Hello — I'm Thomas Lind

Threat & Vulnerability Specialist · University of Glasgow

I find and fix the weak points in a university's digital estate — scanning, triaging and remediating vulnerabilities across thousands of devices, then automating the parts that shouldn't need a person.

My background runs from network operations to systems analysis to security, so I tend to see a vulnerability and the infrastructure it lives in as the same problem. Most of what I build is Python, PowerShell and Bash pointed at work nobody should be doing by hand.

Capabilities

What I work with


Threat & Vulnerability


  • Tenable — daily driver
  • Nmap — daily driver
  • MS Defender / Sentinel — daily driver
  • Kali Linux — daily driver
  • Nuclei — daily driver
  • ELK / Elastic Kibana — daily driver
  • Shodan
  • Rapid7
  • Penetration testing
  • Vulnerability assessment

Endpoint & Identity


  • Intune
  • Active Directory
  • SCCM
  • JAMF
  • Windows 11 migration
  • Azure Roles — daily driver
  • Azure Groups — daily driver
  • Snow

Networking


  • ELK / Elastic Kibana — daily driver
  • Cisco
  • Cisco FTD
  • Palo Alto
  • SolarWinds
  • Meraki
  • DNS
  • DHCP
  • VPN

Automation & Code


  • Python — daily driver
  • PowerShell — daily driver
  • Bash — daily driver
  • JavaScript
  • SQL
  • PostgreSQL — daily driver
  • Java
  • Power Automate — daily driver
  • n8n
  • Cron — daily driver
  • Power BI — daily driver

Platforms


  • Linux (Ubuntu, RedHat, Oracle, Kali) — daily driver
  • Windows Server — daily driver
  • macOS
  • Docker — daily driver
  • Nginx
  • Azure
  • Microsoft 365 — daily driver

Practice


  • ITIL 4 — daily driver
  • Major incident management — daily driver
  • Process improvement — daily driver
  • Knowledge base authoring — daily driver
  • Customer service
  • Management

daily driver · everything else: working knowledge

Experience

Where I've worked


University of Glasgow

2025 — Present

Current role. Threat & Vulnerability Specialist Current

Identify and remediate vulnerabilities across the university's digital estate, and automate the security processes around them.

  • Run vulnerability management across the estate with Rapid7, Tenable and Nmap
  • Automate security workflows in Python, PowerShell and Bash to cut manual effort
  • Maintain secure servers and services underpinning the team's tooling
  • Promoted into the role within months of joining as a Systems Analyst
  • Rapid7
  • Tenable
  • Nmap
  • Defender
  • Python
  • PowerShell
  • Bash

Promoted

2025

Systems Analyst

Led process improvement for the team while supporting estate-wide endpoint and identity projects.

  • Became the top ticket closer within weeks of joining
  • Authored the team knowledge base and led on process improvement
  • Supported the university-wide migration to Windows 11
  • Recognised in numerous research papers for contributions in IT
  • Intune
  • Active Directory
  • SCCM
  • JAMF
  • Defender
  • Windows
  • Linux
  • macOS
Full history →

Stack

Tools and platforms


  • Cisco
  • Palo Alto
  • Defender
  • Tenable
  • Rapid7
  • Linux
  • Docker
  • Azure
  • Microsoft 365
  • Python
  • Power Automate
  • Power BI