Vinzon Villaroman
******.**********@*****.*** PH: +(63-977-***-**** https://www.linkedin.com/in/vinzonv/
Cloud Security Engineer
Over 18 years of Cyber Security experience, with focus in Security Operations and Security Engineering. Trusted advisor to help secure critical cloud infrastructure and applications through threat modeling, vulnerability assessment, penetration testing, risk management, malware development and analysis, digital forensics and incident response (DFIR), SOC operations, security architecting and engineering.
SKILLS
●Knowledge of cybersecurity frameworks (ISO 27001, NIST, GDPR)
●Proficient in deploying and managing security technologies (firewalls, IDS/IPS, encryption)
●Skilled in conducting risk assessments, vulnerability analysis, and incident response
●Strong analytical and strategic thinking capabilities
●Excellent communication and leadership skills
●Advanced certifications in cybersecurity
TOOLS, TECHNOLOGIES & TECHNIQUES
●5+ years for Cloud Infrastructure: AWS, Azure
●SIEM: Azure Sentinel, Splunk, Logrhythm
●5+ years of Vulnerability Management: Tenable Nessus, TenableIO, BurpSuite Professional
●10+ years Security Tools: Splunk, Metasploit, VirusTotal, Carbon Black, Palo Alto, Checkpoint
●2+ years for Security Frameworks: OWASP Testing Guide, NIST, MITRE ATT&CK
●Container & Virtualization: Docker, VirtualBox, VMWare, vSphere, Hyper-V
●Operating Systems: Linux, Windows, MacOS
●Databases: MSSQL, MySQL, SQLite, OracleDB
●10+ years Cloud/Endpoint Security: MS Defender for Endpoint and Servers, Trend Micro ApexOne, Trend Micro Cloud One, Sophos Central, Fortinet EDR, SentinelOne
●Mail Security: Trend Micro Email Security, Trend Micro Interscan Messaging Security Virtual Appliance, Trend Micro Scanmail for Exchange, Sophos Email Security, Mimecast
●Mail Servers: Microsoft Exchange Server 2013/2016/2019, Microsoft 365 Exchange
PROFESSIONAL EXPERIENCE
Senior CyberSecurity Consultant February 2024 – Present
Global Managed Security Services Provider (MSSP)
Provide cybersecurity consulting, troubleshooting, and technical advisory services across security operations, SIEM, endpoint security, vulnerability management, and infrastructure security.
Support the design, implementation, troubleshooting, and optimization of security controls across Microsoft Azure and hybrid environments.
Perform security incident investigation, log analysis, threat assessment, root-cause analysis, and remediation planning using Microsoft Sentinel, Microsoft Defender, LogRhythm, and related security platforms.
Provide guidance on identity and access management, including Microsoft Entra ID, privileged access, role-based access controls, and secure access practices.
Conduct vulnerability and security assessments, identify security gaps, and provide risk-based recommendations aligned with NIST, ISO 27001, and industry security best practices.
Support and troubleshoot security technologies such as Microsoft Defender/Sentinel, LogRhythm, identity and access management, Windows/Linux infrastructure, and security monitoring.
Develop security documentation, technical recommendations, implementation guidance, and remediation plans for client environments.
Deliver project-based cybersecurity support while maintaining strict confidentiality of client systems, data, and security information.
Senior Security Consultant September 2018-2024
Seconcyber LTD
●Led comprehensive security assessments and audits across various environments, ensuring alignment with industry standards such as ISO 27001, NIST, and GDPR.
●Designed and implemented robust cybersecurity solutions, including firewalls, intrusion detection systems, and encryption protocols, to safeguard sensitive information against emerging threats.
●Conducted detailed risk analyses and vulnerability assessments to identify potential security gaps and developed strategic mitigation plans to enhance the security posture.
●Spearheaded incident response activities, including investigation, documentation, and resolution of security breaches, minimizing impact and preventing future occurrences.
●Collaborated with cross-functional teams to integrate security practices into the development lifecycle of software projects, promoting a secure-by-design approach.
●Delivered customized security training sessions and workshops for staff at all levels, increasing awareness and understanding of cybersecurity best practices and policies.
●Advised senior management on strategic security investments and policies, contributing to the formulation of a cohesive and forward-thinking security strategy.
●Managed relationships with external security vendors and partners, ensuring the delivery of high-quality security services and technologies.
Information Security Engineer November 2017-September 2018
Discovery Inc.
●Member of the Global Security and Compliance team primarily based in the US and UK.
●Designed, implemented, and maintained comprehensive security architectures to protect against various cyber threats, ensuring the integrity, confidentiality, and availability of data.
●Conducted regular system and network vulnerability assessments using tools like Nessus, or custom scripts, identifying potential security issues and implementing remediation strategies.
●Collaborated with IT and development teams to ensure security best practices were integrated into technology environments and development processes, including secure coding standards.
