Sr. Patching and Vulnerability Management Analyst (Hybrid)

Kinder Morgan, Inc.

Colorado Springs (CO)

On-site

USD 110,000 - 140,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Kinder Morgan, Inc. seeks a Sr.

Patching and Vulnerability Management Analyst to support enterprise-wide patching and remediation across Windows servers and endpoints, in a collaborative team of SCCM/MECM and security professionals. The ideal candidate will bring automation skills and a proactive approach to improving patch compliance and reducing security risk while working with peers, security, and infrastructure teams.

Qualifications

  • Bachelor’s degree or equivalent experience in a related field.
  • 3-5+ years of experience with Microsoft Endpoint Configuration Manager (SCCM/MECM).
  • Experience supporting enterprise Windows patching environments.
  • Experience handling zero-day and out-of-band patching scenarios.
  • Strong knowledge of Windows Server and Windows 10/11; Windows Update processes.
  • Proficiency in PowerShell scripting and automation.
  • Experience with vulnerability remediation processes and CVE/CVSS scoring.
  • Solid understanding of AD, DNS, DHCP and networking fundamentals.

Responsibilities

  • Design, maintain, and optimize SCCM/MECM infrastructure.
  • Monitor SCCM client health and resolve performance issues.
  • Troubleshoot deployment and update-related issues with the team.
  • Execute end-to-end Windows patch lifecycle (assessment, testing, deployment, validation, reporting).
  • Participate in monthly Patch Tuesday cycles and urgent patching activities.
  • Support vulnerability assessment and remediation by analyzing CVE/CVSS data.
  • Develop and maintain PowerShell scripts to automate tasks.
  • Collaborate with security and infrastructure teams and document procedures.

Skills

SCCM/MECM
PowerShell scripting
Active Directory
DNS
DHCP
Windows Server
Windows Update troubleshooting
Zero-day patching
Risk-based prioritization

Education

Bachelor’s degree in Computer Science, Information Systems, Engineering, or related field

Tools

SCCM/MECM
Intune / Endpoint Manager
Vulnerability Management tools

Job description

What We Are Looking For

Primary Purpose: We are seeking a skilled Sr. Patching and Vulnerability Management Analyst to support enterprise-wide patch management and vulnerability remediation across Windows servers and endpoints. This role operates as part of a collaborative team of SCCM/MECM and security professionals, contributing to the design, optimization, and execution of patching strategies.

The ideal candidate brings strong technical expertise, automation skills, and a proactive approach to improving patch compliance and reducing security risk while working closely with peers, security teams, and infrastructure teams. Experience handling zero-day threats, third-party patching, and risk-based prioritization is essential.

About The Role

This role plays an important part in maintaining the organization’s security posture by helping ensure systems are patched, compliant, and protected against emerging threats—working as part of a broader team dedicated to infrastructure reliability and cybersecurity.

What You Will Do
Essential Duties and Responsibilities
SCCM / MECM Engineering & Support
  • Support the design, maintenance, and optimization of Microsoft Endpoint Configuration Manager (SCCM/MECM) infrastructure
  • Monitor SCCM client health and assist in resolving performance and reliability issues
  • Troubleshoot client, deployment, and update-related issues in collaboration with the team
  • Contribute to improvements in SCCM architecture, scalability, and performance
Patch Management Operations
  • Participate in the end-to-end Windows patch lifecycle (assessment, testing, deployment, validation, and reporting)
  • Execute monthly patch cycles (Patch Tuesday), including support for out-of-band and urgent patching activities
  • Assist in implementing phased deployment strategies (pilot groups and production rollouts)
  • Help ensure patch deployments minimize business disruption
Vulnerability Management
  • Support vulnerability assessment and remediation efforts by analyzing vulnerability data (CVE, CVSS scoring)
  • Assist in prioritizing remediation activities based on risk and business impact
  • Partner with cybersecurity teams to align patching activities with threat intelligence
  • Contribute to reducing exposure to critical and high-risk vulnerabilities
Automation & Process Improvement
  • Develop and maintain PowerShell scripts to automate routine patching and operational tasks
  • Identify opportunities to improve efficiency and reduce manual processes
  • Support continuous improvement of patch management procedures and standards
Compliance, Auditing & Reporting
  • Help ensure all endpoints are properly inventoried and compliant with patching policies
  • Assist with compliance tracking, reporting, and audit support activities
  • Perform routine validation checks to ensure adherence to security standards
Incident Support & Troubleshooting
  • Provide support for patch-related incidents and endpoint issues
  • Troubleshoot failed deployments, update issues, and client health problems
  • Participate in after-hours support for patching windows or critical issues as needed
Collaboration & Governance
  • Work within established change management processes
  • Collaborate with team members, security, and infrastructure teams on patching activities
  • Contribute to documentation of processes, procedures, and system configurations
  • Share knowledge and best practices within the team
What You Need
Required Qualifications
  • Bachelor’s degree in Computer Science, Information Systems, Engineering, or related field (or equivalent experience)
  • 3-5+ years of experience with Microsoft Endpoint Configuration Manager (SCCM/MECM)
  • Experience supporting enterprise Windows patching environments
  • Experience handling zero-day and out-of-band patching scenarios
  • Strong knowledge of:
    • Windows Server and Windows 10/11
    • Windows Update processes and troubleshooting
  • Proficiency in PowerShell scripting and automation
  • Experience with:
    • Vulnerability remediation processes
    • Risk-based patch prioritization
    • CVE / CVSS scoring concepts
  • Solid understanding of:
    • Active Directory, DNS, DHCP
    • Networking fundamentals
  • Strong troubleshooting skills across SCCM and Windows update issues
Preferred Qualifications
  • Experience with Microsoft Intune / Endpoint Manager (co-management)
  • Familiarity with Vulnerability Management tools
  • Understanding of hybrid environments (on-premises and cloud)
  • Experience with cloud platforms such as Microsoft Azure
  • Experience with virtualization platforms:
    • VMware
    • Hyper-V
    • Citrix
  • Experience with alternative patching and endpoint management tools (beyond SCCM) is a plus
Why Join Kinder Morgan

