Cyber Threat IntelligenceCloud SecurityIncident ResponseVAPT

Hello, I'm
Supushpitha Atapattu.

An experienced cybersecurity professional in vulnerability assessments and incident response, dedicated to enhancing digital security.

Scroll to discover

I'm an experienced cybersecurity professional since 2019. I’ve been diving deep into the world of security operations, turning chaos into order for organizations big and small, I thrive on automating incident responses and optimizing security protocols. Let’s just say, I enjoy turning threats into mere blips on the radar!

4+Years of experience
15+Technologies mastered
5+Companies worked with
BSc Hons. Specialized in Cybersecurity logoSLIITBSc Hons. Specialized in Cybersecurity
Cloud Computing Post Graduate logoLoyalist CollegeCloud Computing Post Graduate
Cybersecurity Managment logoUniversity of TorontoCybersecurity Managment
✨ Experience

Elevating cybersecurity across industries.

I have extensive experience in cybersecurity,
working with leading organizations to enhance security protocols and incident response capabilities.

CyberWall logo

CyberWall - Toronto, ON

Security Operations Analyst – Co-op

November 2024 – Present

Configuring SIEM, EDR tools for incident resolution.

  • Administering and managing Wazuh, providing real-time analysis of security events and incidents. Responding to and reporting on alerts triggered to enhance threat detection.
  • Configuring EDR tools monitoring endpoint activity for malicious behavior and performing in-depth analysis of alerts for effective incident response.
  • Documenting and reporting on security incidents, including detailed analysis of incidents triggered by EDR tools and Wazuh using PowerBI, and collaborating with teams for continuous improvement in incident response processes.

Stratejm logo

Stratejm, a Bell Canada Company - Toronto, ON

Cyber Intelligence Analyst – Co-op

April 2024 – August 2024

Contributed to SIEM alert analysis and incident resolution.

  • Security monitoring and analyzing the alerts triggered by the SIEMs (FortiSIEM, Microsoft Sentinel, LogRhythm, QRadar) using a combination of search queries and pivots to resolve incidents and alerts using the ServiceNow ticketing system.
  • Develop and implement automations and playbooks for security orchestration, automation, and response (SOAR) systems to streamline incident response workflows and improve efficiency.
  • Utilize EDR (Endpoint Detection and Response) tools to monitor endpoint activity and respond to threats in real-time.
  • Investigate security incidents using combination of tools and recommend proper solutions based on analysis.

SentryLabs logo

SentryLabs - Colombo, LKA

Associate Engineer – Information Security

August 2021 – November 2022

Led security investigations, implementing SIEM, EDR and vulnerability assessments.

  • Conducted security breach investigations, Vulnerability Assessment, and Penetration Testing (VAPT).
  • Implemented, optimized, consulted on, developed, troubleshooted, and deployed information security systems and solutions, including SIEM, EDR, WAF, and cloud-based tools.
  • Configured and monitored firewalls to safeguard the organizations network infrastructure.

Mobitel logo

Mobitel - Colombo, LKA

Information Security Analyst - Internship

September 2020 – March 2021

Comprehensive Security Operations and Incident Response Management

  • Managed security operations, overseeing SIEM (Splunk, QRadar), automated threat detectors, and Endpoint Protection Management (EPM) for threat detection and incident response. Developed use cases to improve threat detection and streamline.
  • Conducted reviews per OWASP standards, PCI-DSS and PA-DSS compliance, showcasing collaborative skills with development.
  • Monitored network traffic and security alerts using firewalls and intrusion detection systems (IDS). Analyzed logs for suspicious activities, performed threat analysis, and maintained network security integrity by demonstrating flexibility in threat detection.

SLCERT logo

Sri Lanka CERT | Cordination Center - Colombo, LKA

Information Security Analyst - Internship

July 2019 – June 2020

Incident Response, Forensics, and Security Compliance Management

  • Handled malware, DDoS/DoS attacks, defacement, and hacking incidents for the Ministry of Defense Sri Lanka. Skilled in threat detection and incident management.
  • Managed forensic investigations, evidence handling, and reports for payment card fraud, email forensics, and data recovery through strong investigation.
  • Maintained NIST and ISO 27001/27002 policies, ensuring compliance and enhancing security posture, demonstrating commitment and effective risk management.

Here are some of the certifications I hold that demonstrate
my expertise.

If you have any questions or want to discuss how I can assist you, just reach out!

MicrosoftCertified Cybersecurity Architect Expert
MicrosoftCertified Security Operations Analyst Associate
CrowdStrikeCertified Falcon Administrator CCFA
SentinelOneIncident Response Engineer
SplunkCore Certified User

Let's work together.

I'm currently available for freelance work and open to exciting new opportunities in the cybersecurity field!
Let’s connect and explore how we can collaborate.