- Company Name
- KBC Technologies Group
- Job Title
- Patching and Compliance Engineer
- Job Description
-
**Job Title**
Patching and Compliance Engineer
**Role Summary**
Responsible for end‑to‑end patch lifecycle management, vulnerability remediation, and compliance reporting across Linux and Windows environments. Utilizes BMC TrueSight Server Automation to schedule, deploy, validate, and rollback patches, while ensuring adherence to industry and internal security baselines (CIS, STIG). Provides operational support during patch windows, collaborates with infrastructure, security, and change management teams, and supports internal/external audits (ISO 27001, PCI‑DSS, SOC 2).
**Expectations**
- Deliver timely patching within defined SLAs.
- Maintain 100 % compliance with established baselines.
- Produce accurate dashboards, posture assessments, and remediation reports.
- Provide root‑cause analysis for patch failures and coordinate corrective action.
**Key Responsibilities**
- Plan, execute, and validate monthly/quarterly patch cycles for Linux (RHEL, CentOS, Ubuntu) and Windows Server.
- Remediate vulnerabilities identified by Qualys, Tenable, and Defender for Endpoint.
- Enforce compliance baselines, generate compliance dashboards, and support audit requirements.
- Automate patching and compliance workflows using PowerShell, Bash, or Python.
- Optimize patching processes for zero‑downtime or rolling updates.
- Maintain asset inventory, patch calendars, and operational documentation.
- Participate in change management, go/no‑go decisions, and incident resolution.
- Provide L2/L3 support during patch windows and major compliance remediation.
**Required Skills**
- 5–8 + years of patching, compliance, or OS administration experience.
- Hands‑on expertise with BMC TrueSight Server Automation (BSA/TSSA).
- Proficiency in patching Linux (RHEL, CentOS, Ubuntu) and Windows Server.
- Knowledge of CIS, STIG, and internal configuration baselines.
- Experience with security tools (Qualys, Tenable, Defender for Endpoint).
- Scripting skills in PowerShell, Bash, or Python.
- Strong troubleshooting and root‑cause analysis abilities.
- Excellent collaboration with cross‑functional teams (Infrastructure, Security, Application, Change Management).
**Required Education & Certifications**
- Security clearance (SC) required.
- Relevant certifications preferred: BMC Certified Professional, CISSP, or equivalent.
- Bachelor’s degree in Computer Science, Information Security, or related field (preferred).