Senior Systems Engineer – Windows Administration & Vulnerability Management
Location:
New York, NY
Work Arrangement:
Hybrid – 3 days onsite per week
Schedule:
Two Mondays and two Fridays onsite each month
Position Overview
We are seeking a Senior Systems Engineer specializing in Windows Administration, Vulnerability & Patch Management (VPM), and virtual infrastructure to join a Servers, Storage & Database organization.
This role will take a leading role in enterprise server patching, vulnerability remediation, system hardening, and security compliance across physical and virtual environments. The ideal candidate will have strong Windows Server administration skills, experience with MECM/SCCM and vulnerability management tools, and the ability to work effectively with local and global infrastructure and security teams.
Key Responsibilities
-
Monitor and manage automated Windows server patching and coordinate remediation activities with infrastructure teams.
-
Manage and test MECM/SCCM application packages and software deployments.
-
Identify and remediate software vulnerabilities across Windows and Linux servers through patching, upgrades, or removal.
-
Develop and deploy Active Directory Group Policies to remediate vulnerabilities and harden Windows servers and third-party applications.
-
Monitor and report vulnerabilities across Windows servers, Linux/Unix systems, VMware hosts, virtual machines, appliances, and other infrastructure assets.
-
Coordinate vulnerability remediation efforts across domestic and global IT teams.
-
Analyze vulnerability and security data from Qualys and Splunk, including reconciliation of data between multiple sources.
-
Support proactive vulnerability detection, monitoring, patching, system installation, configuration, and security hardening.
-
Follow established security, vulnerability, and patch-management policies and best practices.
-
Collaborate with infrastructure, security, server, database, and global technology teams on projects and operational initiatives.
-
Participate in project planning, implementation, testing, and deployment activities.
-
Provide clear technical documentation and communicate complex technical issues to both technical and non-technical stakeholders.
-
Manage multiple priorities while taking ownership of assigned projects and ensuring timely completion.
Required Qualifications
-
Strong senior-level Windows Server administration experience.
-
Hands-on experience with MECM/SCCM and enterprise patch management.
-
Experience with vulnerability management and remediation.
-
Experience with Qualys and/or comparable vulnerability management platforms.
-
Experience with Splunk or similar security/log monitoring platforms.
-
Working knowledge of Linux administration, preferably RHEL and package management.
-
Experience supporting VMware virtual infrastructure.
-
Strong understanding of Active Directory and Group Policy.
-
Knowledge of networking and infrastructure administration concepts.
-
Experience with PowerShell or other scripting/automation technologies.
-
Strong understanding of security remediation, system hardening, and vulnerability management best practices.
-
Excellent troubleshooting, analytical, communication, and documentation skills.
-
Ability to work independently, manage multiple priorities, and take ownership of issues through resolution.
-
Ability to explain complex technical concepts clearly to non-technical audiences.
Preferred Qualifications
-
Experience working in large enterprise or financial-services environments.
-
Experience coordinating vulnerability remediation across global infrastructure teams.
-
Experience with Windows and Linux server hardening.
-
Experience with automated patching and software deployment at enterprise scale.
-
Knowledge of security frameworks, vulnerability management processes, and infrastructure compliance.
-
Experience working in Agile or project-based environments.
Ideal Candidate
The ideal candidate is a hands-on Senior Systems Engineer who combines strong Windows administration with vulnerability management, patching, virtualization, security remediation, and automation experience. This individual should be proactive, organized, technically curious, and comfortable working across infrastructure, security, and global technology team
#LI-DH2
Nesco Resource offers a comprehensive benefits package for our associates, which includes a MEC (Minimum Essential Coverage) plan that encompasses Medical, Vision, Dental, 401K, and EAP (Employee Assistance Program) services.
Nesco Resource provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws.




