Full-Time

Windows Patch Management Catalog Researcher

Qualys

Qualys

1,001-5,000 employees

Cloud-based vulnerability management and compliance platform

No salary listed

Pune, Maharashtra, India

In Person

Category
Data & Analytics
Required Skills
PowerShell
Python
Microsoft Windows
SCCM

Get referred to Qualys

See people who can refer or advise you

Requirements
  • 4-5 years of experience in Windows systems administration, patch management, or software packaging.
  • Strong understanding of Windows operating system internals, including registry structure, file system, user versus system installation scopes, environment variables, and PATH management.
  • Hands-on experience with Windows patching tools such as Windows Server Update Services, System Center Configuration Manager, Ivanti, Qualys, Chocolatey, or equivalent.
  • Experience with manual patch installation, including running MSI and EXE installers, using msiexec.exe with switches, and repackaging software.
  • Solid understanding of installer technologies, including Microsoft Installer/Windows Installer, WiX, Nullsoft Scriptable Install System, Inno Setup, and Squirrel, and their silent installation mechanisms.
  • Familiarity with the Windows registry and the ability to trace installation artifacts to their registry keys.
Responsibilities
  • Research, author, and maintain patch metadata for third-party Windows applications across a broad software catalog.
  • Identify new software releases, security updates, and version changes from vendor sources, changelogs, and security advisories such as CVE and NVD.
  • Map vendor releases to structured metadata schemas, including version strings, download URLs, detection logic, and installation parameters.
  • Track software end-of-life dates and update catalog entries accordingly.
  • Document and validate silent installation parameters for diverse installer types, including MSI, NSIS EXE, Inno Setup, and WiX.
  • Research and verify correct msiexec.exe flags, NSIS /S switches, and equivalent silent or unattended arguments for each software package.
  • Determine accurate reboot behavior for each installer type and document success and reboot-required exit codes.
  • Manually test patch installation in sandbox environments and verify detection logic after installation.
  • Research and validate Windows registry keys used to detect installed software versions, including the Uninstall hive, vendor-specific keys, and DisplayVersion.
  • Identify and document file-based detection paths using FileVersion and ProductVersion attributes on key executables.
  • Apply the correct detection architecture for 32-bit and 64-bit registry views, including WOW6432Node, across installer variants.
  • Validate detection logic against fresh installations and upgrades across supported Windows versions.
  • Understand how enterprise patch management platforms such as Qualys Patch Management, System Center Configuration Manager, Ivanti, and Adaptiva discover, deploy, and verify patches.
  • Understand how catalogs are consumed by patch engines, including detection-before-install logic, supersedence evaluation, and deployment policy enforcement.
Desired Qualifications
  • Experience building or maintaining a software patch catalog using Adaptiva, Chocolatey, ManageEngine, or similar tools.
  • Experience with Windows Installer internals, including product codes, upgrade codes, and component tables.
  • Knowledge of ARM64 Windows platform nuances and multi-architecture software distribution.
  • Good understanding of Windows Update infrastructure, including Windows Update Agent, Windows Server Update Services, and Component-Based Servicing/System File Checker.
  • Scripting experience in Python or PowerShell.

Qualys provides cloud-based cybersecurity and compliance solutions to secure IT infrastructure for enterprises, SMBs, and government. Its main products include vulnerability management, policy compliance, web application security, and IT asset management, delivered via the Qualys Cloud Platform that continuously monitors environments. The platform collects data from agents and sensors, runs automated checks, enforces policies, and generates real-time compliance reports. It differentiates with real-time analytics, automated workflows, and scalable cloud architecture, offering a unified security and compliance ecosystem to manage risk across on-premises, cloud, and hybrid environments.

Company Size

1,001-5,000

Company Stage

IPO

Headquarters

Redwood City, California

Founded

1999

Get referred to Qualys

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • Q2 2026 revenue rose 11% to $182.2 million, with guidance raised August 4.
  • Channel revenue grew 22%, and customers above $500,000 increased to 229.
  • FedRAMP High plus federal demand for faster validation opens a larger 2026 sales pipeline.

What critics are saying

  • CrowdStrike, Wiz, and Palo Alto Networks bundle adjacent controls, pressuring Qualys pricing.
  • Partner-led revenue reached 54% in Q2 2026, exposing Qualys to channel conflict.
  • If autonomous remediation disappoints, ETM becomes a nicer dashboard, and growth stalls by 2027.

