Enterprise Patch Management Specialist

Job Cloud Inc.
Los Angeles, United States
6 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Java (Programming Language) Microsoft Windows Application Packaging Application Services Bash Shell Microsoft Online Services Ubuntu (Operating System) CentOS Google Chrome CompTIA Security+ Linux VMware ESX Servers
+25 more
Firefox Information Technology Audit Python (Programming Language) System Center Configuration Manager Windows Servers Citrix Systems Oracle (Applications) Windows PowerShell Red Hat Enterprise Linux Ansible Software Deployment VMware Infrastructure Software Vulnerability Management Windows Desktop Scripting Enterprise Software Applications Virtual Environment Microsoft InTune Azure Security Center Adobe Patch Management CIS Benchmarks Qualys Vulnerability Analysis Vmware

Job description

  • Manage and maintain the enterprise patch management lifecycle across Windows, Linux, VMware, and third-party application environments.
  • Utilize Microsoft Intune and Microsoft Endpoint Configuration Manager (MECM/SCCM) to deploy, monitor, manage, and report on endpoint and server patch compliance.
  • Develop and maintain patch management standards, procedures, policies, and operational documentation.
  • Perform patch testing, validation, deployment, and rollback planning for operating systems and enterprise applications.
  • Administer Windows Server and Windows desktop patching activities.
  • Administer Linux patching across Red Hat Enterprise Linux (RHEL), Ubuntu, Rocky Linux, and CentOS environments utilizing Ansible automation.
  • Manage VMware ESXi hosts, vCenter environments, and virtual infrastructure patching and upgrades.
  • Deploy and maintain patches for third-party applications including Adobe, Google Chrome, Mozilla Firefox, Java, Citrix, Zoom, Oracle products, and other enterprise software.
  • Leverage software packaging solutions and patch catalogs within MECM and Intune to automate software deployment and patching.
  • Coordinate scheduled monthly patch cycles as well as emergency security updates.
  • Identify, prioritize, and remediate vulnerabilities identified through platforms such as Qualys, Rapid7, Microsoft Defender Vulnerability Management, Tenable, or similar tools.
  • Analyze vulnerability assessment results and create remediation plans based on risk and business impact.
  • Maintain enterprise patch compliance in accordance with cybersecurity standards and regulatory requirements.
  • Troubleshoot deployment failures and remediation issues across endpoints, servers, and virtual environments.
  • Develop executive and operational reporting dashboards to track compliance and remediation metrics.
  • Support audits and compliance reviews by providing documentation and evidence of patch management activities.
  • Collaborate with cybersecurity teams to support vulnerability management initiatives and reduce organizational risk.
  • Automate patch deployment and reporting processes using PowerShell, Bash, Python, Ansible, or similar scripting tools.
  • Support response and mitigation efforts related to critical vulnerabilities and zero-day threats.
  • Participate in change management processes and maintenance window planning.
  • Maintain accurate records for patching exceptions, remediation tracking, and compliance reporting.

Requirements

  • Proven experience in enterprise patch management, systems administration, or related infrastructure support roles.
  • Strong experience supporting and patching Microsoft Windows Server and Windows desktop operating systems.
  • Strong experience patching Linux operating systems including RHEL, Ubuntu, Rocky Linux, and CentOS.
  • Experience administering VMware ESXi and VMware vCenter environments.
  • Extensive hands-on experience with Microsoft Intune and Microsoft Endpoint Configuration Manager (MECM/SCCM).
  • Experience managing third-party application deployment and patching in enterprise environments.
  • Experience with Windows Update for Business (WUfB) and Microsoft cloud-based update management.
  • Familiarity with Microsoft Defender for Endpoint and Defender Vulnerability Management.
  • Experience using vulnerability management platforms such as Qualys, Rapid7, Tenable, or similar solutions.
  • Working knowledge of cybersecurity frameworks and standards including NIST CSF, NIST SP 800-53, CIS Benchmarks, and industry best practices.
  • Experience supporting IT audits, regulatory compliance, and security assessments.
  • Strong analytical, troubleshooting, documentation, and communication skills.
  • Ability to collaborate effectively with technical and non-technical stakeholders.

Preferred Certifications

  • Microsoft Certified: Endpoint Administrator Associate (MD-102)
  • Microsoft Certified: Windows Server Hybrid Administrator Associate
  • Red Hat Certified Engineer (RHCE)
  • CompTIA Security+

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:06 min

Developer experience and project variety at scale

Alexandra Petri · World Congress 2023

1:40 min

Managing containerized infrastructure with Podman Desktop

Cedric Clyburn Cedric Clyburn +1 · World Congress 2025

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

1:17 min

Eco-friendly factory operations and generative AI image errors

Chris Heilmann +1 · LIVE

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

1:41 min

Parallels between cloud and legacy infrastructure lock-ins

Björn Stahl Björn Stahl · World Congress 2024

Videos

See all

Related articles

See all