Salary Range: $100,000.00 To $120,000.00 Annually About the Role: The Patch Engineering Lead plays a critical role in maintaining the security and integrity of an organization's IT infrastructure by managing and executing patch management and vulnerability remediation processes. This position ensures that all systems, applications, and devices are up to date with the latest security patches to protect against potential threats and exploits. The role involves continuous monitoring, assessment, and prioritization of vulnerabilities to minimize risk exposure and support compliance with industry standards and regulations. The specialist collaborates closely with IT teams, security analysts, and management to develop and implement effective patching strategies and vulnerability management programs. Ultimately, this role is essential in safeguarding organizational assets and data by proactively addressing security weaknesses before they can be exploited by malicious actors. Location and Schedule: Work from home, United States Monday through Friday local business hours You know how to: Conduct regular vulnerability assessments and scans across the organization's network, systems, and applications to identify security weaknesses. Develop, test, and deploy patches and updates in a timely and controlled manner to ensure minimal disruption to business operations. Collaborate with IT and security teams to prioritize vulnerabilities based on risk and impact, and coordinate remediation efforts accordingly. Maintain detailed documentation of patching activities, vulnerability findings, and remediation status to support audit and compliance requirements. Monitor security advisories, vendor notifications, and threat intelligence sources to stay informed about emerging vulnerabilities and patch releases. Assist in the development and enforcement of patch management policies, procedures, and best practices. Provide technical guidance and support to other teams regarding vulnerability mitigation and patch deployment challenges. Effectively identify, analyze, and remediate vulnerabilities by leveraging vulnerability scanning tools and patch management platforms. Communicate and collaborate with clients and internal teams to ensure alignment on security priorities. Minimum Qualifications: Proven experience in patch management and vulnerability assessment within a professional IT or cybersecurity environment. Familiarity with common vulnerability scanning tools such as Nessus, Qualys, or Rapid7. Strong understanding of operating systems (Windows, Linux, macOS) and patch deployment processes. Knowledge of network protocols, security principles, and common vulnerabilities and exposures (CVEs). Preferred Qualifications: Experience with automated patch management solutions like Microsoft SCCM, WSUS, or third-party patching tools. Understanding of regulatory compliance frameworks such as NIST, HIPAA, or PCI-DSS. Experience working in a professional services or consulting environment within the technology sector. Strong scripting skills (e.g., PowerShell, Python) to automate patching and vulnerability management tasks. Technology proficiencies: Proficient patching server OSs and hypervisors (Windows Server, Linux, VMware/ESXi), including maintenance windows and rollback. Experience patching network/infrastructure firmware (firewalls, switches, routers, out-of-band management). Familiar with storage patching/firmware (NAS, SAN, backups) without disrupting availability. Hands-on with patch/RMM and observability tools (Automox, N-able, Intune, LogicMonitor). Experience with vulnerability scanning/remediation (Tenable, Qualys, Rapid7), prioritized by risk. Scripting skills (PowerShell, Python, Bash) for patch automation and reporting. Working knowledge of cloud patch management (AWS SSM, Azure Update Manager, GCP). Familiar with ITIL change management and ITSM/PSA tools. MSP multi-tenant experience managing concurrent patch cycles across clients. Certifications such as CompTIA Security+, Certified Information Systems Security Professional (CISSP), or Certified Ethical Hacker (CEH). Pay and Benefits: Estimated Starting Salary/Wage Range: $100,000 – $120,000 annual , based on candidate's experience, qualifications, and location. In addition to legally-required benefits, NexusTek offers a benefit package to eligible full-time employees, which currently includes the following: Four weeks of annual accrued PTO Seven paid national holidays Medical, dental, vision options Company-paid life insurance, short and long-term disability Voluntary benefits such as critical illness and accident Voluntary Legal Shield and identity theft protection Discretionary annual 401k match plan Generous employee referral bonus plan Employee Assistance Program Access to over 90,000+ courses in ADP My Learning StandOut employee engagement tools Eligible to apply for a Pluralsight license Eligible to apply for NexusTek Technical Academy or Leadership Academy We’re happy to provide our comprehensive benefits guide. Each benefit is subject to eligibility requirements as specified in plan documents, and the Company reserves the right to modify the benefits it offers from time to time. Interview Process - Typical interview process for this role: Application and Screening Stage - Thanks for showing interest! Submit your application Our recruiters carefully consider each application. If you are selected to move forward, we will contact you for the 20 minute introductory screening to learn more about you and why you want to work for NexusTek. Interview Stage - We’ll dive into your experience more in depth One-hour technical interview with hiring manager (virtual) One-hour interview with VP-level team member (virtual) References – 3 professional references at least one direct supervisor You are welcome to request additional conversations with team members you didn’t get to meet during the process NexusTek provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws NexusTek participates in E-Verify for all US Employees Please be aware of potential recruitment fraud and fake social media pages. NexusTek will never ask you to pay a fee as part of the interview process. Additionally, we will not ask for your personal banking information until you have signed an employment offer and completed virtual onboarding training and paperwork provided by our HR team. All communications with NexusTek professionals will only be sent from an @nexustek.com or ADP email address and never originate from gmail.com, yahoo.com, or other commercial email services. If you are viewing this job post outside of our website and interested in exploring opportunities, please go directly to our Careers Page: https://www.nexustek.com/nexustek-careers/ or https://workforcenow.adp.com/mascsr/default/mdf/recruitment/recruitment.html?cid=567e686e-7575-49d9-b29f-985e7365f987&ccId=19000101_000001&type=MP&lang=en_US
Principal AV Behavior Safety Engineering Lead
Generalmotors
Lead, Software Engineering QA
Kyndryl
Lead Infrastructure & Site Reliability Engineering
Cfins
Project Lead - Acquisition Systems Engineering
T2S Solutions
Lead Engineering Manager
Weekday AI
Production Support Engineering Lead (OpenText)
Cibc