Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Joselyn Villon

Cybersecurity Engineer Level 2
Guayaquil

Summary

At TELCONET, I focus on improving cybersecurity by optimizing SIEM and leading threat hunting tasks. I have experience in network security, incident response, and vulnerability assessment. My work helps strengthen security by combining technical skills with a strategic approach.

Overview

6
6
years of professional experience
13
13
Certifications

Work History

Cybersecurity Engineer Level 2

TELCONET
06.2023 - Current
  • SIEM management and optimization, including use case development, RegEx-based data parsing, custom application deployment, and interactive dashboard implementation to enhance proactive monitoring and cyber operations processes.
  • Vulnerability management based on VPR, leading remediation efforts for security flaws in internal and client environments, with a focus on risk prioritization and mitigation strategies.
  • Configuration and management of continuous vulnerability scans, ensuring proactive identification and mitigation of security risks through policy-driven automation.
  • Threat Hunting operations, actively investigating emerging threats, detecting Indicators of Compromise (IoCs), and enhancing security defenses through intelligence-driven analysis.
  • Incident investigation and advanced response, including analysis, containment, and mitigation of complex security breaches.
  • Participation in ISO 27001 certification audits, overseeing security compliance, documentation management, and internal audit processes.
  • Collaboration with the infrastructure and automation teams to enhance security monitoring and response, focusing on Splunk app deployment, IPS and DDoS event analysis, and automated detection workflows. Responsible for creating use case-based detections with automatic blocking mechanisms and reviewing DDoS protections to ensure optimal security posture

Cybersecurity Engineer

TELCONET
10.2022 - 06.2023
  • Cybersecurity event monitoring for internal infrastructure, corporate clients, and critical national incidents.
  • Detection and response to Indicators of Compromise (IoCs) using SIEM platforms and security signatures.
  • Threat event correlation and analysis to protect data across servers, network devices, and endpoints.
  • Vulnerability management based on VPR, providing remediation support for security flaws in internal and client environments.
  • Utilization of vulnerability scanning tools to identify and prioritize security risks.
  • Malware analysis execution using sandboxing tools to assess impact and propagation.
  • Administration and operation of cybersecurity platforms, including IPS (Intrusion Prevention System), DDoS Protection, EPP (Endpoint Protection Platform), among others.
  • Implementation of defensive security strategies to mitigate targeted threats against network and endpoint infrastructure.
  • Investigation and incident response, including cybersecurity data analysis to correlate events, mitigate security breaches, and protect information across computers, servers, and network devices.
  • Cybersecurity data analysis to detect malicious patterns and proactively prevent threats.

Network Operations Center Engineer

TELCONET
03.2021 - 10.2022
  • Monitor and analyze root causes of network incidents, managing alarms related to international providers and backbone equipment across IP networks, DWDM, and SDH.
  • Analyze network data through various monitoring dashboards to ensure optimal performance and issue detection.
  • Proactively monitor VIP clients, virtual machines, and WiFi equipment to maintain service quality.
  • Identify and assess potential network attacks detected through monitoring tools, ensuring timely response and mitigation.
  • Generate and request technical reports on incidents, coordinating with relevant teams for resolution.

Radio Frequency Engineer

Huawei Technologies Co
04.2019 - 04.2020
  • Monitor key performance indicators (KPIs) and analyze issues in Claro's mobile networks to ensure optimal service quality.
  • Make data-driven decisions to enhance network performance and resolve operational challenges.
  • Manipulate, analyze, and visualize various types of network data for performance assessment and troubleshooting.
  • Perform root cause analysis to identify and mitigate network performance degradation.
  • Optimize and automate processes to improve efficiency in network operations.
  • Develop applications to generate strategic insights for network optimization and decision-making.
  • Prepare technical and executive reports for stakeholders and management.
    Ensure effective communication with clients, providing updates and technical support.
  • Proficient in tools such as Genex Probe 3.19, MAP INFO 15.0, Google Earth Pro, Genex Probe 5.2, Genex Assistant 5.2, U2000, U2020, and Unet Predictions.

Network Assistant

ARMADA DEL ECUADOR BASE NAVAL SUR
02.2019 - 04.2019
  • Restructured the DIRVIV data network, optimizing connectivity and performance.
  • Configured satellite internet for the Manabí corvette, ensuring reliable communication.
  • Set up radio links to corvettes, improving maritime network connectivity.
  • Performed initial configuration of networking equipment, ensuring proper functionality.
  • Implemented VTP protocols on switches and created VLANs using VTP Server for efficient network segmentation.
  • Configured NAT to establish communication between private and public networks and set up DHCP on the router for IP address distribution.

Education

Bachelor of Engineering in Telecomunications -

Escuela Superior Politecnica Del Litoral
Guayaquil, Ecuador
05.2001 -

Skills

SIEM Management

Incident response

Vulnerability assessment

Threat Hunting

Log Analysis Intrusion Detection

SOC Operations

Certification

Certified Ethical Hacker (CEH)- EC-Council.

Timeline

Certified Ethical Hacker (CEH)- EC-Council.

12-2024

Cybersecurity Awareness - CAPC

08-2024

Junior Cybersecurity Analyst Career Path

08-2024

Fortinet Certified Professional Security Operations

07-2024

Fortinet FortiSIEM 6.3 Administrator

07-2024

Splunk Core Certified Power User

05-2024

Foundations of Operationalizing MITRE ATT&CK v13

01-2024

Fortinet FortiGate 7.2 Administrator

08-2023

Cybersecurity Engineer Level 2

TELCONET
06.2023 - Current

Certified ISO 27001 Internal Auditor

05-2023

Splunk Core Certified User

04-2023

Cybersecurity Engineer

TELCONET
10.2022 - 06.2023

Fortinet Certified Fundamentals Cybersecurity

02-2022

Axur Basic Knowledges

02-2022

Network Operations Center Engineer

TELCONET
03.2021 - 10.2022

Microsoft Power BI (Training Course)

01-2021

Radio Frequency Engineer

Huawei Technologies Co
04.2019 - 04.2020

Network Assistant

ARMADA DEL ECUADOR BASE NAVAL SUR
02.2019 - 04.2019

Bachelor of Engineering in Telecomunications -

Escuela Superior Politecnica Del Litoral
05.2001 -
Joselyn VillonCybersecurity Engineer Level 2