Experience designing enterprise patching or vulnerability-remediation transformation programs spanning multiple infrastructure and platform teams.
Knowledge of vulnerability severity and prioritization concepts such as CVSS, exploitability, asset criticality, business impact, exposure, compensating controls, and remediation SLAs.
Experience with infrastructure-as-code, configuration management, scripting, or orchestration used to automate patching and platform maintenance.
Familiarity with DevSecOps practices and integrating vulnerability remediation into CI/CD pipelines and platform engineering workflows.
Experience in highly regulated, high-availability, or mission-critical environments where patching must be balanced against stringent resiliency and change-management requirements.
Understanding of governance, audit evidence, patch exceptions, risk acceptance, compliance reporting, and metrics/KPIs for patch and vulnerability management.
Experience developing executive or technical-lead presentations that summarize current-state findings, target-state architecture/processes, and transformation roadmaps.
Candidates should have hands-on experience in at least two of the following areas:
Network & Operating Systems: Cisco; Windows; Linux; Ansible; enterprise OS and network-device patching
Database & Middleware: Oracle; Microsoft SQL Server; PostgreSQL; Apigee; database and middleware patching