Patch Engineering Lead

NexusTek

$100K — $120K *
US-AnywhereRemote in United States
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in patch management and vulnerability assessment in IT/cybersecurity environments.
  • Proficient use of vulnerability scanning tools like Nessus, Qualys, or Rapid7.
  • Strong understanding of various operating systems and patch deployment processes.
  • Knowledge of network protocols and common vulnerabilities.
  • Preferred experience with automated patch management solutions like SCCM and familiarity with compliance frameworks.

Responsibilities

  • Conduct regular vulnerability assessments and scans to identify security weaknesses.
  • Develop, test, and deploy patches with minimal disruption to operations.
  • Collaborate with IT teams to prioritize remediation efforts based on risk.
  • Maintain thorough documentation of patching activities and findings.
  • Monitor security advisories to stay updated on vulnerabilities.
  • Assist in developing and enforcing patch management policies
  • Provide technical support regarding vulnerability mitigation and patch challenges.

Benefits

  • Four weeks of annual accrued PTO
  • Seven paid national holidays
  • Medical, dental, and vision options
  • Company-paid life insurance and disability coverage
  • Voluntary benefits including critical illness and identity theft protection
  • Discretionary annual 401k match plan
  • Access to extensive online learning resources and employee engagement tools.
Full Job Description
About the Role:

The Patch Engineering Lead plays a critical role in maintaining the security and integrity of an organization's IT infrastructure by managing and executing patch management and vulnerability remediation processes. This position ensures that all systems, applications, and devices are up to date with the latest security patches to protect against potential threats and exploits. The role involves continuous monitoring, assessment, and prioritization of vulnerabilities to minimize risk exposure and support compliance with industry standards and regulations. The specialist collaborates closely with IT teams, security analysts, and management to develop and implement effective patching strategies and vulnerability management programs. Ultimately, this role is essential in safeguarding organizational assets and data by proactively addressing security weaknesses before they can be exploited by malicious actors.

Location and Schedule:

Work from home, United States

Monday through Friday local business hours

You know how to:
  • Conduct regular vulnerability assessments and scans across the organization's network, systems, and applications to identify security weaknesses.
  • Develop, test, and deploy patches and updates in a timely and controlled manner to ensure minimal disruption to business operations.
  • Collaborate with IT and security teams to prioritize vulnerabilities based on risk and impact, and coordinate remediation efforts accordingly.
  • Maintain detailed documentation of patching activities, vulnerability findings, and remediation status to support audit and compliance requirements.
  • Monitor security advisories, vendor notifications, and threat intelligence sources to stay informed about emerging vulnerabilities and patch releases.
  • Assist in the development and enforcement of patch management policies, procedures, and best practices.
  • Provide technical guidance and support to other teams regarding vulnerability mitigation and patch deployment challenges.
  • Effectively identify, analyze, and remediate vulnerabilities by leveraging vulnerability scanning tools and patch management platforms.
  • Communicate and collaborate with clients and internal teams to ensure alignment on security priorities.


Minimum Qualifications:
  • Proven experience in patch management and vulnerability assessment within a professional IT or cybersecurity environment.
  • Familiarity with common vulnerability scanning tools such as Nessus, Qualys, or Rapid7.
  • Strong understanding of operating systems (Windows, Linux, macOS) and patch deployment processes.
  • Knowledge of network protocols, security principles, and common vulnerabilities and exposures (CVEs).


Preferred Qualifications:
  • Experience with automated patch management solutions like Microsoft SCCM, WSUS, or third-party patching tools.
  • Understanding of regulatory compliance frameworks such as NIST, HIPAA, or PCI-DSS.
  • Experience working in a professional services or consulting environment within the technology sector.
  • Strong scripting skills (e.g., PowerShell, Python) to automate patching and vulnerability management tasks.


Technology proficiencies:

  • Proficient patching server OSs and hypervisors (Windows Server, Linux, VMware/ESXi), including maintenance windows and rollback.
  • Experience patching network/infrastructure firmware (firewalls, switches, routers, out-of-band management).
  • Familiar with storage patching/firmware (NAS, SAN, backups) without disrupting availability.
  • Hands-on with patch/RMM and observability tools (Automox, N-able, Intune, LogicMonitor).
  • Experience with vulnerability scanning/remediation (Tenable, Qualys, Rapid7), prioritized by risk.
  • Scripting skills (PowerShell, Python, Bash) for patch automation and reporting.
  • Working knowledge of cloud patch management (AWS SSM, Azure Update Manager, GCP).
  • Familiar with ITIL change management and ITSM/PSA tools.
  • MSP multi-tenant experience managing concurrent patch cycles across clients.
  • Certifications such as CompTIA Security+, Certified Information Systems Security Professional (CISSP), or Certified Ethical Hacker (CEH).


Pay and Benefits:

Estimated Starting Salary/Wage Range: $100,000 - $120,000 annual, based on candidate's experience, qualifications, and location.

In addition to legally-required benefits, NexusTek offers a benefit package to eligible full-time employees, which currently includes the following:

  • Four weeks of annual accrued PTO
  • Seven paid national holidays
  • Medical, dental, vision options
  • Company-paid life insurance, short and long-term disability
  • Voluntary benefits such as critical illness and accident
  • Voluntary Legal Shield and identity theft protection
  • Discretionary annual 401k match plan
  • Generous employee referral bonus plan
  • Employee Assistance Program
  • Access to over 90,000+ courses in ADP My Learning
  • StandOut employee engagement tools
  • Eligible to apply for a Pluralsight license
  • Eligible to apply for NexusTek Technical Academy or Leadership Academy


We're happy to provide our comprehensive benefits guide. Each benefit is subject to eligibility requirements as specified in plan documents, and the Company reserves the right to modify the benefits it offers from time to time.

Interview Process - Typical interview process for this role:

Application and Screening Stage - Thanks for showing interest!

  • Submit your application
  • Our recruiters carefully consider each application. If you are selected to move forward, we will contact you for the 20 minute introductory screening to learn more about you and why you want to work for NexusTek.


Interview Stage - We'll dive into your experience more in depth

  • One-hour technical interview with hiring manager (virtual)
  • One-hour interview with VP-level team member (virtual)
  • References - 3 professional references at least one direct supervisor
  • You are welcome to request additional conversations with team members you didn't get to meet during the process

Similar Jobs

More Jobs at NexusTek

More Information Technology Jobs

Find similar Patch Engineering Lead jobs: