24 Sep
|
Trigent Software
|
Bengaluru
24 Sep
Trigent Software
Bengaluru
Description
Role Summary
Mid-level engineer to own, manage, and scale our operating system and security patch management lifecycle across our Amazon EC2 fleet. You will ensure high availability, compliance, and zero-downtime execution of critical security updates across diverse Linux environments.
The role requires strong hands-on knowledge of Linux OS internals, kernel behavior, system administration, and security patching, along with the ability to maintain secure, compliant, and stable Linux-based infrastructure at scale..
Key Responsibilities
· Patch Automation: Design, configure, and maintain automated patching workflows using AWS Systems Manager (SSM) Patch Manager and Maintenance Windows.
Baseline Management: Define and test Patch Baselines and Patch Groups for various Linux distributions, including Amazon Linux, RHEL, and Ubuntu
Pre/Post-Patch Validation: Execute pre-patch AMI backups/snapshots, run validation checks, and verify service health post-update
Compliance Reporting: Monitor fleet-wide patch compliance dashboards, remediate non-compliant EC2 instances, and generate security posture reports for audits.
Troubleshooting: Diagnose and resolve patching failures, package dependency conflicts, kernel-level issues, and SSM Agent connectivity problems
Continuous Improvement: Script routine maintenance tasks using Python or Bash to minimize manual intervention
Configuration Management: Maintain OS and environment using Puppet.
Image Management: Build, harden, and promote golden AMIs using AWS EC2 Image Builder.
Enable Skills-Based Hiring No ECMS REQ IDAdditional Details
- ECMS REQ ID : 578870
- Project Location 1 : KRNK | Bengaluru
- Project Location 2 : MAH | PUNE
- Project Location 3 : (No Value)
- Project Location 4 : (No Value)
- Delivery SPOC : Raja Shekhar Yama
- Relevant Experience : 8 years
- Mandatory skills :
Required Skills & ExperienceExperience• Experience in IT operations, cloud administration, or DevOps, with hands-on experience managing Amazon EC2 instances.• Experience administering enterprise endpoint management solutions such as Microsoft Intune, SCCM/MECM, WSUS, or equivalent platforms.• Knowledge of vulnerability management solutions such as Qualys, Tenable, Rapid7, or Microsoft Defender Vulnerability Management.AWS Core Knowledge• Strong proficiency in AWS Systems Manager (SSM), IAM policies, CloudWatch monitoring, and EC2 tagging strategies.• Experience with AWS EC2 Image Builder (AMI Builder), AMI baking, image hardening, and patch automation workflows.OS Administration• Solid working knowledge of Linux command-line administration, including RHEL, Ubuntu, and Amazon Linux.• Strong understanding of Linux OS internals, including kernel, process, service, boot, and package management.• Experience with Linux patching, system hardening, and OS-level troubleshooting.Scripting and Automation• Proficiency in Bash or Python for automation and log analysis.• Familiarity with Terraform and CI/CD-driven infrastructure workflows.Security Mindset• Understanding of vulnerability assessment, CVE tracking, and compliance standards such as CIS and PCI-DSS.• Working knowledge of CS1-level security practices, including secure system administration and patch governance.• Familiarity with enterprise identity and configuration enforcement through Puppet.
- Desired skills :
Required Skills & ExperienceExperience• Experience in IT operations, cloud administration, or DevOps, with hands-on experience managing Amazon EC2 instances.• Experience administering enterprise endpoint management solutions such as Microsoft Intune, SCCM/MECM, WSUS, or equivalent platforms.• Knowledge of vulnerability management solutions such as Qualys, Tenable, Rapid7, or Microsoft Defender Vulnerability Management.AWS Core Knowledge• Strong proficiency in AWS Systems Manager (SSM), IAM policies, CloudWatch monitoring, and EC2 tagging strategies.• Experience with AWS EC2 Image Builder (AMI Builder), AMI baking, image hardening, and patch automation workflows.OS Administration• Solid working knowledge of Linux command-line administration, including RHEL, Ubuntu, and Amazon Linux.• Robust understanding of Linux OS internals, including kernel, process, service, boot, and package management.• Experience with Linux patching, system hardening, and OS-level troubleshooting.Scripting and Automation• Proficiency in Bash or Python for automation and log analysis.• Familiarity with Terraform and CI/CD-driven infrastructure workflows.Security Mindset• Understanding of vulnerability assessment, CVE tracking, and compliance standards such as CIS and PCI-DSS.• Working knowledge of CS1-level security practices, including secure system administration and patch governance.• Familiarity with enterprise identity and configuration enforcement through Puppet.
- Domain (Industry) : Banking
- BGC (Before onboarding / After onboarding) : PreOB
- Total Experience (Ex. 5-7 Years) : 8+ Years
- BGC Details : Infosys Standard Checklist
- BGC Vendor : Any NASSCOM Vendor
- Mode of Interview : Face to Face
- WFO / WFH / Hybrid : Hybrid
- Please enter shift timings : IST with 3 hour overlap with AEDT
- Shift Timings : Others
📌 578870 | Cloud Infrastructure Engineer (Patch & Compliance) | IC | Bengaluru, Pune
🏢 Trigent Software
📍 Bengaluru