Technical Lead-Cloud & Infra Engg

Birlasoft

Alpharetta (GA)

On-site

USD 130,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Birlasoft Ltd in the United States is seeking a Technical Lead-Cloud & Infra Engg to own vulnerability remediation and security hardening for Linux servers in a remote, full-time role.

You will drive end-to-end patching, automation with Chef and Ansible, and coordinate with cross-functional teams to meet SLAs, audits, and change-management requirements.

Candidates should have 6-10 years of Linux security, Qualys experience, and strong scripting skills ( Bash, Ruby ).

Qualifications

  • Hands-on experience with RHEL 7/8/9/10 in enterprise environments.
  • Proven vulnerability remediation and patch management for Linux.
  • Experience with Qualys or equivalent vulnerability scanners.
  • Automation experience using Chef and Ansible in production.
  • Scripting skills in Bash; working knowledge of Ruby.
  • Understanding of Linux security fundamentals and SSH hardening.
  • Experience with change management and cross-team coordination.

Responsibilities

  • Own end-to-end remediation for Linux vulnerabilities, patching and configuration hardening.
  • Fast-track Meridian-related remediation with SLAs and audits.
  • Triage findings from Qualys and translate to remediation plans.
  • Coordinate kernel and package updates, CIS/STIG changes, and reboots.
  • Develop and maintain remediation automation using Chef, Ansible, Bash, and Ruby.
  • Ensure code follows standards, version control, testing, and change management.
  • Validate remediation with re-scans and audit-ready documentation.
  • Lead remediation calls and coordinate with platform teams and vendors.

Skills

RHEL 7/8/9/10
Vulnerability remediation
Patch management
Qualys
Chef
Ansible
Shell scripting (Bash)
Ruby
Linux security fundamentals
Change management coordination

Tools

Chef
Ansible
Bash
Ruby

Job description

Select how often (in days) to receive an alert:

Title: Technical Lead-Cloud & Infra Engg

Description:

