Windows Patching & Automation Engineer
- AI
- Windows
- Windows Server
- PowerShell
- .NET
- Azure DevOps
- STIGs
- Equity
- Pension
About Blueprint
Blueprint is a technology solutions firm headquartered in Bellevue, Washington, with teams across the United States. We help organizations turn complex challenges into meaningful outcomes by connecting strategy and execution across AI, cloud, data, product development, and emerging technology.
Our culture is built by people who care deeply about doing exceptional work. We set high standards, take ownership, and continually challenge ourselves and one another to be better. We work hard, support each other, and take genuine pride in what we deliver for our clients, partners, and teams.
At Blueprint, youโll work alongside talented people with different experiences, expertise, and perspectives. Youโll have opportunities to take on meaningful challenges, expand your skills, and see the impact of what you build.
Bring your perspective. Raise the standard. Build what matters.
About the Role
Blueprint is seeking aWindows Patching & Automation Engineer to support patching, antivirus, and vulnerability compliance across a large, distributed Windows server environment.ย
This role requires hands-on PowerShell scripting and automation experience, along with strong debugging and troubleshooting capabilities across multiple systems. Youโll use logs, telemetry, error codes, and deployment data to investigate failures, identify underlying causes, and support remediation.
Youโll help deliver Windows security patches, antivirus platform and signature updates, and .NET updates safely and consistently while collaborating with engineering, security, and compliance teams.
What You'll Do
- Write, maintain, and troubleshoot PowerShell scripts supporting patch deployment, diagnostics, remediation, and reporting.
- Support monthly Windows security patch rollouts, including official and prerelease updates, antivirus updates, .NET updates, and related security and compliance components.
- Investigate Windows update and standalone update package (MSU) installation failures using Windows event logs, Component-Based Servicing (CBS) logs, installer logs, and error codes.
- Analyze logs and telemetry across multiple systems to identify failure patterns, isolate technical blockers, and determine appropriate remediation steps.
- Use Kusto Query Language (KQL) to investigate deployment results, monitor patch and vulnerability compliance, and identify systems requiring follow-up.
- Verify installed Windows updates, packages, operating system versions, and relevant runtime versions.
- Build, validate, and publish patching components and packages while following safe deployment practices across deployment rings and environments.
- Troubleshoot deployment blockers related to machine state, network connectivity, capacity, installation failures, or environment-specific conditions.
- Maintain dashboards, monitoring, compliance reporting, and clear investigation notes.
- Coordinate with partner teams to resolve exceptions, manual interventions, and technical blockers, escalating issues with supporting diagnostic evidence.
What You'll Bring
- Hands-on experience with PowerShell scripting and automation, including writing, modifying, and debugging scripts.
- Understanding of PowerShellโs object-based pipeline and common filtering methods, such as
Where-Object. - Strong debugging and troubleshooting capabilities across multiple systems, using logs and telemetry to investigate issues, narrow down causes, and determine practical next steps.
- Working knowledge of Windows update mechanisms, including Windows Update, Windows Server Update Services (WSUS), and manual MSU installation.
- Experience troubleshooting Windows update or package installation failures through event logs, servicing or installer logs, and error-code investigation.
- Ability to verify installed Windows updates and packages using tools such as
Get-HotFix,Get-WindowsPackage, DISM, or Windows Update history. - Hands-on experience using KQL to query and investigate operational data in Kusto.
- Strong communication skills, with the ability to document findings clearly and collaborate with engineering, security, and compliance teams.
Preferred Qualifications
- Experience supporting patching or vulnerability compliance across a large, distributed Windows server environment.
- Experience with Azure DevOps build or deployment pipelines.
- Familiarity with .NET servicing and identifying installed .NET runtimes using commands such as
dotnet --list-runtimes. - Familiarity with antivirus servicing and vulnerability scanning tools.
- Experience connecting Common Vulnerabilities and Exposures (CVEs) to patching or vulnerability remediation activities.
- Familiarity with deployment rings, safe deployment practices, Windows hotpatching, operating system baselines, STIGs, or WinPE.
Compensation
The estimated compensation range isUSD $2,200โ$2,500 per month ($26,400โ$30,000 annually). Actual compensation will depend on the hiring location, experience, skills, and internal equity. Compensation may be paid in local currency through the applicable local Professional Employer Organization (PEO) or Employer of Record (EOR) partner.
Location and Employment Structureย
This is aremote position open to candidates based in Latin America.
The selected candidate will be employed through Blueprintโs applicable local Professional Employer Organization (PEO) or Employer of Record (EOR) partner and assigned to support aclient engagement expected to last 18 months.
Benefits, statutory entitlements, and any additional required payments will follow the applicable local employment requirements.
Benefits
Blueprint believes that healthy, supported employees do their best work. Eligible employees have access to a comprehensive benefits package that may include:
- Medical, dental, and vision coverage
- Flexible Spending Account (FSA)
- 401(k) retirement plan
- Competitive paid time off
- Parental leave
- Professional growth and development opportunities
Benefits and eligibility may vary based on role, employment status, and location.
Equal Employment Opportunity
Blueprint Technologies, LLC is an equal opportunity employer. We consider qualified applicants without regard to race, color, religion, sex, pregnancy, childbirth or related medical conditions, sexual orientation, gender identity or expression, national origin, ancestry, age, disability, genetic information, marital or familial status, military or veteran status, citizenship status, or any other characteristic protected by applicable law.
Applicant Accommodations
If you need a reasonable accommodation to participate in any part of the application or interview process, please contactrecruiting@bpcs.com.
Windows Patching & Automation Engineer ยท Blueprint Technologies