01
10
01
10
01
10
01
10
01
10
01
10
01
10
01
10
01
10
01
10

DULITHA WICKRAMASINGHE

CYBER SECURITY ANALYST

Cybersecurity analyst from Sri Lanka specializing in SOC operations, threat hunting, and malware analysis. Protecting digital assets through innovative security strategies.

Dulitha Wickramasinghe — Cybersecurity Analyst
IDENTITY
CONFIRMED
AUTH-LEVEL
5
ENCR
OPTIMAL
STATUS
ACTIVE
0001
1001
0010
0011
1100
0101
1011
0001
FAQ: "What tools does a SOC analyst use to detect threats?" — I leverage advanced SIEM platforms, EDR solutions like Cortex XDR, and proactive threat-hunting techniques to uncover hidden anomalies.

Security Focus Areas

Core areas of expertise in cybersecurity, focusing on proactive defense and comprehensive security strategies.

SOC Operations

24/7 security monitoring, incident response, and threat detection

Threat Hunting

Proactive threat detection and analysis using advanced techniques

Penetration Testing

Vulnerability assessment and security testing of systems

Security Training

Educating teams on cybersecurity best practices and awareness

Professional Experience

My cybersecurity journey across different organizations, showcasing expertise in SOC operations, threat hunting, and security analysis.

EFL Global Logo

Senior Executive Cyber Security Analyst

EFL Global

AUG 06, 2025 – PRESENT
Sri Lanka
Current
Technologies Used:
CrowdStrike XDRMicrosoft DefenderAzure Security CenterMicrosoft 365SOC Operations
Role Overview:

As a Cyber Security Analyst within the Global IT Team, I collaborated closely with other Security Analysts to strengthen the organization's cybersecurity posture by leveraging advanced security technologies and proactive defense strategies. Key responsibilities included:

Key Responsibilities:
  • ▸Monitoring and triaging security alerts from CrowdStrike XDR, Microsoft Defender, Firewalls, and Azure Security Center, while assisting in incident response.
  • ▸Analyzing and mitigating email-based threats such as phishing, spam, and malware across enterprise security gateways.
  • ▸Providing Tier 1 and Tier 2 support for Microsoft 365 services, including managing access, email security, and endpoint protection.
  • ▸Monitoring security posture using Microsoft Azure dashboards and collaborating on vulnerability mitigation initiatives.
  • ▸Supporting the deployment of cybersecurity tools and infrastructure projects to enhance defense mechanisms.
  • ▸Actively contributing to the SOC helpdesk, ensuring timely response, escalation, and resolution of security incidents.
  • ▸Ensuring alignment with security policies, compliance standards, and industry best practices.
MIDAS STRATEGIC IT SRI LANKA Logo

EXECUTIVE SECURITY OPERATIONS CENTER ANALYST

MIDAS STRATEGIC IT SRI LANKA

JAN 17, 2025 – JUL 17, 2025
Sri Lanka
Completed
Technologies Used:
Cortex XDRPrisma AccessMicrosoft Defender XDRVAPTThreat HuntingBIOCs
Role Overview:

As a Security Operations Center (SOC) Analyst within the Global IT Team, I contributed to strengthening the organization's cybersecurity posture by leveraging advanced security technologies and proactive defense strategies. Key responsibilities included:

Key Responsibilities:
  • ▸Monitored, investigated, and escalated security incidents using Cortex XDR, Prisma Access (Palo Alto Networks), and Microsoft Defender XDR for email security.
  • ▸Conducted threat hunting exercises to identify and mitigate advanced threats targeting critical digital assets.
  • ▸Assisted in Vulnerability Assessments and Penetration Testing (VAPT) to uncover and remediate security weaknesses.
  • ▸Analyzed, monitored, and responded to email-based threats, including phishing attacks utilizing Microsoft Defender XDR.
  • ▸Developed custom Behavioral Indicators of Compromise (BIOCs) and correlation rules to enhance detection capabilities across platforms.
  • ▸Delivered security awareness training sessions and ran phishing simulation campaigns to improve employee security awareness and reduce risk.
  • ▸Maintained up-to-date threat intelligence feeds to proactively defend against emerging cyber threats.
IVEDHA INC TORONTO ONTARIO CANADA Logo