Long Description
Linux Vulnerability Remediation Engineer (Server Infrastructure – RHEL 7/8/9/10)
Remote
Fulltime
Key Responsibilities
Vulnerability Remediation & Patch Management
  • Own and execute end-to-end remediation for vulnerabilities identified on Linux servers (RHEL 7/8/9), including OS/package patching and configuration hardening.
  • Fast-track and manage all Meridian-related remediation requirements as they are received, ensuring adherence to defined SLAs and audit expectations.
  • Triage vulnerability findings (primarily from Qualys) and translate them into actionable remediation plans, considering exploitability, criticality, asset tiering, and operational risk.
  • Coordinate remediation activities for:
    • Kernel and package updates (YUM/DNF), security errata, and required reboots where applicable.
    • CIS/STIG-aligned configuration changes (as applicable in the environment).
    • Mitigations/compensating controls when immediate patching is not feasible (documented and approved per process).
Automation, Configuration Management & Engineering
  • Develop, enhance, and maintain remediation automation using:
    • Chef (cookbooks/recipes, attributes, templates, policy files as applicable)
    • Ansible (playbooks, roles, inventories, modules)
    • Shell scripting (Bash) and Ruby for server-side automation and custom remediation logic
  • Convert recurring manual remediation steps into repeatable automated solutions and standardized runbooks.
  • Ensure code follows internal engineering standards: version control, peer review, testing, documentation, and change management.
Validation, Closure & Reporting
  • Validate remediation effectiveness by re-scanning and verifying closure in Qualys (and/or approved internal validation methods).
  • Confirm fixes did not introduce regressions; coordinate with application and platform teams for post-change verification.
  • Maintain accurate documentation of remediation actions, approvals, exceptions, and closure evidence to support audit and compliance needs.
  • Provide progress updates, metrics, and risk status to stakeholders (e.g., open critical/high items, aging items, SLA adherence).
Cross-Team Coordination & Operational Execution
  • Schedule and lead remediation calls with infrastructure support teams, application owners, and other stakeholders to drive timely execution.
  • Work within change management processes: create/execute change plans, develop rollback steps, and coordinate maintenance windows.
  • Partner with platform engineering to improve standard server baselines and prevent vulnerability recurrence.
Vendor & Release Coordination (as needed)
  • Follow up with vendors (e.g., Red Hat or software providers) for patch availability, release schedules, and remediation guidance when vulnerabilities require vendor action.
  • Track advisories (RHSA/RHBA) and coordinate planned rollout timelines where applicable.
Area(s) of responsibility
Required Qualifications
  • 6-10 years of Strong hands-on experience with RHEL 7/8/9/10 in enterprise environments.
  • Proven experience driving vulnerability remediation and patch management for Linux servers.
  • Expertise with Qualys (or equivalent vulnerability scanners) including interpreting findings, false-positive validation, and closure verification.
  • Automation experience with Chef and/or Ansible in production.
  • Strong scripting skills: Bash, plus working proficiency in Ruby (or ability to maintain/extend existing Ruby codebases).
  • Understanding of Linux security fundamentals (permissions, services, SSH hardening, package management, kernel considerations).
  • Experience working with change management, incident/problem management, and coordinating across multiple support teams.
Preferred Qualifications
  • Familiarity with compliance/security frameworks (e.g., CIS benchmarks, STIG concepts) as applied to Linux servers.
  • Experience with CI/CD or automated testing for infrastructure code (linting, unit/integration testing where applicable).
  • Experience operating in large-scale environments (hundreds/thousands of servers) with tiered production controls.
  • Working knowledge of container host hardening and server-side runtime dependencies (if applicable to the server fleet).
Key Skills & Competencies
  • Remediation prioritization and risk-based decision making
  • Strong troubleshooting and root-cause analysis (package conflicts, dependency issues, service impacts)
  • Clear communication and ability to drive closure across stakeholders
  • Documentation discipline and audit readiness mindset
  • Ability to deliver under tight timelines while maintaining system stability
Deliverables / Success Measures
  • Reduction in open Patch NOW/Critical/High vulnerabilities and improved SLA compliance.
  • Consistent, repeatable remediation through Chef/Ansible automation.
  • Verified closures in Qualys with clear evidence and minimal re-open rates.
  • Improved remediation cycle time for Meridian requirements and other prioritized findings.
  • Fewer recurring vulnerability patterns through baseline improvements and preventive controls.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Windows Engineer
Windows Engineer

CBTS • United States

On-site
USD 120,000 - 160,000
Vulnerability & Remediation Engineer
Vulnerability & Remediation Engineer

Veriipro • New York (NY)

On-site
USD 120,000 - 190,000
Principal Vulnerability Management Consultant
Principal Vulnerability Management Consultant

The Judge Group • Chicago (IL)

Hybrid
USD 130,000 - 170,000
Lead Enterprise Infrastructure Patch and Security Engineer
Lead Enterprise Infrastructure Patch and Security Engineer

alllinestechnology • Hermitage

On-site
USD 90,000 - 120,000
Lead Enterprise Infrastructure Patch and Security Engineer
Lead Enterprise Infrastructure Patch and Security Engineer

All Lines Technology Inc. • Hermitage

On-site
USD 90,000 - 120,000
Linux Administrator
Linux Administrator

HonorVet Technologies • Kirkland (WA)

Hybrid
USD 110,000 - 150,000
Hybrid: 2 days onsite
12-month contract
Remote Linux Vulnerability Remediation Engineer (RHEL)
Remote Linux Vulnerability Remediation Engineer (RHEL)

CBTS • United States

On-site
USD 110,000 - 150,000
Windows Patch & Remediation Engineer
Windows Patch & Remediation Engineer

CBTS • United States

On-site
USD 120,000 - 160,000
Security Consultant
Security Consultant

TechDigital Group • San Antonio (TX)

On-site
USD 60,000 - 100,000
Vulnerability Remediation Engineer
Vulnerability Remediation Engineer

Veriipro • Atlanta (GA)

On-site
USD 80,000 - 100,000