What makes Qualys unique

  • Qualys ETM ties asset inventory, exploit validation, and remediation into one workflow.
  • August 12, 2026 Real-Time CSPM monitors cloud changes continuously, not on scan cycles.
  • InstaScan and Agent Val compress disclosure-to-detection and validation into minutes.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Remote Work Options

Growth & Insights and Company News

Headcount

6 month growth

0%

1 year growth

2%

2 year growth

1%
GlobeNewswire
Sep 2nd, 2026
Prevalent AI appoints Nitin Maini as CTO to accelerate the evolution of its ai-powered Data Fabric.

Prevalent AI appoints Nitin Maini as CTO to accelerate the evolution of its ai-powered Data Fabric. New CTO will lead technology strategy as Prevalent AI aims to meet demand of use cases focused on context and scalability. LONDON, Sept. 02, 2026 (GLOBE NEWSWIRE) - Prevalent AI, an accelerating leader in AI-powered enterprise context, has appointed Nitin Maini as Chief Technology Officer (CTO) as the company broadens the application of its AI-powered Data Fabric and Knowledge Graph across different enterprise data and AI use cases. "Every enterprise I speak to wants to move AI into production, but confidence drops quickly once agents are expected to act inside live systems. They need..." "Prevalent AI has spent nearly a decade building a connected data foundation for complex cybersecurity environments, and Nitin joins us at a point when that..." "His experience scaling global engineering organisations and leading AI transformation will be important as we extend the Knowledge Graph into new enterprise..." "Across my career, I have seen what happens when complex platforms are built on fragmented data. AI is making that weakness much harder to ignore," Maini, who has more than 20 years of experience across cybersecurity and enterprise software, will shape Prevalent AI's technology roadmap as the company builds on its established cybersecurity business and extends its approach to unifying and delivering critical context from fragmented customer data into broader enterprise use cases. He brings significant experience in scaling engineering organisations and building enterprise technology platforms. Most recently, as Senior Vice President of Engineering at Qualys, Maini led a 1,000-plus-person engineering organisation in India and helped drive an AI-first engineering transformation. Before Qualys, he spent almost six years as Chief Technology Officer at Sapience Analytics, following earlier senior engineering roles at Vuclip and BMC Software. The appointment follows Prevalent AI's $22 million growth investment from Integrity Growth Partners last month. The investment was the first primary capital raised in the company's nine-year history and is being used to support global expansion and further development of its offerings for customers across financial services, telecommunications, and critical national infrastructure. "Prevalent AI has spent nearly a decade building a connected data foundation for complex cybersecurity environments, and Nitin joins us at a point when that foundation has a much broader role to play," said Paul Stokes, CEO and co-founder of Prevalent AI. "His experience scaling global engineering organisations and leading AI transformation will be important as we extend the Knowledge Graph into new enterprise use cases, such as financial crime analysis and operational intelligence, while continuing to serve our security customers." "Across my career, I have seen what happens when complex platforms are built on fragmented data. AI is making that weakness much harder to ignore," said Maini. "What drew me to Prevalent was the maturity and extensibility of the Knowledge Graph. It gives enterprises a connected foundation that can support security today and broader AI use cases tomorrow as those systems move into production." Prevalent AI's platform connects and resolves data across enterprise systems to build a continuously updated view of assets, identities, controls and their relationships. As AI agents gain greater access to internal systems and workflows, Maini believes that trusted enterprise context is critical if enterprises are to use them reliably in production. "Every enterprise I speak to wants to move AI into production, but confidence drops quickly once agents are expected to act inside live systems. They need current context about the organisation they operate in and how its systems are connected. My ambition is for Prevalent AI to become the trusted data and context layer for enterprise AI, with the Knowledge Graph extending from cybersecurity into areas such as governance, risk and compliance," said Maini. About Prevalent AI Prevalent AI is an AI-powered data fabric company that provides the organizational context enterprises need to securely operate, reliably deploy AI, and make decisions with confidence. Founded by alumni of GCHQ, Prevalent AI continuously cleans, connects, and contextualizes fragmented enterprise data into a sovereign knowledge graph, giving teams and AI systems the trusted context they need to operate reliably at scale. Proven first in cybersecurity, where fragmented data creates immediate operational risk, the platform now supports financial crime analysis, operational intelligence, compliance, and enterprise AI initiatives from the same underlying foundation. Prevalent works with global banks, telcos, and critical national infrastructure operators. Headquartered in London, the company supports customers across some of the world's most complex and highly regulated industries. For more information, visit www.prevalent.ai/

Adaptiva
Sep 2nd, 2026
Adaptiva expands go-to-market investment to accelerate next phase of growth in Autonomous Endpoint Management.

