الوصف الوظيفي
• تكوين وإدارة ودعم أدوات إدارة التصحيح Ivanti لأنظمة Windows وLinux وتطبيقات الطرف الثالث.
• جدولة الاختبار ونشر التصحيحات والتحديثات والنسخ الساخنة عبر الخوادم ونقاط النهاية.
• أتمتة سير عمل التصحيح لتحسين الكفاءة وتقليل المخاطر.
• الحفاظ على الامتثال لمعايير الأمن ومهلات SLAs للتصحيح.
• مراقبة حالة نشر التصحيح وجهود الإصلاح ومستويات الامتثال.
• توليد والحفاظ على تقارير تفصيلية عن التصحيح من أجل التدقيق ومراجعات القيادة.
• التعاون مع قسم أمن المعلومات لتفسير نتائج فحص الثغرات وتحديد أولويات الجهود التصحيحية.
• ضمان الامتثال للسياسات الداخلية والمعايير الصناعية (CIS, NIST, PCI, SOX، وما إلى ذلك).
• العمل كخبير ميدان (SME) لإدارة التصحيح للنقاط النهائية والخوادم أثناء التقييمات الأمنية.
• الحفاظ على خوادم Ivanti والأدوات والوكلاء والبنية التحتية ذات الصلة.
• تحسين مجموعات التصحيح ومهام النشر وتكوينات المسح وكتالوجات التصحيح.
• إجراء تحديثات أداة منتظمة وتعديل التكوينات وفحص الصحة.
• العمل مع مديري النظام وفرق الشبكات ومالكي التطبيقات لجدولة وتأكيد دورات التصحيح.
• توفير الوثائق والدعم الفني لعمليات التصحيح.
• المشاركة في جولات التناوب عند الحاجة أو التصحيح خارج ساعات العمل.
المتطلبات
• خبرة 2+ سنوات في Ivanti Patch Management أو Ivanti Security Controls أو Ivanti Endpoint Manager.
• فهم قوي لـ Windows Server وWindows OS.
• خبرة في تصحيح تطبيقات الطرف الثالث، خاصة Adobe وJava وChrome وحزم تطبيقات المؤسسة.
• الإلمام بأدوات إدارة الثغرات (مثلاً Tenable وQualys وRapid7).
• مهارات برمجة نصية قوية (PowerShell مفضل).
• فهم Active Directory وGroup Policy والشبكات وإدارة النظام
المؤهلات المفضلة
• شهادات Ivanti (ICEM وICSM وشهادة Ivanti EPM).
• خبرة في SCCM/MECM وWSUS وJAMF أو أدوات إدارة نقاط النهاية الأخرى.
Job Description
• Configure, manage, and support Ivanti Patch Management tools for Windows, Linux, and third-party applications.
• Schedule, test, and deploy security patches, updates, and hotfixes across servers and endpoints.
• Automate patching workflows to improve efficiency and reduce risk.
• Maintain compliance with security standards and patching SLAs.
• Monitor patch deployment status, remediation efforts, and compliance levels.
• Generate and maintain detailed patching reports for audits and leadership reviews.
• Collaborate with Information Security to interpret vulnerability scan results and prioritize patching efforts.
• Ensure compliance with internal policies and industry standards (CIS, NIST, PCI, SOX, etc.).
• Act as SME for endpoint and server patch management during security assessments.
• Maintain Ivanti servers, consoles, agents, and related infrastructure.
• Optimize patch groups, deployment tasks, scan configurations, and patch catalogs.
• Conduct regular tool updates, configuration tuning, and health checks.
• Work with system administrators, network teams, and application owners to schedule and validate patch cycles.
• Provide documentation and technical support for patching processes.
• Participate in on-call rotations or after-hours patching as required.
Requirements
• 2+ years of experience with Ivanti Patch Management, Ivanti Security Controls, or Ivanti Endpoint Manager.
• Strong understanding of Windows Server and Windows OS.
• Experience with third-party application patching, especially Adobe, Java, Chrome, and enterprise app bundles.
• Familiarity with vulnerability management tools (e.g., Tenable, Qualys, Rapid7).
• Strong scripting skills (PowerShell preferred).
• Understanding of Active Directory, Group Policy, networking and system administration
Preferred Qualifications
• Ivanti certifications (ICEM, ICSM, Ivanti EPM certification).
• Experience with SCCM/MECM, WSUS, JAMF, or other endpoint management tools.