About the Role
As an offsite engineer, you will deliver the same remediation cycle from the company office while working remotely into the client environment over an approved VPN/jump-host path. This role is essential for managing the out-of-hours service, owning the 24x7 on-call rotation, executing overnight patching, and ensuring compliance with SLA/KPI frameworks.
Ready to apply for roles like this?
Unlock the company name and direct application link. Subscribers get instant access to fresh jobs across Dubai, Abu Dhabi and Riyadh, many with visa support.
Unlock employer & apply directly
Key Responsibilities
- Own the scheduled Qualys VMDR scan calendar: configure scans, authentication records, asset groups, and tags; extract vulnerability details, severities, and remediation guidance.
- Fix vulnerabilities and apply patches remotely across in-scope devices: Windows and Linux servers, Microsoft Exchange, Active Directory, enterprise applications, databases, network devices (routers/switches), security devices (firewalls/NAC/IPS/IDS), cloud workloads, and virtualization (VMware/Hyper-V).
- Maintain the 24x7 on-call rotation: respond to critical/zero-day findings, emergency patch directives, and failed-change escalations outside business hours.
- Plan and execute maintenance windows after-hours, on weekends, and public holidays, ensuring availability within SLA.
- Raise and execute Change Requests for remote patching activities, including impact, risk classification, schedule, and rollback; join the client's CAB remotely.
- Monitor the daily ALKASHIF upload and the Qualys Splunk Add-on outside business hours; troubleshoot failed uploads to maintain compliance.
- Automate recurring remediation and reporting tasks using PowerShell/Bash/Qualys APIs to minimize manual effort.
- Perform post-remediation verification re-scans and maintain the vulnerability register, aging report, and evidence pack.
- Produce weekly reports detailing findings, patch-time by severity, coverage %, availability, after-hours SLA, risks, and escalations; contribute to the monthly reporting pack.
- Provide backup coverage for the onsite engineer during leave, absence, and high-volume remediation drives.
- Ensure a clean handover from the onsite engineer at the end of business hours and return any open items each morning.
Basic Qualifications
- 3–6 years of experience in network/systems engineering with hands-on patching and vulnerability remediation.
- Familiarity with Qualys (VMDR) to run scans and obtain vulnerability details and reports; experience with Qualys Splunk Add-on is strongly preferred.
- Proven experience in patching Windows Server and Linux (WSUS/SCCM, package managers), including Microsoft Exchange and Active Directory.
- Proficient in patching/upgrading network devices (routers/switches), security devices (firewalls/NAC/IPS/IDS), virtualization hosts (VMware/Hyper-V), and cloud workloads.
- Experience delivering remote support in a customer environment via VPN/jump host/bastion access, utilizing remote console tooling.
- Strong scripting and automation skills (PowerShell/Bash; familiarity with Qualys or Splunk APIs is an advantage).
- Understanding of CVSS/CVE, the vulnerability management lifecycle, and ITIL change management/CR processes including rollback procedures.
- Willingness and availability to work a 24x7 on-call rotation, including weekends and public holidays.
- Strong written English, documentation, and remote-coordination skills; most client interaction occurs via ticket, email, and call.
Preferred Qualifications
- Certifications such as Qualys VMDR, MCSA/RHCSA (Windows/Linux), CompTIA Security+/Network+, CCNA, Azure Administrator, ITIL Foundation.
- Ability to self-manage and demonstrate reliability without direct supervision.
- Calmness under out-of-hours pressure.
- Automation-minded and precise in documentation.
Why Work Here
At the company, we foster a culture of innovation, collaboration, and continuous learning. We are committed to building a diverse and inclusive workplace where everyone can thrive and contribute their best work. If you’re passionate about technology and eager to make an impact, we’d love to hear from you.
We are an equal opportunity employer and welcome applicants from all backgrounds. We thank all who apply; however, only those selected for an interview will be contacted.