Windows Server & Endpoint Patch Management Engineer

Ampcus, Inc

Jersey City (NJ)

On-site

USD 120,000 - 150,000

Full time

7 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Ampcus, Inc. is seeking a Windows Server & Endpoint Patch Management Engineer to lead end-to-end patching, vulnerability remediation, and governance across large Windows environments in the Jersey City area.

The role emphasizes automation, testing, change control, and cross-functional collaboration with Cyber Security and IT teams. The ideal candidate brings extensive experience with MECM/SCCM, Intune, WSUS, and other enterprise patch platforms, along with strong PowerShell skills and a focus on

Qualifications

  • Expert knowledge of Windows Server patching and administration.
  • 8+ years in enterprise patch management environments.
  • Experience with patch lifecycle, testing, deployment, and reporting.

Responsibilities

  • Lead end-to-end patching for Windows Server and endpoints across enterprise environments.
  • Coordinate vulnerability remediation with Cyber Security, Infrastructure, and Application teams.
  • Develop and maintain patch deployment and testing plans, documentation, and governance artifacts.
  • Produce patch compliance dashboards and reports for leadership.

Skills

Windows patch management
PowerShell scripting
Vulnerability remediation
ITIL Change/Release Management
Stakeholder management
Regulatory compliance awareness

Tools

MECM/SCCM
Intune
WSUS
Tanium
BigFix

Job description

Windows Server & Endpoint Patch Management Engineer

Ampcus Inc. is a certified global provider of a broad range of Technology and Business consulting services. We are in search of a highly motivated candidate to join our talented Team.

Job Title: Windows Server & Endpoint Patch Management Engineer

Location(s): Jersey City, NJ

Description

Lead the end-to-end management of Windows Server and Endpoint patching services across enterprise environments. Responsible for vulnerability remediation, patch testing, deployment, compliance reporting, automation, change management, and operational governance supporting large-scale Windows infrastructure and workplace services. Derived from the Windows Server and End User Administration

Key Responsibilities
Patch Management & Vulnerability Remediation
  • Lead monthly, emergency, and zero-day patch deployment activities for Windows Servers and Windows endpoints.
  • Assess, test, validate, deploy, and verify security and infrastructure patches.
  • Perform pre- and post-patch health checks, compliance validation, troubleshooting, and rollback activities.
  • Coordinate vulnerability remediation activities with Cyber Security, Infrastructure, and Application teams.
  • Ensure patch deployments meet agreed security, compliance, and operational standards.
Windows Server Administration
  • Administer and maintain Windows Server patching platforms and deployment infrastructure.
  • Manage patch lifecycle activities, deployment schedules, maintenance windows, and remediation tracking.
  • Perform root cause analysis for patch failures and coordinate corrective actions with infrastructure support teams.
  • Support automation of patch deployment and validation activities through scripting and tooling.
  • Manage enterprise-scale Windows 10/11 endpoint patching and compliance.
  • Monitor deployment success, endpoint compliance, and remediation status across the environment.
  • Support emergency endpoint remediation and security compliance initiatives.
  • Ensure successful patch deployment to managed and reachable endpoint devices.
Change & Service Management
  • Drive patch-related Change Management activities, approvals, deployment planning, and stakeholder communications.
  • Coordinate UAT, production releases, maintenance windows, and post-implementation reviews.
  • Maintain operational documentation, issue logs, risk registers, and deployment records.
  • Participate in governance, audit, and compliance reviews.
Reporting & Governance
  • Produce executive and operational patch compliance dashboards and reports.
  • Track patch success rates, vulnerabilities, exceptions, SLA adherence, and remediation progress.
  • Present deployment status, risks, and remediation plans to leadership and stakeholders.
  • Identify opportunities for process optimization, automation, and continuous service improvement.
Required Skills
  • Expert knowledge of Windows Server administration and patch management.
  • Strong experience managing Windows 10/11 endpoint environments.
  • Hands-on experience with enterprise patch management platforms (MECM/SCCM, Intune, WSUS, Tanium, BigFix or equivalent).
  • Strong PowerShell scripting and automation skills.
  • Experience with vulnerability management, remediation tracking, and compliance reporting.
  • Strong understanding of ITIL Change, Incident, Problem, and Release Management processes.
  • Experience working in highly regulated enterprise environments such as Banking, Financial Services, or Healthcare.
Preferred Qualifications
  • Microsoft Certified: Windows Server Hybrid Administrator Associate.
  • ITIL Foundation Certification.
  • Security or Vulnerability Management certifications.
Experience
  • 8+ years of experience in Windows Infrastructure, Endpoint Management, Patch Management, or Vulnerability Remediation with responsibility for enterprise-scale server and workstation environments.
  • Enterprise Patch Management
  • Vulnerability Remediation
  • Windows Server Administration
  • Endpoint Management (Intune/SCCM)
  • PowerShell Automation
  • Change & Release Management
  • Operational Governance & Reporting
  • Stakeholder Management

Ampcus is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veterans or individuals with disabilities.

Helping all candidates find great careers is our goal. The information you provide here is secure and confidential.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Windows Patch & Endpoint Management Engineer
Senior Windows Patch & Endpoint Management Engineer

Ampcus, Inc • Jersey City (NJ)

On-site
USD 120,000 - 150,000
Linux and OpenShift admin Patch Management Engineer
Linux and OpenShift admin Patch Management Engineer

Ampcus, Inc • Jersey City (NJ)

On-site
USD 120,000 - 180,000
Endpoint Management Specialist
Endpoint Management Specialist

Ampcus, Inc • City of White Plains (NY)

On-site
USD 110,000 - 170,000
Senior Windows Patch Management Engineer
Senior Windows Patch Management Engineer

ManpowerGroup Global, Inc. • Tennessee

On-site
USD 120,347,000 - 137,540,000
Medical and Prescription Drug Plans
Dental Plan
Vision Plan
+5
SCCM Engineer
SCCM Engineer

Value2Biz de Mexico SC • Arkansas

On-site
USD 54,000 - 73,000
Sr. Patching and Vulnerability Management Analyst (Hybrid)
Sr. Patching and Vulnerability Management Analyst (Hybrid)

Kinder Morgan, Inc. • Colorado Springs (CO)

On-site
USD 110,000 - 140,000
Patch Management Engineer
Patch Management Engineer

BuzzClan • New York (NY)

On-site
USD 120,000 - 150,000
Onsite Windows Patch Engineer — Server & Endpoint
Onsite Windows Patch Engineer — Server & Endpoint

ManpowerGroup Global, Inc. • Tennessee

On-site
USD 120,347,000 - 137,540,000
Medical and Prescription Drug Plans
Dental Plan
Vision Plan
+5
Sr. Patching and Vulnerability Management Analyst (Hybrid)
Sr. Patching and Vulnerability Management Analyst (Hybrid)

Kinder Morgan, Inc. • Houston (TX), Northern (KY)

Hybrid
USD 110,000 - 140,000
System Configuration Engineer
System Configuration Engineer

Debevoise-&-Plimpton-LL • New York (NY)

On-site
USD 120,000 - 180,000