This role involves analyzing security vulnerabilities (CVEs, MSRC advisories, vendor guidance) to determine and implement necessary remediation actions. The engineer will translate vulnerability intelligence into technical actions such as patching, GPO updates, registry changes, and service hardening. Key responsibilities include defining the scope and applicability of remediation across different system types (Domain Controllers vs. Member Servers, tiered environments, legacy systems), assessing dependencies and potential risks before deployment, and evaluating exploitability versus environmental exposure for prioritization. The engineer will also drive the prioritization and sequencing of remediation activities, design and develop automation solutions (primarily PowerShell) for deploying and validating fixes, build repeatable validation mechanisms, and partner with Operations teams for coordinated rollouts. Producing clear change documentation, including intent, impact, rollback considerations, and risk analysis, is also a crucial part of the role.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Education Level
No Education Listed