Summary
Overview
Work History
Education
Skills
Certification
Timeline
References
Projects
Additional Skills And Technologies
Extra Curricular
Generic

Levy Martin Borromeo

Auckland

Summary

Cyber Security Support Analyst with a strong background in vulnerability management, threat hunting, and incident response. Skilled in conducting vulnerability scans, performing risk prioritization, and implementing secure configurations. Proficient in developing custom detection rules in Microsoft Defender and creating Sentinel dashboards. Strong written and verbal communication skills, with the ability to translate technical information for clients.

Overview

18
18
years of professional experience
10
10

Certificates

Work History

Cyber Security Support Analyst (Vulnerability Management & SecOps Intern)

Log(N) Pacific
01.2025 - Current
  • Conducted vulnerability scans, provided detailed reports, and implemented PowerShell-based remediations, contributing to a 100% reduction in critical, high, and medium vulnerabilities for the server team.
  • Performed vulnerability assessments and risk prioritisation using Tenable across Windows and Linux environments.
  • Executed secure configurations and compliance audits (DISA STIG) with Tenable to meet industry standards.
  • Automated remediation processes and STIG implementations using PowerShell to address critical vulnerabilities.
  • Deep understanding of the 'soft' side of Vulnerability Management: rapport, trust, transparency, and business need.
  • Performed threat hunting with EDR, detecting IoCs from brute force attacks, data exfiltration, and ransomware.
  • Designed, tested, and published advanced threat hunting scenarios for incident response tabletop exercises.
  • Developed custom detection rules in Microsoft Defender for Endpoint to automate isolation and investigation of compromised systems.
  • Reduced brute force incidents by 100% by implementing inbound NSG/firewall rules to limit Internet exposure.
  • Created Microsoft Sentinel dashboards to monitor logon failures and malicious traffic using threat intelligence.
  • Experienced with KQL (similar to SQL/SPL) which I used to query logs within the SIEM and EDR platform.

Manager, Services and Communications

Every Nation Church
01.2023 - 08.2024
  • Directed cross-functional teams delivering secure digital projects on time and within budget, applying risk management, incident triage, and stakeholder coordination to strengthen resilience and governance.
  • Managed website and application launches, collaborating with developers, vendors, and stakeholders while ensuring compliance with NIST, PCI-DSS, and personal data protection frameworks.
  • Oversaw digital transformation initiatives including streaming services, volunteer platforms, and training systems, improving engagement, efficiency, and resource optimisation.
  • Cultivated strong communication, problem-solving, and analytical skills while leading staff and volunteers, driving collaboration, adaptability, and continuous improvement.

Services Manager

Every Nation Church
01.2017 - 12.2022
  • Led cross-functional teams, delivering secure projects on time and within budget.
  • Managed website and app launches, collaborating with developers and stakeholders.
  • Acted as product owner, coordinating requirements and feature enhancements.
  • Oversaw $650K+ budget, applying risk management and governance principles.
  • Built vendor relationships, optimising resources and strengthening operational resilience.

Operations Manager/Church Administrator

Every Nation Church
03.2014 - 12.2016
  • Managed office operations, contracts, and procurement, improving efficiency and compliance.

IT Project Manager

IBASE Technology Private Limited
02.2011 - 03.2014
  • Managed IT projects, coordinating teams and stakeholders to meet deadlines and budgets.

IT Project Manager

KFC Philippines
07.2007 - 08.2010
  • Managed IT projects and business systems, coordinating stakeholders, applying SDLC, and overseeing software rollouts for POS and backoffice systems.

Education

Postgraduate Diploma - Business Management

Asian Institute of Management
Philippines
06.2025

Bachelor of Science - Industrial Engineering

University of The Philippines
Quezon City, Philippines
06.2007

Skills

  • Cyber security
  • Incident response
  • Threat hunting
  • SIEM monitoring
  • Endpoint detection and response
  • Vulnerability management
  • CVE/CWE analysis
  • CVSS scoring
  • OWASP Top 10
  • Cyber Kill Chain
  • MITRE ATT&CK Framework
  • Firewall configuration
  • PowerShell scripting
  • BASH scripting
  • Security operations
  • Risk prioritisation
  • NIST frameworks
  • Problem solving
  • Analytical thinking
  • Communication
  • Collaboration
  • Adaptability
  • Curiosity
  • Investigative mindset
  • Resilience
  • Continuous learning
  • Teamwork

Certification

  • Cybersecurity: CompTIA CySA+, Security+, Network+, Security Analytics Professional (CSAP), ISC2 Certified in Cybersecurity (CC)
  • Project Management and IT: PMP, PMI-ACP, CSM, PRINCE2 Practitioner, ITIL 4 Foundation

Timeline

Cyber Security Support Analyst (Vulnerability Management & SecOps Intern)

Log(N) Pacific
01.2025 - Current

Manager, Services and Communications

Every Nation Church
01.2023 - 08.2024

Services Manager

Every Nation Church
01.2017 - 12.2022

Operations Manager/Church Administrator

Every Nation Church
03.2014 - 12.2016

IT Project Manager

IBASE Technology Private Limited
02.2011 - 03.2014

IT Project Manager

KFC Philippines
07.2007 - 08.2010

Postgraduate Diploma - Business Management

Asian Institute of Management

Bachelor of Science - Industrial Engineering

University of The Philippines

References

References available upon request.

Projects

Vulnerability Management, DISA STIG Implementation and Threat Hunting Projects

Source: github.com/levyborromeo

Platforms and Technology Used: Tenable, SIEM (Microsoft Sentinel), EDR (Defender for Endpoint), Azure VMs, KQL

Additional Skills And Technologies

  • Cyber security
  • Incident response

Threat hunting

  • SIEM monitoring
  • Endpoint detection and response
  • Vulnerability management
  • CVE/CWE analysis
  • CVSS scoring
  • OWASP Top 10
  • Cyber Kill Chain
  • MITRE ATT&CK Framework
  • Firewall configuration
  • PowerShell scripting
  • BASH scripting
  • Security operations
  • Risk prioritisation
  • NIST frameworks
  • Problem solving
  • Analytical thinking
  • Communication
  • Collaboration
  • Adaptability
  • Curiosity
  • Investigative mindset
  • Resilience
  • Continuous learning
  • Teamwork

Extra Curricular

  • Datacom Cybersecurity Job Simulation on Forage - Completed a simulation focussed on how Datacom's cybersecurity team helps protect its clients. Investigated a cyberattack and produced a comprehensive report documenting findings and outlining key recommendations to improve a client's cybersecurity posture. Conducted a comprehensive risk assessment.
  • AIG Shields Up: Cybersecurity virtual experience program on Forage - Completed a cybersecurity threat analysis simulation for the Cyber Defense Unit, staying updated on CISA publications. Researched and understood reported vulnerabilities, showcasing analytical skills in cybersecurity. Drafted a clear and concise email to guide teams on vulnerability remediation. Utilised Python skills to write a script for ethical hacking, avoiding ransom payments by bruteforcing decryption keys.
  • Mastercard Cybersecurity virtual experience program on Forage - Completed a job simulation where I served as an analyst on Mastercard's Security Awareness Team. Helped identify and report security threats such as phishing. Analysed and identified which areas of the business needed more robust security training and implemented training courses and procedures for those teams.
Levy Martin Borromeo