01 SecureLink cybersecurity · CTEM 2025 to now
current roleEvery asset, every vulnerability, and one place to act on it.
SecureLink’s Continuous Threat Exposure Management (CTEM) platform discovers every asset on a network, scans it for vulnerabilities, pulls in signals from the security tools a company already runs and gives the team one place to see, prioritise and fix what matters. It runs on-prem or in the cloud. I build across the platform with FastAPI, Django and React: scanners, plugins, the rule builder, case management, dashboards and the AI on top.
An asset scanner that profiles anything on the network over SSH for Linux and macOS, or WinRM for Windows, collecting hostname, OS, country and much more. A vulnerability scanner runs alongside it. In the cloud, SaaS agents sit inside the client’s network and securely send back only the data the platform needs.
Nessus and Tenable for vulnerabilities. FortiGate, Palo Alto Networks, CrowdStrike and Trend Micro for firewall and endpoint data. Splunk and LogRhythm for SIEM, and Ivanti for patching. Plus dedicated LLM, AI and MCP scanners for the newest attack surface.
Every asset’s data in one place: how many vulnerabilities it has, how critical they are and what changed. Teams flag risky assets, put them on a watchlist and follow everything through dashboards, charts and discovery reports. A FAIR-based Monte Carlo model even puts a dollar figure on the risk.
Open a case on any vulnerability, push the fix through the Ivanti remediation plugin, then rescan the asset to confirm it is really fixed before the case closes.
Analysts build rules without writing code, from simple to complex. If an asset crosses 10 critical vulnerabilities, put it on the watchlist and send an email. If a superuser signs in from a flagged country, remove their superuser privilege automatically.
A chatbot that answers any question about the environment: shallow mode for quick answers, deep mode for detailed analysis and suggested fixes. I also built the platform’s agentic AI automation.
- 10+plugins across scanners, firewalls, EDR, SIEM and patching
- 2ways to deploy: on-prem, or cloud with in-network SaaS agents
- 2scan protocols: SSH for Linux and macOS, WinRM for Windows
- 0lines of code to build a rule
- FastAPI
- Django
- React
- SSH · WinRM
- AI chatbot
- Agentic AI
- FAIR · Monte Carlo