Windows Automation and Patching Engineer
B/CORE · Herndon, VA · 4 days ago
Engineering$165k–$195k/yrFull-time
Responsibilities
- Manage and automate patch deployment and configuration management across multiple domains and enclaves.
- Develop automation solutions using PowerShell, Python, APIs, or orchestration frameworks to streamline system updates and administrative tasks.
- Support hybrid and cloud patching capabilities using tools such as Azure Update Management, AWS Systems Manager (SSM), and SCCM/ConfigMgr.
- Engineer improvements to the enterprise patching infrastructure and contribute to the design of a new automated update and hotfix distribution system.
- Perform automation-driven server configuration, baseline enforcement, compliance reporting, and STIG/vulnerability remediation.
- Provide Tier 3 troubleshooting and root-cause analysis for complex Windows systems.
- Migrate, refactor, and modernize traditional server workloads to support cloud compatibility and virtualization strategies.
- Monitor infrastructure performance, proactively identify issues, and implement automated remediation with minimal user impact.
- Translate customer requirements into hardware/software specifications and perform system integration, verification, and validation.
- Prepare technical documentation, diagrams, and patching process workflows for customer and team use.
- Deliver strong customer service and collaborate effectively with technical teams.
Requirements
- Advanced PowerShell scripting
- Experience with WSUS across multiple enclaves and in offline/air-gapped systems
- Familiarity with cloud patching tools (Azure Update Management, AWS SSM)
- Familiarity with SCCM/ConfigMgr or similar enterprise patching tools
- Experience with vulnerability remediation automation and STIG compliance workflows
- Virtualization & Infrastructure experience with VMware (vSphere 4.x-6.x) and Microsoft Hyper-V (2016-2022)
- Experience with commercial cloud providers including Azure, Google Cloud (GCP), and Oracle Cloud (OCI)
Qualifications
- Cloud certifications (Azure/AWS) are desired
- Experience with automation/orchestration tools such as AWS Lambda
- Experience with cloud-native monitoring tools (Azure Sentinel, CloudWatch) or Splunk automation
- Experience creating enterprise-level documentation and architectural diagrams
- Experience with DSC, CI/CD pipelines, GitHub/GitLab, Jenkins Pipeline
- Experience with AWS services including VPC, EC2, ELB, S3, IAM, Security Groups, Fleet Manager, and EventBridge
Skills
- PowerShell scripting
- WSUS
- Cloud patching tools (Azure Update Management, AWS SSM)
- SCCM/ConfigMgr or similar enterprise patching tools
- Vulnerability remediation automation and STIG compliance workflows
- VMware (vSphere 4.x-6.x) and Microsoft Hyper-V (2016-2022)
- Commercial cloud providers including Azure, Google Cloud (GCP), and Oracle Cloud (OCI)
- Automation/orchestration tools such as AWS Lambda
- Cloud-native monitoring tools (Azure Sentinel, CloudWatch) or Splunk automation
- Enterprise-level documentation and architectural diagrams
- DSC, CI/CD pipelines, GitHub/GitLab, Jenkins Pipeline
- AWS services including VPC, EC2, ELB, S3, IAM, Security Groups, Fleet Manager, and EventBridge
Benefits
- Health/Dental/Vision
- 401(k)
- Paid Time Off
- STD/LTD/Life Insurance/Voluntary Life Insurance
- Stipends
- Referral Bonuses