Position: Information Technology Support Engineer
Location: Remote - Must reside in CA
Duration: Multi Year Contract
Pay: up to $50/hr.
Job Description
We are seeking a Vulnerability & Patch Management Administrator to support enterprise security operations across Windows and Linux environments. This role will be responsible for vulnerability remediation, patch management, secure configuration baselines, system hardening, audit logging, and change management activities. The ideal candidate will work closely with Infrastructure and Information Security teams to maintain compliance, reduce security risk, and improve the organization's cybersecurity posture.
Key Responsibilities
- Manage enterprise patch deployment and remediation activities for Windows and Linux servers and endpoints.
- Administer vulnerability management processes, including scan review, risk assessment, remediation tracking, and validation.
- Develop and maintain secure configuration baselines and system hardening standards.
- Monitor systems for configuration drift and implement corrective actions.
- Establish and maintain audit logging standards and configurations.
- Participate in Change Advisory Board (CAB) meetings and provide technical recommendations for infrastructure and security changes.
- Create documentation, procedures, operational standards, and compliance evidence.
- Produce reporting and metrics related to patch compliance, vulnerability remediation, and operational risk.
- Partner with Information Security teams to prioritize and remediate vulnerabilities based on business and security risk.
Must-Have Qualifications
- 3+ years of experience in IT Infrastructure, Systems Administration, Cybersecurity Operations, Vulnerability Management, Endpoint Management, or Server Administration.
- Experience administering Windows Server, Windows endpoints, and Linux operating systems.
- Hands-on experience with vulnerability management tools such as Tenable, Qualys, Rapid7, Microsoft Defender Vulnerability Management, or similar platforms.
- Experience managing enterprise patching solutions such as Microsoft Intune, WSUS, Automox, or equivalent technologies.
- Strong understanding of patch management lifecycle, software deployment processes, and change management methodologies.
- Knowledge of cybersecurity principles, system hardening practices, and security best practices.
- Ability to analyze vulnerability scan results and implement remediation plans.
- Experience creating technical documentation, standards, baselines, and operating procedures.
- Strong troubleshooting, analytical, organizational, and communication skills.
- Experience working with cross-functional infrastructure and security teams to drive remediation efforts.
Preferred Qualifications (Plusses)
- Experience supporting regulated or compliance-driven environments.
- Experience establishing security baselines and configuration standards from the ground up.
- Experience reducing large vulnerability remediation backlogs.
- Exposure to audit logging, security monitoring, and compliance reporting.
- Previous participation in a Change Advisory Board (CAB) process.
- Experience with operational risk management reporting and security metrics.
- Knowledge of CIS benchmarks, NIST standards, or other security frameworks.
- Security certifications such as CompTIA Security+, CISSP, GIAC, Microsoft Security certifications, or equivalent.
- Experience in enterprise environments with a mix of cloud and on-premises infrastructure.
- Automation or scripting experience using PowerShell, Bash, or Python to support patching and remediation activities.