Adaptiva expands go-to-market investment to accelerate next phase of growth in Autonomous Endpoint Management. Company builds on record business momentum with expanded leadership team, platform innovation and strategic partnerships KIRKLAND, Wash., September 2, 2026 - Adaptiva today announced an expanded investment in its go-to-market organization to accelerate growth amid rising demand for autonomous endpoint management (AEM) and patching. Building on a record first half of 2026, Adaptiva is expanding its leadership team, strengthening strategic partnerships, and continuing to invest in platform innovation to help more organizations automate endpoint management and respond to security threats faster. AI is making it quicker and easier for attackers to find vulnerabilities and develop exploits, shrinking the time organizations have to respond from weeks to hours. At the same time, IT and security teams are managing more endpoints, applications and vulnerabilities than they can address manually. This is increasing demand for autonomous endpoint management that can proactively remediate vulnerabilities across large enterprise environments. These market dynamics are driving adoption of Adaptiva's leading AEM solution, OneSite Patch. "Our strongest periods of growth have reinforced what we're hearing from customers every day: enterprises must move beyond traditional endpoint management toward more intelligent, autonomous operations," said Deepak Kumar, founder and CEO of Adaptiva. "We're investing in our people, our partners and our technology to make autonomous endpoint management easier to adopt. The goal is simple: help organizations find and fix vulnerabilities before attackers can exploit them, without adding more work for IT." Adaptiva Builds the Team to Support Its Growth To support its next phase of growth, Adaptiva is expanding its leadership team across marketing, sales, partnerships and customer engagement. Recent additions include: * Jeff Day, who joined as Chief Growth Officer and Chief Marketing Officer to lead Adaptiva's go-to-market strategy across sales, marketing, alliances and account management. * Kurt Grover, who joined as VP of Global Alliances to expand Adaptiva's relationships with global systems integrators, cloud providers, technology partners and channel partners and help bring Adaptiva's technology to more enterprise customers. Additionally, Adaptiva has open positions for a Vice President of Worldwide Sales, plus individual contributor roles in sales and marketing. All together, these roles are building the sales, marketing and partner organization Adaptiva needs to support its goal of triple-digit growth in 2027. Adaptiva Reaches Record Bookings With Strategic Partners Adaptiva's expanded investment follows a period of strong growth across its enterprise business and strategic partnerships. In Q2 2026, Adaptiva achieved its strongest quarter yet in Channel sales, recording its highest number of bookings to date, reflecting Adaptiva's growing position as a leading solution for technology partners and VARs. This builds on Adaptiva's integrations and partnerships with security software leaders CrowdStrike, Tenable, Qualys, and SentinelOne, and reseller partnerships with Guidepoint Security, Carahsoft, and Insight Partners. Adaptiva Makes Autonomous Endpoint Management More Practical Alongside its go-to-market expansion, Adaptiva continues to add capabilities that help IT and security teams find and fix vulnerabilities faster while reducing the manual work required to manage endpoints at scale. Recent advancements include: * Aida, an enterprise-safe Agentic AI solution to help customers set strategies, schedule patches, and build dashboards. AIDA also delivers AI intelligence enabling IT and security teams to ask questions about their endpoint environment in plain language. * AirGap for OneSite Patch, which allows organizations to patch isolated systems without connecting those environments to the internet or changing the security controls designed to protect them. * Adaptiva's AEM product suite now includes powerful Operating System Deployment (OSD) capabilities, including fully automated bare metal provisioning, built on top of Adaptiva's unique Peer-to-Peer PXE protocol stack, and its sophisticated no-code workflow orchestration engine. These capabilities can be used for remotely deploying Windows at scale and speed, without requiring any human intervention. * Expanded OneSite Patch capabilities, including improved UX, simplified patching strategies to help customers with less complex environments onboard quicker, and expanded Linux support. Gartner Recognition Highlights Adaptiva's Endpoint Management Leadership Adaptiva's continued innovation has earned recognition from industry analysts and organizations while helping shape the broader conversation around autonomous endpoint management. Most notably, Adaptiva was named a Leader in the 2026 Gartner(R) Magic Quadrant(TM) for Endpoint Management Tools, reinforcing the company's leadership in helping enterprises modernize endpoint management. Adaptiva's OneSite Patch was also recognized among the best autonomous endpoint management software by CyberPress, and earned the 2026 MSP Today Product of the Year Award for its innovation in enterprise patch management. Adaptiva will continue investing in its team, partnerships and technology to help more organizations move toward autonomous endpoint management, reducing complicated work for IT and security teams and making it faster to respond when vulnerabilities are discovered. For more information about Adaptiva and its autonomous endpoint management platform, visit www.adaptiva.com. About Adaptiva Adaptiva, the autonomous endpoint management company, delivers the fastest way to patch and manage endpoints at scale. IT and security operations leaders trust the company's OneSite Platform and suite of endpoint management products to gain a hands-free, fully autonomous approach to speeding the continuous delivery of software, patches, and vulnerability remediations. Hundreds of today's largest global organizations rely on Adaptiva to increase operational efficiency, reduce risk, and maximize patching velocity across millions of endpoints. Adaptiva was named a Leader in the 2026 Gartner(R) Magic Quadrant(TM) for Endpoint Management Tools, recognized for both Completeness of Vision and Ability to Execute. Adaptiva is headquartered in Kirkland, Washington with offices in the UK and India. Learn more at adaptiva.com, and follow the company at LinkedIn, Facebook and X. Ready to get started? Schedule a one-on-one demo today.

