Vulnerability Management Engineer

IntelliDyne, LLC

Washington (District of Columbia)

On-site

USD 120,000 - 180,000

Full time

8 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Medical, dental, vision
401(K) with company match
Flexible Paid Time Off
11 holidays
Paid parental leave
Military leave
Government shutdown leave
Wellness programs
Commuter benefits
Flexible work options

Job summary

IntelliDyne, LLC in Washington, DC seeks a detail-oriented Vulnerability Management Engineer to own the end-to-end patching lifecycle across enterprise systems.

You will deploy patches using MECM and IBM BigFix, analyze Tenable reports with Splunk, and coordinate with government system owners during off-hours maintenance windows. This role requires onsite presence 2–3 days weekly and active TS clearance; strong communication and independent work are essential in this fast-paced environment.

Qualifications

  • 5+ years of hands-on experience in vulnerability management, patch management, or security-focused systems administration.
  • BS degree in computer science or related field.
  • Active TS clearance.
  • M365A certification.
  • Proven experience deploying and managing patches using MECM/SCCM.
  • Strong working knowledge of IBM BigFix for endpoint patching and compliance.
  • Experience reading, interpreting, and acting on vulnerability reports from Tenable.
  • Familiarity with Splunk for searching logs, creating reports, and monitoring patching-related events.
  • Solid understanding of the vulnerability management lifecycle (scanning, prioritization, remediation, and verification).
  • Excellent communication and stakeholder management skills, with the ability to coordinate effectively with government customers and technical teams.
  • Willingness and ability to work nights, weekends, and during off-hours as required for patching activities.

Responsibilities

  • Plan, schedule, and execute patching activities using MECM and IBM BigFix across servers, workstations, and endpoints.
  • Analyze vulnerability scan reports from Tenable and security/event data from Splunk to identify, prioritize, and track remediation of vulnerabilities.
  • Develop and maintain patching schedules, maintenance windows, and deployment strategies that balance security requirements with operational needs.
  • Coordinate closely with government system owners and application support teams to obtain approvals, schedule changes, communicate impact, and minimize service disruption.
  • Work flexible hours, including nights, weekends, and on-call rotations, to perform patching during approved maintenance windows.
  • Monitor patch compliance rates, generate metrics and status reports, and present findings to leadership and stakeholders.
  • Investigate and resolve patching failures, deployment issues, and exceptions; perform root-cause analysis and implement corrective actions.
  • Maintain accurate documentation of patching procedures, configurations, and remediation activities.
  • Support vulnerability management program initiatives, including exception handling, risk acceptance processes, and continuous improvement efforts.
  • Collaborate with security, infrastructure, and application teams to ensure patches are tested and deployed in a controlled manner.

Skills

Vulnerability management
MECM/SCCM
IBM BigFix
Tenable
Splunk
Stakeholder management
Patching processes
Windows/Linux administration

Education

BS degree in computer science or related field

Tools

MECM
IBM BigFix
Tenable
Splunk
PowerShell

Job description

Location

Washington, D.C. (Required to be onsite a min of 2 to 3 days)

Clearance

Must possess an active TS clearance

Status

Exempt

Position Summary

We are seeking a detail-oriented and proactive Vulnerability Management Engineer (also known as a Patch Management Engineer) to join our team. In this role, you will be responsible for the end‑to‑end patching and vulnerability remediation lifecycle across enterprise systems. You will primarily use Microsoft Endpoint Configuration Manager (MECM) and IBM BigFix to deploy patches while leveraging Tenable vulnerability reports and Splunk for analysis and reporting. This position requires strong coordination skills and the flexibility to work nights, weekends, and during off‑hours maintenance windows to support patching activities with government system owners and internal application support teams.

