19 Sep
|
Digital iTechnology
|
Tirupati
19 Sep
Digital iTechnology
Tirupati
Patch Engineer – Endpoint Vulnerability Analysis & Remediation
nLocation: India Remote
nShift: 5:00 PM – 2:00 AM IST, Monday–Friday
n
n
nPosition Summary
nWe are seeking a highly skilled Patch Engineer to join our Enterprise Patch Management and Vulnerability Remediation team. This role is primarily focused on Windows endpoint patching and vulnerability remediation , including operating system, third-party, and open-source application patching.
nThe ideal candidate will have strong hands-on experience in vulnerability analysis, endpoint patch deployment, application packaging, and remediation validation . The role involves identifying vulnerabilities, determining appropriate remediation strategies, testing patches and application updates, deploying solutions through enterprise endpoint management platforms, and validating successful remediation.
nTop 3 Technical Skills
n
n
- Qualys Vulnerability analysis and remediation
n
- Patch deployment using BigFix or MEMCM
n
- Application packaging
n
n
nPrimary Vulnerability Management Tool: Qualys
nKey Responsibilities
n
n
- Analyze Qualys vulnerability reports and SCA findings to identify vulnerable open-source libraries, third-party applications, and software components across enterprise endpoints.
n
- Investigate vulnerabilities by validating affected software, installed versions, installation paths, dependencies, and potential business impact.
n
- Develop and recommend remediation plans that address vulnerabilities while minimizing operational risk and business disruption.
n
- Research vendor security advisories, release notes, CVEs, and remediation guidance to determine appropriate software versions and security updates.
n
- Perform Windows workstation and server operating system patching and support enterprise-wide vulnerability remediation initiatives.
n
- Deploy patches, application updates, and remediation solutions using BigFix, MEMCM/SCCM, or similar endpoint management platforms .
n
- Test patches, software updates,
and application versions in lower environments before production deployment to ensure functionality, compatibility, and security.
n
- Validate remediation through follow-up vulnerability scans, patch compliance reports, and endpoint validation.
n
- Package and deploy third-party applications and updates where required.
n
- Coordinate with software vendors to open support cases, validate fixes, obtain technical guidance, and resolve product-specific security issues.
n
- Document remediation activities, testing results, deployment procedures, known issues, and recommendations.
n
- Partner with Information Security, Vulnerability Management, Application Support, Desktop Engineering/Packaging, and Infrastructure teams to meet remediation SLAs.
n
- Monitor emerging vulnerabilities, vendor advisories, CVEs, and software lifecycle changes that may impact enterprise applications.
n
- Participate in urgent security patch deployments and remediation activities for critical and zero-day vulnerabilities .
n
- Use Microsoft Excel extensively for large datasets, vulnerability tracking, reconciliation, analysis, and management reporting.
n
nRequired Qualifications
n
n
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or equivalent professional experience.
n
- 7+ years of experience in enterprise patch management, endpoint engineering, application packaging, or vulnerability remediation.
n
- Strong knowledge of Windows workstation and server operating systems .
n
- Strong hands-on experience with at least one enterprise endpoint management platform,
particularly BigFix or MEMCM/SCCM .
n
- Experience using endpoint management tools to deploy patches and remediate vulnerabilities.
n
- Experience analyzing vulnerability reports from Qualys, SCA tools, or similar vulnerability management platforms .
n
- Strong understanding of CVEs, third-party application vulnerabilities, open-source software components, and software dependencies .
n
- Experience with application packaging technologies such as MSI, MSIX, InstallShield, AdminStudio , or similar packaging technologies.
n
- Experience deploying applications through BigFix, Microsoft Intune, MECM/Configuration Manager , or comparable enterprise software distribution platforms.
n
- Strong troubleshooting and root-cause analysis skills, including the ability to identify affected software, versions, installation locations, and dependencies.
n
- Experience working with software vendors to troubleshoot vulnerabilities and validate remediation options.
n
- Robust Microsoft Excel skills, including formulas, data analysis, reconciliation, and reporting across large datasets.
n
- Excellent documentation, communication, and cross-functional collaboration skills.
n
nPreferred Qualifications
n
n
- Experience packaging and deploying third-party application updates through BigFix or MEMCM while following enterprise change-management processes.
n
- Experience with vulnerability management platforms such as Qualys, Tenable, Rapid7, or Microsoft Defender Vulnerability Management .
n
- PowerShell or Python scripting experience for automation, application packaging, patching, or remediation.
n
- Experience supporting regulatory compliance requirements and vulnerability remediation SLAs.
n
- Ability to build strong partnerships with security teams, software vendors, application owners, and infrastructure teams.
n
- Experience handling critical and zero-day vulnerability remediation within aggressive SLA timelines.
n
n
📌 Patch Engineer - Endpoint Vulnerability Analysis & Remediation (Tirupati)
🏢 Digital iTechnology
📍 Tirupati