Source description
About the role
">Principal Security Patch Management Engineer for ENDPOINT 7-12 Years Bengaluru Endpoint Vulnerability Management Patch Management JAMF Intune MS Defender Automox Powershell Job Title: Principal Security Patch Management Engineer for ENDPOINT Location: Bangalore (Hybrid) Shift: Afternoon Shift (02:00 PM 10:00 PM IST) Experience: 7-10 years of overall experience. 5+ years of relevant experience. Job Summary: We are seeking an experienced Principal Security Patch Management Engineer to lead the enterprise Endpoint vulnerability remediation and patch management program. This role is responsible for developing and executing patch management strategies, reducing organizational cyber risk, driving automation, and ensuring timely remediation of security vulnerabilities across endpoints, cloud infrastructure, and enterprise applications. As a technical leader, you will collaborate with Security Operations, Infrastructure, Cloud Engineering, DevOps, Application Owners, and Compliance teams to establish governance, optimize patch deployment processes, and improve the organizations overall security posture. Key Responsibilities: Lead the enterprise endpoint Patch and Vulnerability Management program. Develop and maintain patch management policies, standards, and operational procedures. Define patch prioritization based on CVSS scores, exploitability, threat intelligence, business criticality, and risk. Manage operating system and application patching across Windows, macOS, virtual machines, cloud platforms, firmware, and third-party software. Coordinate emergency patch deployments for zero-day vulnerabilities and critical / high security incidents. Integrate vulnerability scanning tools with patch management platforms to automate remediation workflows. Partner with Infrastructure, Cloud, Platform Engineering, and Application teams to reduce remediation timelines. Design and implement automated patch deployment pipelines using scripting and configuration management tools. Monitor patch compliance, remediation SLAs, and vulnerability trends through dashboards and executive reporting. Perform root cause analysis for patch failures and recommend preventive improvements. Support audits and regulatory compliance requirements including ISO 27001, SOC 2, PCI DSS, HIPAA, NIST, Cyber Essentials Plus (Mandatory) and CIS Controls. Evaluate emerging technologies and recommend improvements to enterprise patch management capabilities. Mentor engineers and provide technical leadership across the organization. Required Qualifications: Bachelors degree in Computer Science, Information Security, Information Technology, or related field. 7-10 years of experience in Infrastructure, Systems Engineering, Cybersecurity, or Vulnerability Management. 5+ years leading enterprise patch management programs. Deep knowledge of Windows Client OS, Linux, VMware, cloud platforms (AWS, Azure, GCP), and enterprise endpoint management. Experience with vulnerability management tools such as: (Any 1 experience in Ok to consider) o Qualys o Rapid7 o Microsoft Defender Vulnerability Management Experience with enterprise patch management solutions such as: o Microsoft Intune (Mandatory) o JAMF (Mandatory) o Automox (Mandatory) o NinjaOne Patch Management (Optional) Strong scripting skills using PowerShell (Mandatory), Python / Bash Experience automating operational processes using Infrastructure as Code and configuration management tools. Solid understanding of vulnerability scoring (CVSS), MITRE ATTCCK, and threat intelligence. Experience supporting large-scale enterprise environments with thousands of endpoints. Technical Skills: Vulnerability Management Patch Management Microsoft Intune JAMF PowerShell Python Bash Azure Microsoft Defender Qualys Rapid7 Automation Risk Management Key Competencies: Technical Leadership Strategic Planning Risk Assessment Problem Solving Cross-functional Collaboration Incident Response Support Process Improvement Communication and Executive Reporting Decision Making Mentoring and Coaching Primary Skills: Endpoint Vulnerability Management, Patch Management, JAMF, Intune, MS Defender, Automox, Powershell Secondary Skills: Python, Bash, Qualys Disclaimer : This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
More at QUARKS TECHNOSOFT LLC