Patch Management Analyst
Position Type: Full-Time
Work Schedule: [To Be Determined]
Pay Rate: Starting at $35.00
Projected Start Date: 09/07/2026
Duration: 6 month contract
Position Summary
The Patch Management Analyst is responsible for coordinating, tracking, and executing the distribution of security releases, including patches, updates, and upgrades, across enterprise infrastructure and software environments. This role manages the full patch lifecycle from assessment through implementation, validation, mitigation, and reporting. The analyst maintains audit-ready documentation, ensures compliance with established change management and regulatory requirements, supports vulnerability remediation efforts, and provides accurate operational and compliance reporting. This position requires strong organizational skills, attention to detail, and the ability to work independently while collaborating with technical and business stakeholders.
Key Responsibilities
- Track and document security releases throughout the entire lifecycle, including assessment, testing, implementation, validation, mitigation, and closure.
- Monitor and report on service level agreement (SLA) adherence for patch implementation and mitigation timelines.
- Coordinate with infrastructure teams, application owners, and business stakeholders to evaluate security releases and schedule deployment activities.
- Create and maintain service requests, change records, and supporting documentation in accordance with configuration management and change control procedures.
- Monitor mitigation plans and implementation deadlines, escalating risks when required timelines may be missed.
- Ensure patch management activities are accurately documented and comply with organizational policies, standards, and applicable regulatory requirements.
- Generate recurring compliance, vulnerability remediation, and aging reports for open vulnerabilities and mitigation activities.
- Maintain and analyze metrics related to patch deployment performance, compliance status, SLA achievement, and overall risk exposure.
- Utilize automated patching and vulnerability management tools to assess applicable releases, validate remediation status, and produce reporting.
- Develop operational reports and dashboards that provide actionable insights to technical and management teams.
- Support internal and external audits by compiling, validating, and organizing required documentation and evidence.
- Participate in patch management, compliance, and operational meetings, providing status updates and recommendations.
- Identify and support process improvement initiatives related to patch tracking, reporting, compliance, and vulnerability remediation workflows.
- Collaborate with subject matter experts to implement patches according to established procedures while minimizing operational impact.
- Assist with special projects, reporting requests, and cybersecurity initiatives as assigned.
Required Qualifications
- Hands-on experience supporting or administering Windows and Linux server environments.
- Experience managing patch lifecycle activities and security release processes.
- Working knowledge of vulnerability remediation and cybersecurity operations.
- Understanding of software development lifecycle (SDLC) concepts and change management practices.
- Knowledge of configuration management and change control processes.
- Experience developing and maintaining compliance, operational, or security-related metrics and reports.
- Advanced proficiency in Microsoft Excel, including pivot tables, formulas, and data analysis.
- Strong documentation and recordkeeping skills in audit-sensitive environments.
- Ability to work independently while managing multiple priorities and deadlines.
- Strong analytical, problem-solving, and organizational skills.
- Excellent written and verbal communication skills.
Preferred Qualifications
- Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or a related field.
- Experience working in regulated or highly controlled operational environments.
- Background in information security, IT compliance, or IT auditing.
- Experience with cyber vulnerability management programs.
- Familiarity with vulnerability scanning and assessment tools, such as Tenable or Nessus.
- Experience creating reports and dashboards using data visualization tools such as Power BI.
- Industry certifications such as CompTIA Security+ or equivalent.
Core Competencies
- Effective Communication
- Project Coordination
- Accountability and Ownership
- Decision Making
- Customer Focus
- Adaptability and Ability to Work with Ambiguity
- Attention to Detail
- Risk Awareness and Escalation Management
- Collaboration and Teamwork
- Continuous Improvement