Equixly
Aug 17th, 2026
Equixly and Qualys partner to bring exploit validation into vulnerability management.

Equixly and Qualys partner to bring exploit validation into vulnerability management. Mattia Dalla Piazza, Zoran Gorgiev. Exploit-validated findings from Equixly now flow into Qualys VMDR, and Qualys asset inventory flows back to scope tests. Proven application and API risk lands where your security team does its work. The new integration between Equixly and Qualys connects continuous offensive security testing of APIs and web applications with Qualys Vulnerability Management, Detection, and Response (VMDR). Findings arrive with evidence of exploitability, so your organization can add that proof to the risk context already available in Qualys. Security teams typically spend substantial time and resources triaging vulnerabilities before they know which ones are genuinely exploitable. The integration between Equixly and Qualys helps address this problem by enabling asset owners and their teams to concentrate remediation efforts on vulnerabilities with a working attack path. * Equixly pulls relevant assets from Qualys to decide what to probe. * It tests those assets and produces findings backed by evidence of exploitability. * The security testing platform then sends the findings with that evidence into the Qualys workflow teams already use. The result is an efficient remediation process, with validated findings, exploit evidence, and existing workflows brought together in one place. How the Equixly-Qualys integration works. The connection runs on events: * A scan starts from the Equixly UI, on a schedule, or from a pipeline through Equixly's CI/CD hooks or API. * The Equixly engine runs the scan against the project in scope. * At the end of the scan, the engine publishes a completion event to Equixly's message broker. * A dedicated Qualys consumer waits for that event, collects the vulnerabilities, and loads them into Qualys. * Qualys takes in the data and shows the results with the rest of your vulnerability data. Nobody exports a report. Nobody re-keys a finding from one console into another. Every step you must carry out by hand is a step where a proven vulnerability can stall or drop out of sight. Your Qualys asset inventory sets the scope. Findings travel one way. Assets travel the other. Equixly reads the asset inventory your team maintains in Qualys and uses it to scope tests. Offensive testing then follows the estate your asset management records describe, rather than a target list someone maintains by hand. When a result lands back in Qualys, it arrives against an asset your inventory tracks, next to the risk context your team relies on for prioritization. Proof of exploitability next to the rest of your risk data. A severity score describes what a class of vulnerability can do in general. It says less about whether an attacker can reach that flaw in your environment. Equixly's Agentic AI Hacker chains requests the way a real adversary does, so a finding that reaches Qualys VMDR rests on a demonstrated attack rather than on inference. Three things change for a security team: * Triage starts from evidence. Remediation efforts follow vulnerabilities with a demonstrated path, not a ranking alone. * Business logic and authorization flaws reach the same queue as everything else. Static testing tools rarely surface this class of issue, because the flaw lives in how endpoints behave together rather than in the code itself. * Prioritization arguments get shorter. An engineer who receives a reproducible attack path has much firmer ground for a fix than one who receives a score. Evidence for compliance reporting. Regulated organizations report on application and API security testing under PCI DSS, DORA, NIS2, and ISO 27001. Exploit-validated results now sit in Qualys, tied to the assets they affect, between formal assessments as well as during them. Availability. The Qualys integration shipped with Equixly's July 2026 release and is live in the platform now. Teams that run Qualys vulnerability management over fast-changing application and API estates in banking, insurance, payments, SaaS, and energy will feel the difference first. Your Equixly contact can walk your team through setup. Read the July 2026 product update for the full release notes. Book a demo to see exploit-validated findings arrive in your Qualys VMDR console. Mattia Dalla Piazza CEO & FOUNDER Mattia's fascination with cybersecurity began in the early 2000s during his school days when he discovered vulnerabilities in school systems. With over 15 years in the Information Technology domain, he has built a notable career that includes leadership roles, such as heading a System Engineering Centre of Excellence for UniCredit Bank and being an International IT Manager at IBM. Mattia's expertise also extended to a NASDAQ-listed company, where he oversaw the management of its data centers as a System Engineer. Mattia is well-known for his ability in information network design, security, and infrastructure architecture. His robust problem-solving skills and forward-thinking vision underscore his commitment to enhancing service efficiency and fortifying his clients' security posture. Zoran Gorgiev Technical Content Specialist Zoran is a technical content specialist with SEO mastery and practical cybersecurity and web technologies knowledge. He has rich international experience in content and product marketing, helping both small companies and large corporations implement effective content strategies and attain their marketing objectives. He applies his philosophical background to his writing to create intellectually stimulating content. Zoran is an avid learner who believes in continuous learning and never-ending skill polishing. 08/17/26 Press Releases

