Network & Systems Engineer (Vulnerability Management)

gruve

Dubai

On-site

AED 240,000 - 360,000

Full time

8 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Gruve seeks an onsite engineer to lead remediation at client premises. You will run Qualys VMDR scans, extract vulnerability data, and coordinate patching across Windows and Linux systems, AD, Exchange, and network devices.

You will work closely with client teams, perform risk-based prioritization, and manage change requests through CAB meetings, including physical access where needed. Strong communication and security screening are essential.

Qualifications

  • 3-6 years in network/systems engineering with hands-on patching and vulnerability remediation.
  • Strong hands-on patching of Windows Server and Linux systems.

Responsibilities

  • Run Qualys VMDR scans and extract vulnerability details, severities, and remediation guidance.
  • Prioritise findings with client stakeholders in person and align to asset criticality.
  • Patch and upgrade Windows, Linux, Exchange, AD, and related infrastructure across on-site endpoints.
  • Coordinate on-site remediation with restricted access assets and change management.
  • Raise and execute Change Requests, attend CAB meetings on site.
  • Perform post-remediation verification scans and maintain vulnerability registers.

Skills

Vulnerability remediation
Patch management
Customer-facing
Scripting (PowerShell/Bash)

Tools

Qualys VMDR
Splunk Add-on

Job description

About Gruve

Gruve is an innovative software services startup dedicated to transforming enterprises to AI powerhouses. We specialize in cybersecurity, customer experience, cloud infrastructure, and advanced technologies such as Large Language Models (LLMs). Our mission is to assist our customers in their business strategies utilizing their data to make more intelligent decisions. As a well-funded early-stage startup, Gruve offers a dynamic environment with strong customer and partner networks.

Position Summary

The onsite engineer is Gruve's day-to-day presence at the customer site and the hands-on owner of the remediation cycle on the client's premises. Working from the client's own environment, the engineer runs Qualys VMDR scans, obtains vulnerability details, prioritises findings with the system owners face to face, and fixes and patches the affected end devices under formal change management with tested rollback. The role also covers physical and locally restricted assets that cannot be reached remotely, performs the daily client upload during business hours, and represents the service in the client's operational and change meetings

Key Responsibilities
  • Run Qualys VMDR scans from the client environment and extract vulnerability details, severities, affected assets, and remediation guidance.
  • Prioritise findings with the client's infrastructure, application, and security owners in person, aligned to ALKASHIF threat context and asset criticality.
  • Fix vulnerabilities and apply patches across in-scope end devices - Windows and Linux servers, Microsoft Exchange, Active Directory, enterprise applications and databases, network devices (routers/switches), security devices (firewalls/NAC/IPS/IDS), cloud workloads, and virtualization (VMware/Hyper-V).
  • Remediate assets that require onsite or locally-restricted access - isolated/air-gapped segments, out-of-band and console access, jump hosts, appliances and physical devices not reachable from outside the client network.
  • Raise and execute Change Requests for each patching activity - impact, risk classification, schedule, and tested rollback - and attend the client's CAB and operational meetings onsite.
  • Execute patching within approved maintenance windows using staggered rollout, with the ability to intervene physically if a change fails.
  • Perform post-remediation verification re-scans and keep the vulnerability register and aging report current to verified closure.
  • Perform the daily Client upload via the Qualys Splunk Add-on during business hours; monitor upload health and troubleshoot the Add-on so Availability stays compliant.
  • Coordinate handover to the offsite engineer (Engineer 2) for after-hours and weekend continuation of open remediation activity.
  • Act as the customer-facing point of contact onsite for VM queries, evidence requests, audits, and site walkthroughs.
  • Contribute findings, patch-time, coverage, and availability data to the weekly and monthly reporting pack.
Basic Qualifications
  • 3-6 years in network/systems engineering with hands-on patching and vulnerability remediation.
  • Familiar with Qualys (VMDR) to run scans and obtain vulnerability details and reports; Qualys Splunk Add-on familiarity strongly preferred.
  • Strong hands-on patching of Windows Server and Linux (WSUS/SCCM, package managers), including Microsoft Exchange and Active Directory.
  • Able to patch/upgrade network devices (routers/switches), security devices (firewalls/NAC/IPS/IDS), virtualization hosts (VMware/Hyper-V), and cloud workloads.
  • Comfortable working in a data centre / server-room environment, including console, out-of-band, and physical device access.
  • Understanding of CVSS/CVE, the vulnerability management lifecycle, and ITIL change management / CR processes with rollback.
  • Familiarity with Splunk/SIEM; scripting (PowerShell / Bash) an advantage.
  • Strong customer-facing communication, documentation, coordination, and written-English skills - this role sits with the client every day.
  • Must be able to work onsite in Dubai full time and pass the client's security screening / site access requirements.
Preferred Qualifications
  • Preferred the certifications in Qualys VMDR; MCSA / RHCSA (Windows / Linux); CompTIA Security+ / Network+; CCNA; Azure Administrator; ITIL Foundation
  • Presentable and confident in front of stakeholders;
  • Disciplined about daily cadence and SLAs
  • Comfortable performing production changes within maintenance windows with rollback discipline in a governed,
  • Audit-Ready Environment
Why Gruve

At Gruve, we foster a culture of innovation, collaboration, and continuous learning. We are committed to building a diverse and inclusive workplace where everyone can thrive and contribute their best work. If you're passionate about technology and eager to make an impact, we'd love to hear from you.

Gruve is an equal opportunity employer. We welcome applicants from all backgrounds and thank all who apply; however, only those selected for an interview will b

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Network & Security Engineer
Network & Security Engineer

gruve • Dubai

On-site
AED 320,000 - 520,000
Network & Security Engineer
Network & Security Engineer

Gruve Inc. • Dubai

On-site
AED 360,000 - 600,000
Onsite Vulnerability Remediation Engineer
Onsite Vulnerability Remediation Engineer

gruve • Dubai

On-site
AED 240,000 - 360,000
Senior Network & Security Engineer - Cloud & Firewall Lead
Senior Network & Security Engineer - Cloud & Firewall Lead

gruve • Dubai

On-site
AED 320,000 - 520,000
Vulnerability Management Analyst
Vulnerability Management Analyst

Salt Digital Recruitment • Dubai

On-site
AED 167,400 - 279,000
Rapid7 Vulnerability Management Engineer
Rapid7 Vulnerability Management Engineer

VaporVM • United Arab Emirates

On-site
AED 200,000 - 360,000
Senior Network & Security Engineer — Lead Remediation & KPIs
Senior Network & Security Engineer — Lead Remediation & KPIs

Gruve Inc. • Dubai

On-site
AED 360,000 - 600,000
IT Engineer
IT Engineer

AVAR • Dubai

On-site
Senior Security Engineer – Vulnerability Management
Senior Security Engineer – Vulnerability Management

Deriv • Dubai

On-site
AED 164,000 - 328,000
Systems Specialist
Systems Specialist

Miral • Abu Dhabi

On-site
AED 240,000 - 360,000