Dave Hall

IT Security Engineer @Anglo American

London, GB
MOBILE NUMBERS
+91 *********19

Signup · Get unlimited contacts

WORK HISTORY

Sep 2022 — Present

IT Security Engineer @Anglo American

View department →

London, GB

ABOUT DAVE HALL

I’m a Vulnerability Management Specialist and Cyber Security Engineer with over 20 years of IT experience — including 6+ years leading enterprise-wide Qualys VMDR programs across hybrid infrastructure environments. I specialise in transforming raw vulnerability data into structured, risk-informed actions that reduce exposure, support SLAs, and drive business-aligned remediation.Key Focus Areas:• Vulnerability Management Strategy — from discovery to remediation, including authenticated/unauthenticated scanning, EOL risk, and false positive handling• Threat-Driven Prioritization — applying CISA KEV, threat intel feeds, exploitability, and business impact scoring to drive smart remediation• Qualys VMDR SME — dashboarding, automation, agent/IP scanning, scan coverage, and SLA tracking• Microsoft Security Stack — Sentinel admin, Entra Conditional Access policy lead, Windows/AD/Server hardening• Process Creation & Governance — built full documentation and workflows for vulnerability lifecycle: onboarding, triage, tracking, and governance• Process Owner — Developed greenfield VM documentation, onboarded services, built patch board reporting, and defined Must-Fix criteriaImpact Highlights:• Reduced non-patchable vulnerabilities by 78% in 4 months — cutting exposure and supporting business risk targets• Raised policy compliance from 74% to 97% across Windows and Linux platforms through strategic alignment and controls• Developed and executed \'Path to Green\' strategy — targeting new vs. backlog SLAs across Wintel, Unix, Cloud, Citrix, and Network• Designed full Qualys scan plan covering assets weekly• Improved Endpoint Security Scorecard KPIs — enhancing visibility and executive trustI thrive at the intersection of strategy, tooling, and stakeholder engagement — running weekly remediation meetings, driving SLAs, and guiding service owners from detection to resolution.Outside of cybersecurity, I’m a multi-instrumentalist, former sound engineer, and an aspiring 52-books-a-year reader — bringing curiosity and creativity into everything I do.

This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.