Posted on: 22/09/2026
Role Overview :
We are hiring a Senior Lead - Patch & Vulnerability Management to architect and operationalize our enterprise-wide remediation program across Azure-first hybrid environments. This is a strategic, hands-on leadership role owning the full lifecycle - discovery, risk-based prioritization, patch engineering, automation, verification, and executive reporting. You will define SLAs, lead zero-day response, and mentor a team of engineers.
Required Skills & Experience :
- Experience: 8+ years in Vulnerability/Patch Management, with 3 - 4 years in a Lead or Architect role.
- Vulnerability Management: End-to-end VM lifecycle management, including discovery, assessment, prioritization, remediation, validation, and reporting.
- Microsoft Security: Strong hands-on experience with Defender XDR, Defender for Cloud, Defender TVM, MDE, Intune, Azure Arc, Azure Update Manager, Entra ID, Azure Policy, and KQL.
- Patch Management: Expertise in SCCM/MECM, Azure Update Manager, WSUS, Intune, and Patch My PC.
- Cloud Security: Experience managing vulnerabilities across Azure and hybrid environments. AWS/GCP exposure is preferred.
- Automation: Strong PowerShell, Python, or Bash skills. Ansible/AWX and Azure Automation are an advantage.
- ServiceNow: Strong experience with incident, change, problem, CAB, API integration, SLA, and reporting processes.
- Zero-Day Response: Experience with impact assessment, emergency patching, compensating controls, and vulnerability revalidation.
- Asset Management: Ability to identify gaps across CMDB, Intune, Defender, Azure, and actual infrastructure.
- Risk & Governance: Experience managing SLAs, KPIs, MTTR, vulnerability coverage, and executive reporting.
- Leadership: Experience leading VM/remediation teams and coordinating with Infrastructure, Cloud, DevOps, and Security teams.
Certifications :
- AZ-104, AZ-500, CISSP, CISM, or ITIL are preferred.
Good to Have :
- SOAR/orchestration platform experience; AI/LLM-assisted security workflows.
- Regulated environments (financial services, healthcare) with compliance mapping (NIST, CIS, ISO 27001, PCI-DSS).
- CMDB/asset-inventory hygiene, dependency mapping.
- Container security (Kubernetes, Docker) and IaC scanning (Checkov, Terrascan).
Certifications (Preferred, Not Mandatory) :
- Microsoft: AZ-104, AZ-500, MD-102.
- CISSP, CISM, CCSP.
- Qualys/Tenable Certified Specialist.
- ITIL Foundation.
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
IT Security
Job Code
1673336