Patch & Vulnerability Management Engineer
Core
Design, improve, and operationalize vulnerability and patch management processes to strengthen client security posture across complex endpoint, server, and cloud estates.
Role type
Senior IC Patch & Vulnerability Management Engineer
Builds
End-to-end vulnerability assessment, risk-based remediation prioritization, and automated patching operations for enterprise clients.
Domain
Cybersecurity / IT Operations / Cloud & Endpoint Management
Deliverable
Production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
Vulnerability assessment methodologies, risk-based patch prioritization, enterprise endpoint/server patching operations, change-controlled environment management, asset inventory and tagging, operational reporting, automation and scripting (Python, Ansible, PowerShell), API interaction, tool stack optimization.
Preferred skills
Microsoft ecosystem experience (Intune, Azure Update Manager, MECM/SCCM, Tanium), hybrid/cloud environment operations, custom scripting tool development.
Technologies
Intune, Azure Update Manager, MECM/SCCM, Tanium, Python, Ansible, PowerShell
Responsibilities
Deliver end-to-end vulnerability assessment and risk-based remediation prioritization; Partner with stakeholders to validate scope, impact, and remediation approach; Plan and govern patching activities in line with SLAs and change processes; Execute standard and emergency patching with testing and rollback controls; Operate and optimize patching and remediation tooling; Drive automation and scripting to improve efficiency; Maintain accurate asset inventory and produce operational/executive reporting.
Seniority
Senior, hands-on IC