Key Responsibilities
  • Plan, schedule, and execute patching activities using Microsoft MECM and IBM BigFix across servers, workstations, and endpoints.
  • Analyze vulnerability scan reports from Tenable and security/event data from Splunk to identify, prioritize, and track remediation of vulnerabilities.
  • Develop and maintain patching schedules, maintenance windows, and deployment strategies that balance security requirements with operational needs.
  • Coordinate closely with government system owners and application support teams to obtain approvals, schedule changes, communicate impact, and minimize service disruption.
  • Work flexible hours, including nights, weekends, and on‑call rotations, to perform patching during approved maintenance windows.
  • Monitor patch compliance rates, generate metrics and status reports, and present findings to leadership and stakeholders.
  • Investigate and resolve patching failures, deployment issues, and exceptions; perform root‑cause analysis and implement corrective actions.
  • Maintain accurate documentation of patching procedures, configurations, and remediation activities.
  • Support vulnerability management program initiatives, including exception handling, risk acceptance processes, and continuous improvement efforts.
  • Collaborate with security, infrastructure, and application teams to ensure patches are tested and deployed in a controlled manner.
Required Qualifications
  • 5+ years of hands‑on experience in vulnerability management, patch management, or systems administration with a security focus.
  • BS degree in computer science or related field
  • Must have a TS clearance
  • Must have a M365A certification
  • Proven experience deploying and managing patches using Microsoft Endpoint Configuration Manager (MECM / SCCM).
  • Strong working knowledge of IBM BigFix for endpoint patching and compliance.
  • Experience reading, interpreting, and acting on vulnerability reports from Tenable (Tenable.sc or Nessus).
  • Familiarity with Splunk for searching logs, creating reports, and monitoring patching‑related events.
  • Solid understanding of the vulnerability management lifecycle (scanning, prioritization, remediation, and verification).
  • Excellent communication and stakeholder management skills, with the ability to coordinate effectively with government customers and technical teams.
  • Demonstrated ability to work independently and manage competing priorities in a dynamic environment.
  • Willingness and ability to work nights, weekends, and during off‑hours as required for patching activities.
Preferred Qualifications
  • Experience supporting government or regulated environments (NIST, FISMA, RMF, etc.).
  • Scripting/automation experience (PowerShell preferred; Python a plus) to streamline patching processes.
  • Knowledge of multiple operating systems (Windows Server/Desktop and Linux).
  • Relevant certifications such as CompTIA Security+, Microsoft certifications (e.g., MD-102, AZ-800/801), or Tenable‑certified credentials are highly preferred
  • Experience with change management processes and ITIL frameworks.
  • Prior experience working directly with government system owners or in a contractor support role.
About Us

IntelliDyne, LLC empowers government organizations through the delivery of quality, mission‑aligned services and innovative, people‑first IT solutions. IntelliDyne has earned the designation of a Top Workplace by providing an inclusive and supportive environment where employees have a voice and are challenged to provide innovative solutions to our clients of national, state, and local importance.

Our Benefits
  • Inclusive and supportive work environment
  • Competitive compensation package
  • Professional growth through annual subsidy for trainings, certifications, professional memberships as well as mentorships and job shadowing
  • Medical, dental, vision, 401(K) with company match
  • Flexible Paid Time Off Program, 11 holidays, paid parental leave, military leave, and government shutdown leave
  • Rewards and recognition through peer awards, service year awards, spot bonuses, and annual company awards
  • Wellness and mental health benefits
  • Commuter benefits
  • Flexible work options

IntelliDyne is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status. For individuals with disabilities who would like to request an accommodation, please contact staffing@intellidyne-llc.com or 703-575-9715.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

TS-Cleared Vulnerability Patch Engineer
TS-Cleared Vulnerability Patch Engineer

IntelliDyne, LLC • Washington

On-site
USD 120,000 - 180,000
Medical, dental, vision
401(K) with company match
Flexible Paid Time Off
+7
BigFix Administrator
BigFix Administrator

Cyber Shell, LLC • Washington

On-site
USD 120,000 - 150,000
Health benefits
Life & AD&D insurance
Disability insurance
+4
Vulnerability Management Analyst
Vulnerability Management Analyst

DANE, LLC • Chantilly (VA)

On-site
USD 75,000 - 95,000
Life/STD/LTD
FSA/DCA
401(k)
+7
Vulnerability Management Analyst
Vulnerability Management Analyst

DANE LLC • Chantilly (VA)

On-site
USD 70,000 - 90,000
Life/STD/LTD insurance
401(k) plan
Paid time off
+5
Vulnerability Management Engineer (Tenable)
Vulnerability Management Engineer (Tenable)

Alluvial Concepts • Rockville (MD)

On-site
USD 120,000 - 180,000
Vulnerability Management Lead
Vulnerability Management Lead

K2United, LLC. • Washington

On-site
USD 130,000 - 170,000
Vulnerability Management Lead
Vulnerability Management Lead

K2Share LLC • Washington

On-site
USD 120,000 - 180,000
Vulnerability Management Lead
Vulnerability Management Lead

K2United • Washington

On-site
USD 120,000 - 180,000
Vulnerability Management Lead
Vulnerability Management Lead

ecsfederal • Virginia (MN)

Hybrid
USD 115,000 - 135,000
Vulnerability remediation (Patch Management) Engineer
Vulnerability remediation (Patch Management) Engineer

BuzzClan LLC • New York (NY)

Hybrid
USD 110,000 - 165,000