●Managed firewall configurations, VPN setups, and intrusion detection systems (IDS) to monitor and protect the network from unauthorized access.
●Responded to and investigated security incidents and breaches, utilizing Carbon Black and SIEM tools such as Splunk log aggregation, analysis, and forensic investigation.
●Developed and enforced information security policies and procedures, aligning with industry standards such as ISO 27001, NIST, and GDPR.
●Led security awareness training programs, educating employees on cybersecurity threats such as phishing and social engineering, and promoting a culture of security mindfulness.
●Coordinated with external auditors and consultants during security audits and compliance assessments, addressing findings and implementing recommended improvements.
Network Infrastructure and Security Specialist July 2015 – November 2017
SecureIT UK
●Designed and implemented secure network infrastructure solutions to support organizational IT needs, including LAN, WAN, and cloud environments.
●Administered and optimized network performance through continuous monitoring, troubleshooting, and advanced configuration adjustments.
●Managed comprehensive security measures, including firewalls, anti-virus software, and intrusion detection systems, to protect against unauthorized access and cyber threats.
●Conducted regular security audits and vulnerability assessments to identify and mitigate potential risks to the network infrastructure.
●Maintained disaster recovery and business continuity plans, ensuring minimal downtime and data loss in the event of network failures.
●Collaborated with IT teams to integrate security considerations into application development and deployment processes.
●Managed the deployment of security patches and updates to network devices and systems, keeping all technology up to date with industry security standards.
●Provided technical leadership and guidance on network infrastructure and security best practices to IT staff and management.
●Responded to and resolved complex network and security incidents, documenting lessons learned and implementing improvements to prevent future occurrences.
●Conducted security training course regarding the security solutions used by the company
Senior Systems Security Engineer April 2009 to February 2015
Trend Micro Inc.
●Led the design and implementation of comprehensive cybersecurity measures, including threat detection systems, to protect against advanced persistent threats (APTs), ransomware, and phishing attacks.
●Managed the deployment and maintenance of Trend Micro security products, ensuring optimal performance and up-to-date protection for internal and client networks.
●Spearheaded the development and execution of security policies, procedures, and best practices, aligning with global cybersecurity standards and regulations.
●Conducted sophisticated security assessments and penetration testing to identify vulnerabilities within the network and application layers, recommending and implementing corrective actions.
●Collaborated with product development teams to integrate security features into new software releases, enhancing the overall security posture of Trend Micro offerings.
●Provided expert incident response and forensic analysis in the event of security breaches, utilizing advanced tools and techniques to mitigate damage and prevent future incidents.
●Delivered technical training and mentoring to junior security engineers and other IT staff, fostering a culture of security awareness and expertise within the organization.
●Actively participated in cybersecurity research and development projects, contributing to the innovation of Trend Micro security technologies.
Security Systems Engineer June 2007 to April 2009
Trend Micro Inc.
●Implemented and maintained security measures and defenses across Trend Micro's client corporate network and its network infrastructure to protect against network intrusion and malware attacks.
●Managed the configuration and operation of its clients deployed Trend Micro solutions, including firewalls, antivirus software, intrusion detection and prevention systems, to ensure robust security posture.
●Conducted regular system and network security assessments using both automated tools and manual testing techniques to identify and remediate vulnerabilities.
●Responded to and investigated security incidents, utilizing forensic tools and techniques to determine the cause of breaches and developing strategies to prevent future occurrences.
●Subject Matter Expert in threat handling, malware removal, core technology such as scan engine. Performed firewall log analysis, IDS/IPS log analysis and vulnerability assessment.
●Created customer hotfixes and scripts to remove unknown rootkits, trojans and other malwares.
●Submit 0-day malware samples and exploits for the improvement of detection policies deployed to Trend Micro customers.
CERTIFICATIONS
●Microsoft Certified: Azure Security Engineer Associate - Certification ID: 442B55-VC36A5
●Azure Security, Compliance, and Identity Fundamentals Certification ID: 84F38A-C82BCC
●Microsoft Certified: Azure Fundamentals Certification ID: 899515-B8Z346
●Microsoft Certified: Azure AI Fundamentals ID: D19CB95F8FDF4DBC
●MCTS: MS SQL 2008 (Legacy already)
●Security Blue Team - Vulnerability Management - Certification ID: 185901077
●Security Blue Team - Threat Hunting- Certification ID: 338134930
●Vmware VCP5 Data Center Virtualization ID: VMW-00846812D-00131700
●Vmware Associate Cloud ID: VMW-00846812D-00131700
●ICSI CNSS Certified Network Security Specialist ID: 18817826
●ISC2 Certified in Cybersecurity (CC) ID: 2131451
EDUCATION
Bachelor of Science in Computer Engineering 1998 – 2002
AMA Computer College East Rizal
Manila, Philippines