ASSOCIATE CYBER SECURITY ANALYST

IVEDHA INC TORONTO ONTARIO CANADA

SEP 02, 2024 – DEC 31, 2024
Toronto, Ontario, Canada
Completed
Technologies Used:
Microsoft Defender XDREntra IDMicrosoft IntuneKnowBe4Penetration TestingVAPT
Role Overview:

As an Associate Cyber Security Analyst, I contributed to enhancing organizational security by working on the following:

Key Responsibilities:
  • ▸Conducted penetration testing and Vulnerability Assessments.
  • ▸Managed endpoint security with Microsoft Defender XDR.
  • ▸Administered Entra ID and Microsoft Intune for security and compliance.
  • ▸Conducted and implemented security awareness training and phishing campaigns using KnowBe4 Platform.
IVEDHA INC, TORONTO ONTARIO CANADA Logo

INTERN CYBER SECURITY

IVEDHA INC, TORONTO ONTARIO CANADA

FEB 19, 2024 – SEP 02, 2024
Toronto, Ontario, Canada
Completed
Technologies Used:
Web Application SecurityVulnerability AssessmentSecurity TrainingPolicy Development
Role Overview:

As a Cyber Security Intern, I gained hands-on experience in various aspects of cybersecurity, including:

Key Responsibilities:
  • ▸Assisted in web application vulnerability assessments.
  • ▸Conducted security training and phishing simulations.
  • ▸Supported security solution development.
  • ▸Supported in Policy development.

Education

My academic journey and educational qualifications, showcasing my foundation in Information Technology and Cyber Security.

SRI LANKA INSTITUTE OF INFORMATION TECHNOLOGY (SLIIT) Logo

BSc (Hons) in Information Technology Specializing in Cyber Security

SRI LANKA INSTITUTE OF INFORMATION TECHNOLOGY (SLIIT)

OCT 2021 – PRESENT
Sri Lanka
Current
Program Overview:

Pursuing a comprehensive degree in Information Technology with specialization in Cyber Security, focusing on advanced security concepts and practical applications.

Relevant Coursework:
  • ▸Web Security, Cryptography, Mobile Security, Network Security
  • ▸Secure Economic Analysis, Systems and Network Programming
  • ▸Database Management Systems for Security, Secure Operating Systems
  • ▸Enterprise Standards for Information Security, Secure Software Systems
  • ▸Cyber Forensics and Incident Response, Information Security Policy and Management
  • ▸Information Security Risk Management
Activities & Involvement:
  • ★Member of SLIIT Cricket Team 2022 and 2023
KINGSWOOD COLLEGE, KANDY, SRI LANKA Logo

GCE Advanced Level Examination

KINGSWOOD COLLEGE, KANDY, SRI LANKA

MAY 2017 – NOV 2020
Kandy, Sri Lanka
Completed
Program Overview:

Completed Advanced Level education with focus on Mathematics, Physics, and Information Technology.

Subjects:
  • ▸Combined Mathematics (S), Physics (S), Information Technology (C), General English (A)
Activities & Involvement:
  • ★Member of 1st XI and 2nd XI cricket teams 2017/2018 and 2018/2019
  • ★Member of Interact Club
  • ★Committee member of IT Society

Certifications

Professional certifications that validate my expertise in cybersecurity and demonstrate my commitment to continuous learning.

Jr Penetration Tester Certificate Certificate

Jr Penetration Tester Certificate

TryHackMe

2023

Validates foundational penetration testing skills and methodologies

Key Skills:

Penetration TestingVulnerability AssessmentNetwork SecurityWeb Application Security
IBM Cybersecurity Analyst Certificate

IBM Cybersecurity Analyst

IBM

2023

Demonstrates expertise in cybersecurity analysis and threat detection

Key Skills:

Threat AnalysisIncident ResponseSecurity MonitoringRisk Assessment
Fortinet Network Security Expert Level 1: Certified Associate Certificate

Fortinet Network Security Expert Level 1: Certified Associate

Fortinet

2023

Validates knowledge of Fortinet security technologies and network security

Key Skills:

Network SecurityFirewall ManagementThreat PreventionSecurity Architecture

Cybersecurity Arsenal

A comprehensive collection of security tools and technologies I use to protect digital assets and identify vulnerabilities.

