maintenance windows, implementation plans, rollback procedures, and post-deployment validation.
Ability to investigate failed patches, installation errors, application compatibility issues, and other remediation blockers.
Experience coordinating with application owners, infrastructure teams, security teams, and other stakeholders to resolve remediation challenges.
Ability to maintain accurate remediation records, provide status updates, and support security compliance and audit reporting.

Key Responsibilities

Analyze vulnerability and software scanning findings affecting Windows and Unix/Linux servers.
Investigate reported vulnerabilities to determine the affected software, installation locations, vulnerable components, and appropriate remediation approach.
Develop and execute remediation plans for operating system, third-party, and open-source software vulnerabilities.
Identify applicable vendor fixes, security updates, software upgrades, and alternative treatment options.
Coordinate with software vendors and application owners to obtain remediation guidance and resolve technical dependencies.
Test patches and software updates in non-production environments, validate results, and coordinate production deployment through approved change management processes.
Develop and maintain PowerShell, shell, and BigFix automation to improve patch deployment and vulnerability remediation efficiency.
Troubleshoot patch failures, software installation issues, compatibility problems, and post-deployment incidents.
Perform post-remediation validation to confirm that vulnerabilities have been addressed and systems remain operational.
Track remediation progress, maintain evidence, document exceptions and blockers, and provide accurate status updates to management and security stakeholders.
Partner with infrastructure, application, security, and operations teams to meet remediation SLAs and maintain compliance with organizational security requirements.
Identify opportunities to improve patching processes, automation, deployment reliability, and overall vulnerability remediation effectiveness.

Required Qualifications

Relevant experience in Windows and Unix/Linux server administration, enterprise patch management, vulnerability remediation, or infrastructure operations.
Strong troubleshooting, analytical, and problem-solving skills.
Experience working in a large enterprise IT environment with established change management and security compliance requirements.
Strong written and verbal communication skills, with the ability to coordinate effectively across technical teams and application stakeholders.
Ability to manage multiple remediation activities and meet defined deadlines in a fast-paced operational environment.

Preferred Qualifications

Hands-on experience with BigFix for patch management, software deployment, and automation.
Experience with vulnerability assessment and Software Composition Analysis (SCA) tools such as Qualys or equivalent platforms.
Knowledge of security advisories, CVEs, vulnerable software components, and vendor remediation guidance.
Experience with application packaging and third-party software lifecycle management.
Familiarity with enterprise vulnerability management processes, remediation SLAs, and security compliance requirements.