Kinder Morgan is a large energy infrastructure company operating in North America. Access to reliable, affordable energy is a critical component for improving lives around the world. We are committed to providing energy transportation and storage services in a safe, efficient, and environmentally responsible manner for the benefit of the people, communities, and businesses we serve.

Kinder Morgan provides equal employment opportunity to all employees and applicants for employment without regard to race, color, religion, sex, pregnancy, childbirth and related medical conditions, gender (including gender identity and expression), sexual orientation, national origin, ancestry, citizenship status, age, physical or mental disability, genetic information, marital status, military or veteran status, family status, status as an individual authorized to work in the U.S., or any other status protected by law.

For more information about Kinder Morgan, our culture, opportunities available, and to join our Talent Community, please visit our careers site at www.kindermorgan.com.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Patching and Vulnerability Management Analyst (Hybrid)
Sr. Patching and Vulnerability Management Analyst (Hybrid)

Kinder Morgan, Inc. • Houston (TX), Northern (KY)

Hybrid
USD 110,000 - 140,000
Senior Patch & Vulnerability Engineer - Windows/SCCM
Senior Patch & Vulnerability Engineer - Windows/SCCM

Kinder Morgan, Inc. • Colorado Springs (CO)

On-site
USD 110,000 - 140,000
Senior Patch & Vulnerability Engineer (SCCM/MECM)
Senior Patch & Vulnerability Engineer (SCCM/MECM)

Kinder Morgan, Inc. • Houston (TX), Northern (KY)

Hybrid
USD 110,000 - 140,000
Senior Patch Management Engineer
Senior Patch Management Engineer

HCLTech • Cary (NC)

Hybrid
USD 110,000 - 150,000
Medical
Dental
Vision
+8
Senior Systems Administrator/ Patch Manager
Senior Systems Administrator/ Patch Manager

Koniag Government Services • Smyrna (GA)

On-site
USD 100,000 - 130,000
Health insurance
Dental insurance
Vision insurance
+2
Network & Computer Systems Administrator – SME
Network & Computer Systems Administrator – SME

Jobtailor • Jacksonville (FL)

On-site
USD 120,000 - 150,000
Senior Systems Engineer – Windows Administration & Vulnerability Management
Senior Systems Engineer – Windows Administration & Vulnerability Management

Nesco Resource • New York (NY)

Hybrid
USD 120,000 - 170,000
MEC (Minimum Essential Coverage) plan
Medical
Vision
+3
Systems Administrator-Endpoint Operations & Security
Systems Administrator-Endpoint Operations & Security

Combined Metals Company LLC • Hampshire Township (IL), Northern (KY)

Hybrid
USD 90,000 - 130,000
Senior Patching Engineer
Senior Patching Engineer

Eightelevengroup • Washington

On-site
Systems Administrator
Systems Administrator

ECS Corporate Services • Quantico (VA)

On-site
USD 95,000 - 135,000