Network & Systems Engineer (Vulnerability Management)
Remote · Full Time
Be the first to apply
- Experience
- 3–6 yrs
- Salary
- —
- Openings
- 1
- Posted
- 1 week ago
- Work mode
- Work from home
- Resume
- Required to apply
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
About Gruve
Gruve is a forward-thinking software services startup focused on elevating enterprises into AI powerhouses. The company specializes in cybersecurity, customer experience, cloud infrastructure, and cutting-edge technologies such as Large Language Models (LLMs). Gruve aims to empower clients by leveraging their data for smarter business decision-making. As a well-funded, early-stage startup, Gruve provides a dynamic working environment with strong connections to customers and partners.
Role Overview
The role involves being the onsite engineer present daily at the customer location, managing the remediation lifecycle directly on client premises. Responsibilities include executing Qualys VMDR vulnerability scans within the customer's environment, gathering detailed vulnerability data, and collaborating face-to-face with system owners to prioritize and address findings. The engineer will manage patching and fixes on a variety of endpoints under a formal change management process, ensuring tested rollback procedures.
Key Duties
- Conduct Qualys VMDR scans on-site to retrieve vulnerability specifics, including severity levels, affected assets, and guidance on remediation.
- Work directly with client infrastructure, application, and security teams to prioritize vulnerabilities based on threat context and asset importance.
- Apply patches and resolve vulnerabilities on in-scope devices such as Windows and Linux servers, Microsoft Exchange, Active Directory, enterprise apps, databases, network devices, security hardware, cloud workloads, and virtualization platforms like VMware and Hyper-V.
- Manage remediation of assets requiring physical or local access, including segmented or isolated networks, consoles, jump hosts, appliances, and other physical devices unreachable remotely.
- Raise and carry out Change Requests for patching activities, including impact assessments, risk categorization, scheduling, and tested rollbacks; attend Change Advisory Board and operational meetings on-site.
- Implement patching within maintenance windows using staggered rollouts, with readiness to intervene physically if issues occur.
- Verify post-remediation success by rescanning and updating vulnerability registers and aging reports to confirm closure.
- Perform daily client-side data uploads using the Qualys Splunk Add-on during business hours, maintaining upload health and troubleshooting issues to comply with availability requirements.
- Coordinate with offsite engineers to hand over ongoing remediation tasks for after-hours and weekends.
- Serve as the primary customer contact at the site for vulnerability management inquiries, audits, evidence requests, and walkthroughs.
- Contribute data regarding findings, patch timing, coverage, and availability to weekly and monthly reporting.
Qualifications
- 3 to 6 years of practical experience in network or systems engineering with patching and vulnerability remediation expertise.
- Proficiency using Qualys VMDR to execute scans and extract vulnerability details; familiarity with Qualys Splunk Add-on strongly favored.
- Extensive hands-on experience patching Windows Server and Linux systems through tools like WSUS, SCCM, and package managers, including Microsoft Exchange and Active Directory.
- Ability to patch or upgrade network infrastructure devices, security hardware (firewalls, NAC, IPS/IDS), virtualization hosts (VMware, Hyper-V), and cloud environments.
- Comfort working in data center or server room settings, with experience accessing consoles, out-of-band interfaces, and physical equipment.
- Understanding of CVSS/CVE standards, vulnerability management process, ITIL change management, and change request procedures with rollback planning.
- Basic knowledge of Splunk or SIEM systems; scripting skills in PowerShell or Bash are beneficial.
- Excellent communication, documentation, coordination skills with strong written English; the role requires daily onsite client interaction.
- Must be able to work full-time onsite in Dubai and succeed in client security screening and access protocols.
Preferred Credentials
- Certifications such as Qualys VMDR, MCSA, RHCSA, CompTIA Security+/Network+, CCNA, Azure Administrator, and ITIL Foundation are desirable.
- Professional demeanor and confidence when engaging stakeholders.
- Disciplined approach to maintaining daily workflows and meeting SLAs.
- Experience operating in an audit-ready environment with strict governance and rollback discipline for production changes within maintenance windows.
Company Culture and Equal Opportunity
Gruve encourages innovation, teamwork, and ongoing professional development. We prioritize inclusivity and diversity, aiming to create a supportive workplace where every individual can excel. Candidates passionate about technology and looking to make a meaningful impact are encouraged to apply. Gruve is an equal opportunity employer welcoming applicants from all backgrounds; only shortlisted individuals will be contacted for interviews.