Role Summary
The Legacy Infrastructure Vulnerability Engineer will manage vulnerability remediation across traditional enterprise technology estates, with primary focus on Windows, Linux, Active Directory, middleware, and centrally managed patching. The role will analyze findings, coordinate remediation with platform owners, troubleshoot patching constraints, and validate closure while maintaining service stability and change discipline.
Primary focus: Windows, Linux, Active Directory, middleware, and centralized patching coordination.
Key Responsibilities
· Analyze vulnerability findings affecting Windows servers, Linux platforms, Active Directory, middleware, and other on-premises or legacy infrastructure components.
· Validate asset ownership, operating-system version, vulnerability applicability, patch availability, exposure, remediation path, maintenance window, and service criticality before assigning action.
· Coordinate centralized patching and configuration remediation with server, directory services, middleware, database, network, application, and operations teams.
· Prepare remediation plans that group compatible fixes, identify prerequisites and dependencies, minimize operational disruption, and align execution with approved change-management processes.
· Troubleshoot failed deployments, unsupported platforms, agent issues, repository or package problems, reboot dependencies, configuration conflicts, and recurring scan detections.
· Track assigned findings against remediation SLAs, maintain accurate status and evidence, escalate overdue items, and provide actionable progress updates to the Vulnerability Lead.
· Support rescans and technical validation after remediation; investigate residual findings and coordinate corrective action until verified closure or approved exception.
Required Skills and Experience
· Strong administration and patching knowledge across Windows and Linux platforms.
· Working knowledge of Active Directory, middleware, enterprise patching tools, and change management.
· Ability to interpret vulnerability evidence, security advisories, patches, configuration guidance, and scan results.
· Experience coordinating remediation across large, distributed infrastructure estates.
· Structured troubleshooting, documentation, stakeholder coordination, and operational discipline.
Success Measures
Successful performance will be evaluated through timely risk reduction, SLA adherence, accuracy of records and reporting, quality of stakeholder coordination, audit readiness, and measurable improvement in remediation efficiency and control effectiveness.