Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Joseph Salim

West Ryde,New South Wales

Summary

Trusted cybersecurity specialist with seven years of protecting companies against internal and external threats. Talented at preemptively detecting unidentified threat vectors and applying preventive measures to mitigate security flaws. Employs technological solutions and personnel training to harden people and machines against malicious actors.

Overview

18
18
years of professional experience
1
1
Certification

Work History

Service Manager

Commonwealth Bank
09.2006 - Current

For the last 5 years, I mainly I worked on remediating Application-related vulnerabilities in addition to the normal tasks as a Service Manager.

My vulnerability-related tasks are based on the information from Qualys application:

  • Downloaded the patch from official websites as suggested by Qualys (i.e. provided Java 6,7 and 8 patches to remediate Java vulnerabilities)
  • If there was an issue after patching, I investigated the root cause and provided the solution or workaround. For example, High CPU Utilisation issue after Java patching
  • Further analysed and found the solution for OpenSSL and MS Publisher vulnerabilities
  • Provided technical help with the remediation of Log4j, MS Sync Framework, and MS Outlook vulnerabilities
  • Created remdiation plan from End of Support software
  • Investigated the un-scanned servers
  • Analysed PenTest finding (SMB Signing) and Weak SSL/TLS vulnerability and provided the solution


I have been using Qualys Cloud Platform (consists of 21 modules) for vulnerability management-related tasks.


The following are the modules that I have experience with, some of them still learning in progress:

  • VMDR : Detect, prioritize and remediate vulnerabilities, and monitor using dashboards
  • CSAM : Identify security gaps and manage asset health across hybrid IT environment
  • PM : Deploy patches to systems
  • CA : Stay updated with network security by deploying agents on the hosts
  • PS : Gain continuous, real-time visibility of all assets connected to the network
  • CONN : Discover Resources that are present in the cloud account


In addition, I'm also using using and learning comparable Microsoft applications:

  • Microsoft 365 Defender
  • Microsoft Sentinel
  • Microsoft Azure - Microsoft Entra ID
  • Power BI


Education

Computer Hardware & Software

University of Gadjah Mada
Yogyakarta, INDONESIA
08.1989

Skills

Qualys Cloud Platform

  • VMDR (Vulnerability Management, Detection and Remediation)
  • CSAM (CyberSecurity Asset Management)
  • PM (Patch Management)
  • PS (Network Passive Sensor)
  • CA (Cloud Agent)
  • CONN (Connectors)

Microsoft Applications

  • Microsoft 365 Defender
  • Microsoft Sentinel
  • Microsoft Azure - Microsoft Entra ID
  • Power BI

Certification

  • Certified Information Systems Security Professional (CISSP) - In progress
  • CompTIA Security+ - In progress

Timeline

Service Manager

Commonwealth Bank
09.2006 - Current

Computer Hardware & Software

University of Gadjah Mada
Joseph Salim