More jobs:
Systems Engineer - Messaging & Groupware
Job Description & How to Apply Below
Responsible for managing vulnerability remediation, patch deployment, and security hardening across Active Directory, Windows Server, Microsoft Exchange (on-premises and hybrid), and Microsoft Entra (Azure AD). Ensures the confidentiality, integrity, and availability of identity and messaging platforms by implementing risk-based patch governance, enforcing security baselines, addressing vulnerabilities in line with defined SLAs, and maintaining robust hybrid security controls in compliance with organizational and regulatory requirements.
Experience Required- 4–7 years in Microsoft infrastructure environments
- Experience in vulnerability management and patching
- Experience in Hybrid Exchange and Entra
- Good communication and coordination skills
- Experience in large enterprise or banking environments
- Exposure to regulatory and audit frameworks
Microsoft Azure / Windows Server / Security certifications
- Vulnerability Management (Primary Focus)
- Manage end-to-end vulnerability lifecycle using Qualys, Microsoft Defender.
- Analyze findings across Domain Controllers, Exchange, Windows Servers, and Entra .
- Prioritize remediation based on CVSS, exploitability, and business impact.
- Ensure remediation within SLA timelines.
- Provide risk acceptance and compensating controls.
- Generate audit-ready reports and dashboards.
- Patch Management & Security Updates
- Responsible for patching AD Domain Controllers, Exchange Servers, Hybrid components, and Windows Servers.
- Deploy Windows patches, Exchange SU/CU, and emergency updates.
- Ensure minimal downtime patching strategies.
- Entra & Hybrid Identity Security
- Manage Entra Azure AD Connect.
- Monitor identity sync and authentication methods.
- Remediate identity vulnerabilities and MFA/CA misconfigurations.
- Ensure secure hybrid identity posture.
- Hybrid Exchange Management
- Manage hybrid mail flow and configuration.
- Ensure continuity of services like Free/Busy and Autodiscover.
- Troubleshoot hybrid mail routing and authentication issues.
- Pre-Patching Risk & Impact Assessment
- Review CVEs, advisories, and dependencies.
- Perform impact analysis on authentication and messaging.
- Validate backup and rollback strategies.
- Secure Patch Deployment
- Execute patching via CAB approvals.
- Perform rolling DC patching and DAG-based Exchange patching.
- Ensure no service disruption.
- Post-Patching Validation & Hardening
- Validate AD, Exchange, and Entra h.
- Monitor logs and alerts.
- Perform re-scans and implement hardening measures.
- Security Compliance & Audit
- Ensure compliance with PCI-DSS / ISO standards.
- Maintain remediation evidence and reports.
- Support audits and regulatory assessments.
- Automation & Reporting
- Develop Power Shell automation.
- Automate vulnerability tracking and reporting.
- Prepare dashboards and metrics.
- On-Call Support
- Activelyparticipatein
24x7 On-Call rotation, providing support for critical incidents. - Ensuretimelyresolution of production issues and service restoration.
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×