"How does malware detection using memory dumps work?" It requires deep knowledge of memory forensics and the right toolset—which is why I continuously refine my skills across various analytical domains below.

Network Analysis

SIEM

Web Security

Penetration Testing

Scripting

Security Monitoring

Network Security

Network Discovery

Exploitation

Automation

Vulnerability Assessment

Identity Management

Email Security

Development

Wireshark

Network Analysis

SKILL85%

Splunk

SIEM

SKILL90%

Burp Suite

Web Security

SKILL88%

Kali Linux

Penetration Testing

SKILL92%

Python

Scripting

SKILL80%

Cortex XDR

Security Monitoring

SKILL95%

Firewalls

Network Security

SKILL87%

Nmap

Network Discovery

SKILL90%

Metasploit

Exploitation

SKILL85%

OWASP ZAP

Web Security

SKILL82%

PowerShell

Automation

SKILL78%

Nessus

Vulnerability Assessment

SKILL88%

CrowdStrike XDR

Security Monitoring

SKILL93%

Microsoft Defender

Security Monitoring

SKILL90%

Entra ID

Identity Management

SKILL85%

Mimecast

Email Security

SKILL87%

GitHub

Development

SKILL82%

Prisma Access

Network Security

SKILL89%

Professional Strengths

Core competencies that drive my success in cybersecurity roles

Strong Communication & Leadership

Critical Thinking & Problem Solving

Team Collaboration & Decision Making

Stress Management

Projects & Case Studies

A selection of specialized cybersecurity projects that highlight problem-solving workflows, technical methodologies, and measurable results.

Automated Vulnerability Scanning Solution

Automated Vulnerability Scanning Solution

Development of automation tools for vulnerability scanning using Python and Bash Scripting. Associated with Ivedha Inc.

TECH_STACK:

PythonBashSecurity AutomationVulnerability Assessment
Security Awareness & Phishing Simulations

Security Awareness & Phishing Simulations

Conducted security awareness training and simulated phishing attacks for multiple clients using the KnowBe4 platform to improve organizational security posture. Associated with Ivedha Inc.

TECH_STACK:

KnowBe4Security TrainingPhishing SimulationCyber Hygiene
Vulnerability Assessments & Penetration Testing

Vulnerability Assessments & Penetration Testing

Performed in-depth vulnerability assessments and penetration testing for enterprise clients, identifying security weaknesses and recommending mitigation strategies. Associated with Ivedha Inc.

TECH_STACK:

Penetration TestingVulnerability AssessmentNessusBurp Suite

BLOG_FEED

[INFO] Latest cybersecurity insights and technical articles

[2025-01-16 10:45:22][INFO]Blog Entry:Nmap Basics
Nmap Basics

Nmap Basics

An insightful article discussing Nmap Basics. Click 'Read More' to delve into the details on Medium.

STATUS: PUBLISHEDPLATFORM: MEDIUM
TRANSMIT_TO_MEDIUM→
[2025-01-16 10:45:22][INFO]Blog Entry:Blockchain Technology
Blockchain Technology

Blockchain Technology

An insightful article discussing Blockchain Technology. Click 'Read More' to delve into the details on Medium.

STATUS: PUBLISHEDPLATFORM: MEDIUM
TRANSMIT_TO_MEDIUM→
[2025-01-16 10:45:22][INFO]Blog Entry:Onboarding Microsoft Sentinel
Onboarding Microsoft Sentinel

Onboarding Microsoft Sentinel

An insightful article discussing Onboarding Microsoft Sentinel. Click 'Read More' to delve into the details on Medium.

STATUS: PUBLISHEDPLATFORM: MEDIUM
TRANSMIT_TO_MEDIUM→

CONTACT_PROTOCOL

[INFO] Establishing secure communication channel...

EMAIL_ADDRESS

[email protected]

PHONE_NUMBER

+94 75 376 6162

LOCATION

Colombo, Sri Lanka (Remote Open to Worldwide)

MESSAGE_TRANSMISSION

Frequently Asked Questions