Quick Overview
Seniority
Mid Senior
Work mode
On Site
Location
Los Angeles, CA, United States
Posted
6 days ago
OracleAnsibleBashComplianceJavaPowerShellPythonRegulatory ComplianceVMware
Job Description
Role: Enterprise Patch Management Specialist
Duration: 12-Month Contract
Work Arrangement: Onsite Preferred(open for hybrid)
Work Arrangement: Onsite Preferred(open for hybrid)
OVERVIEW:-
We are looking for a candidate with a much stronger and more specialized focus on enterprise patch management. Specifically, we need someone with hands-on experience managing patching operations using tools such as:
- Microsoft MECM/SCCM
- Microsoft Intune
- VMware Update Manager/Lifecycle Manager
- Ansible (for Linux and infrastructure patching)
The candidate should also have demonstrated experience patching and maintaining:
- Windows endpoints and servers
- Linux servers
- VMware ESXi environments
- Standalone systems that are not centrally managed
- Air-gapped environments where patch deployment requires alternative processes and controls
Position Summary
We are seeking an experienced Enterprise Patch Management Specialist to support enterprise cybersecurity and infrastructure operations. This role is responsible for managing the full patch management lifecycle, including planning, testing, deployment, validation, reporting, vulnerability remediation, and compliance activities across Windows, Linux, VMware, and third-party application environments. The successful candidate will work closely with cybersecurity, server, network, application, and operations teams to maintain secure, compliant, and highly available enterprise systems.
We are seeking an experienced Enterprise Patch Management Specialist to support enterprise cybersecurity and infrastructure operations. This role is responsible for managing the full patch management lifecycle, including planning, testing, deployment, validation, reporting, vulnerability remediation, and compliance activities across Windows, Linux, VMware, and third-party application environments. The successful candidate will work closely with cybersecurity, server, network, application, and operations teams to maintain secure, compliant, and highly available enterprise systems.
Key Responsibilities
- Manage and maintain the enterprise patch management lifecycle across Windows, Linux, VMware, and third-party application environments.
- Utilize Microsoft Intune and Microsoft Endpoint Configuration Manager (MECM/SCCM) to deploy, monitor, manage, and report on endpoint and server patch compliance.
- Develop and maintain patch management standards, procedures, policies, and operational documentation.
- Perform patch testing, validation, deployment, and rollback planning for operating systems and enterprise applications.
- Administer Windows Server and Windows desktop patching activities.
- Administer Linux patching across Red Hat Enterprise Linux (RHEL), Ubuntu, Rocky Linux, and CentOS environments utilizing Ansible automation.
- Manage VMware ESXi hosts, vCenter environments, and virtual infrastructure patching and upgrades.
- Deploy and maintain patches for third-party applications including Adobe, Google Chrome, Mozilla Firefox, Java, Citrix, Zoom, Oracle products, and other enterprise software.
- Leverage software packaging solutions and patch catalogs within MECM and Intune to automate software deployment and patching.
- Coordinate scheduled monthly patch cycles as well as emergency security updates.
- Identify, prioritize, and remediate vulnerabilities identified through platforms such as Qualys, Rapid7, Microsoft Defender Vulnerability Management, Tenable, or similar tools.
- Analyze vulnerability assessment results and create remediation plans based on risk and business impact.
- Maintain enterprise patch compliance in accordance with cybersecurity standards and regulatory requirements.
- Troubleshoot deployment failures and remediation issues across endpoints, servers, and virtual environments.
- Develop executive and operational reporting dashboards to track compliance and remediation metrics.
- Support audits and compliance reviews by providing documentation and evidence of patch management activities.
- Collaborate with cybersecurity teams to support vulnerability management initiatives and reduce organizational risk.
- Automate patch deployment and reporting processes using PowerShell, Bash, Python, Ansible, or similar scripting tools.
- Support response and mitigation efforts related to critical vulnerabilities and zero-day threats.
- Participate in change management processes and maintenance window planning.
- Maintain accurate records for patching exceptions, remediation tracking, and compliance reporting.
Required Qualifications
- Proven experience in enterprise patch management, systems administration, or related infrastructure support roles.
- Strong experience supporting and patching Microsoft Windows Server and Windows desktop operating systems.
- Strong experience patching Linux operating systems including RHEL, Ubuntu, Rocky Linux, and CentOS.
- Experience administering VMware ESXi and VMware vCenter environments.
- Extensive hands-on experience with Microsoft Intune and Microsoft Endpoint Configuration Manager (MECM/SCCM).
- Experience managing third-party application deployment and patching in enterprise environments.
- Experience with Windows Update for Business (WUfB) and Microsoft cloud-based update management.
- Familiarity with Microsoft Defender for Endpoint and Defender Vulnerability Management.
- Experience using vulnerability management platforms such as Qualys, Rapid7, Tenable, or similar solutions.
- Working knowledge of cybersecurity frameworks and standards including NIST CSF, NIST SP 800-53, CIS Benchmarks, and industry best practices.
- Experience supporting IT audits, regulatory compliance, and security assessments.
- Strong analytical, troubleshooting, documentation, and communication skills.
- Ability to collaborate effectively with technical and non-technical stakeholders.
Preferred Certifications
- Microsoft Certified: Endpoint Administrator Associate (MD-102)
- Microsoft Certified: Windows Server Hybrid Administrator Associate
- Red Hat Certified Engineer (RHCE)
- CompTIA Security+
Similar jobs
- HL
Intake/Scheduling Coordinator - San Francisco
NewHealth Link
San Francisco🇺🇸2 days agoBusiness DevelopmentComplianceContinuous Improvement+4 - GO
Director Commerce Support
NewGoDaddy
United States🇺🇸2 days agoContinuous ImprovementCustomer SuccessHTTPS+3 - FI
Sr. People Business Partner
NewFivetran
Remote🇺🇸Remote2 days agoAgileEmployee RelationsHTTPS+4 - FC
Associate, Product Architecture
NewFanatics Collectibles
New York🇺🇸2 days agoContinuous ImprovementGPTHTML+3 - FC
QA Coordinator
NewFanatics Collectibles
Sunnyvale🇺🇸2 days agoComplianceHTMLHTTP+5 - FN
Activation & Experiential Manager
NewFashion Nova
Beverly Hills🇺🇸2 days ago401kAuditingBudgeting+1