Job Description
Location: Toronto
Work Type: Contract (1 Year)
Hybrid: Once a week and every 3rd Friday of the month in office)
Position Overview
Our client is seeking a skilled and detail-oriented Infrastructure Engineer to join their team on a contract basis to assist in the management of server vulnerabilities and the execution of patching activities. The ideal candidate will work closely with our IT Security and Infrastructure teams to identify, assess, and remediate vulnerabilities, ensuring the ongoing security and compliance of our server environment.
Key Responsibilities
Vulnerability Assessment:
- Perform regular vulnerability scans on servers and infrastructure using approved tools.
- Analyze scan results, prioritize vulnerabilities based on risk, and document findings.
- Come up with remediation plans.
Patching and Remediation:
- Coordinate and execute patch deployment on Windows and Linux servers.
- Validate the successful application of patches and monitor for post-patching issues.
- Troubleshoot and resolve patching failures or conflicts.
Reporting and Documentation:
- Maintain accurate records of vulnerabilities, remediation actions, and patch status.
- Prepare and deliver regular status reports to management and stakeholders.
Collaboration:
- Work with cross-functional teams to schedule and minimize downtime during patching activities.
- Communicate effectively with IT staff to ensure awareness and understanding of remediation processes.
Compliance:
- Ensure all activities adhere to organizational security policies, standards, and regulatory requirements.
Qualifications:
- Proven experience in vulnerability management and server patching (Windows and Linux environments).
- Familiarity with vulnerability scanning tools (e.g., Qualys, Nessus, Rapid7) and patch management solutions.
- Understanding of IT security principles and best practices.
- Strong analytical and problem-solving skills.
- Excellent communication and documentation abilities.
- Ability to work independently and manage multiple tasks simultaneously.
- Relevant certifications (e.g., CompTIA Security+, Microsoft, Linux) are an asset