Security Intel Hub
Aug 12th, 2026
Qualys introduces Real-Time cloud security posture management (CSPM) for faster risk detection and remediation.

Qualys introduces Real-Time cloud security posture management (CSPM) for faster risk detection and remediation. Wednesday, August 12, 2026 at 07:34 PM UTC · Source: Qualys Blog Updated: Wednesday, August 12, 2026 at 08:00 PM UTC Executive summary. Key Takeaways Cloud environments change continuously, while security still relies on periodic scans, leaving gaps where risks go undetected. That gap becomes exposure. Qualys Real-Time CSPM monitors cloud changes as they happen, while still supporting periodic scans for environments that require them. It evaluates each finding in context by correlating posture data with vulnerabilities, asset [&#8 Analysis. Key Takeaways Cloud environments change continuously, while security still relies on periodic scans, leaving gaps where risks go undetected. That gap becomes exposure. Qualys Real-Time CSPM monitors cloud changes as they happen, while still supporting periodic scans for environments that require them. It evaluates each finding in context by correlating posture data with vulnerabilities, asset […] Source Attribution Originally published by Qualys Blog on Aug 12, 2026.

Yahoo Finance
Aug 6th, 2026
Qualys raises 2026 revenue guidance to $738M on AI-driven remediation push

Qualys raised its full-year 2026 revenue guidance to $732 million–$738 million, citing strong demand for its Enterprise TruRisk Management (ETM) solution. The cybersecurity firm attributes growth to what it calls the "post-Mythos" threat landscape, where AI has compressed exploit timelines to hours, forcing a shift from detection to autonomous remediation. Channel-led revenue grew 22% and now accounts for 54% of total revenue. The company's Risk Operations Center framework is gaining traction as customers replace manual processes with automated detection and patching systems. Qualys repurchased $76.8 million worth of shares during the second quarter, buying back 797,000 shares. The company appointed Shailesh Athalye as Chief Product Solutions Officer and Nathan Smolenski as CISO following recent executive departures. Management expects the federal sector to drive growth, supported by new FedRAMP High status.