Systems Engineer

Celtic BankSalt Lake City, UT
Hybrid

About The Position

Celtic Bank is seeking a Systems Patch Engineer to manage and optimize our enterprise patch management program. This role focuses on operating system and third-party application patching across Windows, Linux, and macOS environments using Tanium. The Systems Patch Engineer will design, implement, and maintain reliable patch deployment processes; administer Tanium policies and deployment rings; remediate vulnerabilities; and help ensure compliance with applicable IT, security, and regulatory standards. The ideal candidate combines strong Tanium expertise with practical experience in vulnerability remediation, endpoint management, automation, and cross-functional collaboration.

Requirements

  • Bachelor's degree in Information Technology, Computer Science, Information Security, or a related field, or equivalent combination of education and experience.
  • 3–5 years of hands-on experience administering enterprise IT systems, with a focus on patch and vulnerability management.
  • Demonstrated experience administering Tanium, including the Patch, Deploy, and Comply modules, action groups, and endpoint client health management.
  • Working knowledge of vulnerability management and remediation practices, including CVE/CVSS prioritization, patch testing, and compliance reporting.
  • Proficiency patching Windows Server and desktop operating systems, Linux distributions, and common third-party applications.
  • Familiarity with PowerShell and Bash for automation, reporting, and administration of patching workflows.
  • Understanding of information security principles, data classification, and regulatory requirements applicable to financial institutions (e.g., GLBA, FFIEC, ISO 27001).
  • Strong analytical, troubleshooting, and documentation skills.
  • Ability to communicate technical concepts clearly to both technical and non-technical audiences.

Responsibilities

  • Administer, configure, and maintain the Tanium platform, including patch modules, action groups, endpoint client health, and patch policy configuration.
  • Plan, schedule, and deploy operating system and third-party application patches across all Windows, Linux, and macOS systems using Tanium.
  • Design, implement, and maintain patch deployment rings, maintenance windows, and blackout periods that balance risk reduction with business availability.
  • Monitor, investigate, and remediate failed or missing patch deployments, partnering with Cybersecurity, Infrastructure, and application owners as needed.
  • Tune and refine patch policies to reduce deployment failures and end-user disruption while maintaining timely remediation of critical and high-severity vulnerabilities.
  • Track and report patch compliance metrics and SLA attainment for all in-scope systems to IT and security leadership.
  • Develop and maintain technical documentation, including patch configurations, operational procedures, and runbooks.
  • Collaborate with cross-functional teams to evaluate, recommend, and deploy new technologies that enhance patch and vulnerability management capabilities.
  • Provide tier 2/3 support for escalated issues related to Tanium, patch deployment, and endpoint remediation.
  • Participate in audits, risk assessments, and remediation activities related to patch and vulnerability management controls.
  • Support change management, incident response, and disaster recovery processes for in-scope systems.

Benefits

  • Medical
  • dental
  • vision
  • 401(k) with employer match
  • Life and long-term disability coverage
  • HSA and FSA plans
  • Holidays and paid time off requests
  • Robust wellness program (we’re talking catered meals three times a week, lunch and learns, and onsite gym!)
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service