TymblHub

© 2026 TymblHub

Vulnerability Remediation Management Engineer (L3 Support)

CMS It Services
Posted on
CMS It Services logo

Experience
4 - 8 yrs
Salary (CTC)
₹6.5L - ₹10L
Job Location
Chennai, India
Vacancy
5
Designation
Vulnerability Analyst
Job Type
Not specified

Job Description

Role & responsibilities


  • Provide advanced operational and technical support for vulnerability remediation, endpoint management, and enterprise device security services.
  • Ensure timely resolution of remediation activates, while maintaining agreed SLAs and customer satisfaction.
  • Drive vulnerability prioritization, remediation planning, and risk reduction activities across endpoints, applications, and BIOS/firmware layers.
  • Support continuous improvement initiatives through automation, process optimization, and proactive issue prevention.
  • Ensure compliance with ITIL processes, Information Security policies, Change Management standards, and organizational governance requirements.
  • Collaborate with cross-functional teams to deliver secure, stable, and compliant endpoint environments.

Preferred candidate profile :


  • Perform vulnerability assessment analysis using reports from Tenable, Qualys, Nessus, and similar security platforms.
  • Prioritize remediation activities using Criticality, business impact, exposure level, and risk-based methodologies.
  • Manage vulnerability remediation across Windows endpoints, enterprise applications, BIOS/firmware, and supporting infrastructure.
  • Provide expert troubleshooting and break-fix support for endpoint, application, operating system, and firmware-related issues.
  • Implement and coordinate patch management activities for Windows, Microsoft 365 Apps, and third-party software.
  • Maintain strong knowledge of cybersecurity frameworks, security controls, and remediation best practices.

Principal Accountabilities

  • Perform vulnerability assessment analysis using reports from Tenable, Qualys, Nessus, and similar security platforms.
  • Prioritize remediation activities using Criticality, business impact, exposure level, and risk-based methodologies.
  • Manage vulnerability remediation across Windows endpoints, enterprise applications, BIOS/firmware, and supporting infrastructure.
  • Provide expert troubleshooting and break-fix support for endpoint, application, operating system, and firmware-related issues.
  • Implement and coordinate patch management activities for Windows, Microsoft 365 Apps, and third-party software.
  • Maintain strong knowledge of cybersecurity frameworks, security controls, and remediation best practices.

1. Day-to-Day Support

  • Hands-on experience managing and securing Windows, Linux, and enterprise systems, with the capability to address vulnerabilities across endpoints, operating systems, and supporting infrastructure
  • Investigate and resolve endpoint, application, BIOS, and device management issues
  • Provide end-to-end support using SCCM and Microsoft Intune administration, deployments, and troubleshooting.
  • Troubleshoot SCCM client, distribution point, software deployment, operating system deployment, compliance, and patching issues.
  • Manage Windows OS and Microsoft 365 patch deployment activities, ensuring high compliance across the environment.
  • Lead technical response and restoration activities during P1 and high-severity incidents.
  • Participate in Change Management processes and reviews.
  • Analyze remediation failures, identify root causes, and implement corrective actions.
  • Coordinate timely remediation of identified vulnerabilities.
  • Prepare compliance reports and documentation.

2. Teamwork & Collaboration

  • Work closely with Security Operations, Infrastructure, Service Desk, Application Support, and Engineering teams.
  • Provide technical guidance and mentoring to junior engineers.
  • Ensure adherence to SOPs and escalation paths.
  • Share technical knowledge and best practices.
  • Build strong stakeholder relationships.
  • Drive service quality and security posture improvements.
  • Maintain accurate documentation.

Required Technical Skills & Experience

  • Strong hands-on experience with Microsoft SCCM and Microsoft Intune administration.
  • Expertise in Windows endpoint management, patch management, and software deployments.
  • Good understanding of vulnerability management lifecycle and risk prioritization.
  • Experience troubleshooting endpoints, enterprise applications, BIOS/firmware, and operating systems.
  • Hands-on experience managing critical incidents (P1) and Change Management.
  • Knowledge of Microsoft 365 Apps deployment and compliance management.
  • Strong analytical and communication skills.

Major Challenges:

  • To be able to deliver quality results under high stress conditions.
  • To adapt and cope with the high compliance demands in a constantly changing environment.
  • Identify and resolve complex issues, escalating if required to the Manager
  • Work with respective vendor Support to get the issue resolution in timely manner
  • Stay updated on emerging technologies and industry trends
  • Managing the hierarchy and inventory of the MECM infrastructure

Education / Relevant Experience / Other Qualifications (e.g. Knowledge, Skills, Professional Qualifications required)

(For the role not the role holder. Minimum requirements of the role)

  • Any bachelor’s degree with relevant experience in Managing Vulnerability remediation
  • Deployment knowledge by using Group policies, Microsoft Intune, Microsoft Endpoint Configuration Manager (MECM).
  • Compliance and Regulatory Knowledge
  • Understanding the needs of both internal and external customers and being committed to delivering an excellent service.
  • Knowledge of scripting languages (e.g., Python, PowerShell, Bash) for automating repetitive tasks like vulnerability remediation, patching.
  • High standards of integrity and the ability to motivate self/others towards continuous performance improvement and personal development.
  • Sound technical knowledge on the related business areas.
  • Willing to work on different shifts and be assigned to other sites/location if required.

Pre-requisites:

  • Relative Certifications or equivalent Experience preferred, with a minimum of 4 years of Experience in a relevant field.
  • Preferred Technical experience with Microsoft Endpoint manager (Intune), Operating Systems, Microsoft Endpoint Configuration Manager (MECM), Troubleshooting with product logs Etc.
  • Familiar with standard concepts, practices, and procedures.