Software Patching and Lifecycle Management Engineer III
Listed on 2026-06-05
-
IT/Tech
Cybersecurity, Systems Engineer -
Engineering
Cybersecurity, Systems Engineer
Software Patching, Lifecycle Management Engineer III Company Overview
At Mitsubishi Power, we're not just building better clean energy technologies; we're architecting a better future. Our team is boldly redefining power generation to accelerate the world's energy transition. We operate as one team, pushing toward our vision of the future. We value problem solvers, prioritize collaboration, and support each other in an inclusive culture built on accountability and authenticity by demonstrating our values:
Safety, Family, Innovative, Inclusive, Accountable & Courageous. Together, we’re building the future we all aspire to - making net zero a reality.
The Software Patching, Lifecycle & OT Cybersecurity Management Engineer is responsible for the review, validation, packaging, documentation, and deployment support of software, firmware, and security updates across secure operational technology (OT) and control system environments. This role supports Windows and Linux systems operating in both air‑gapped control systems and enterprise OT networks, ensuring updates are applied in a controlled, secure, and auditable manner.
The position owns the end‑to‑end patch and vulnerability management lifecycle, including patch applicability review, lab validation, vulnerability scanning, risk assessment, remediation coordination, scripting and automation, and compliance documentation. Working closely with engineering, cybersecurity, and field teams, the engineer ensures updates are implemented accurately and aligned with operational and security requirements.
The ideal candidate is a self‑driven professional with strong technical expertise in operating systems, virtualization, scripting, and cybersecurity fundamentals. This role requires sound engineering judgment, the ability to communicate technical risks and remediation strategies effectively, and a commitment to supporting critical infrastructure environments with a high degree of reliability and security awareness.
Key Responsibilities- Demonstrates our core competencies:
Action oriented, change champion, customer-focused, developing self & others, and ownership - Assess and validate patch applicability by reviewing OS patches, hotfixes, firmware updates, antivirus definitions, and third‑party releases for use in OT and control system environments.
- Perform patch validation and testing in lab environments to confirm compatibility, cybersecurity impact, and operational safety prior to deployment.
- Execute patch deployment for Windows and Linux systems in accordance with defined schedules, maintenance windows, and change management processes.
- Conduct vulnerability scanning and analysis, evaluating CVEs, severity, and exploitability to determine remediation actions or risk disposition.
- Coordinate and track remediation activities with system owners, field teams, and customers, validating fixes through re‑scan or functional verification.
- Develop and maintain patch deployment packages for offline, air‑gapped, and restricted environments, including secure distribution methods.
- Administer centralized patch management tools (e.g., WSUS) and support associated reporting and tracking workflows.
- Develop and utilize automation and scripting tools (Power Shell, Python, Bash) to support patching, validation, reporting, and system health checks.
- Support lifecycle maintenance of virtualized environments (e.g., VMware ESXi, Proxmox), including coordination of patching activities and validation.
- Troubleshoot patching and scanning issues, performing root cause analysis and coordinating resolution with internal teams or vendors.
- Maintain comprehensive technical documentation, including procedures, validation records, vulnerability evidence, release notes, and customer guidance.
- Document patch decisions and risk posture, including approved/deferred patches, known issues, incompatibilities, and mitigation strategies.
- Support configuration and change management processes, including backup, rollback, and recovery planning.
- Support compliance and audit readiness, including documentation and evidence collection for regulated environments (e.g., NERC CIP).
- Collaborate cross‑functionally…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).