Skip to content
View Janiru-Sudasinghe's full-sized avatar
🎯
Focusing
🎯
Focusing
  • NIBM
  • Colombo, Sri Lanka
  • 05:45 (UTC +05:30)

Highlights

  • Pro

Block or report Janiru-Sudasinghe

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Janiru-Sudasinghe/README.md

JANIRU DINNATH SUDASINGHE

Cybersecurity Undergraduate · SOC Analyst · Red Teaming


Executive Summary

Cybersecurity undergraduate and practicing SOC Analyst with hands-on operational experience in SIEM/SOAR-driven threat detection, threat hunting, and Cyber Threat Intelligence (CTI). Currently engaged as a Cybersecurity Intern at NCINGA, where responsibilities include the design and tuning of custom SIEM correlation rules and the automation of incident response workflows to reduce mean time to detect (MTTD) and mean time to respond (MTTR).

Working knowledge spans multi-cloud security architecture (Azure, OCI, GCP), network perimeter defense (Check Point, FortiGate), and Linux system hardening, underpinned by formal training toward Microsoft, Fortinet, and Cisco security certifications. Actively expanding cloud and applied-AI competencies through the Google Developer Program (GEAR) and the Google Cloud Arcade Facilitator Program.

Beyond the technical remit, brings demonstrated leadership and stakeholder-management capability. Evidenced by tenure as Head Prefect and Volunteer Instructor and operates as an ENFJ-A, a profile associated with structured communication, team coordination, and cross-functional collaboration, all directly transferable to SOC shift-handover discipline and incident-response coordination.


Core Competencies

Domain Competency
Security Operations SIEM correlation rule engineering, SOAR playbook automation, alert triage and escalation, log pipeline design
Cyber Threat Intelligence IOC enrichment and pivoting, CTI-informed detection engineering, indicator lifecycle management
Threat Hunting Hypothesis-driven hunting methodology, proactive identification of indicators of compromise ahead of automated alerting
Dashboard Creation Design and development of SIEM/SOC dashboards for real-time visibility, KPI tracking, and executive reporting
VAPT Vulnerability assessment and penetration testing across network, system, and application layers
Agentic AI Automation Applied integration of agentic AI workflows into security operations and automation pipelines
Cloud Security Multi-cloud security posture management and configuration review across Azure, OCI, and GCP
Network Security Perimeter defense, firewall policy administration, and traffic inspection on Check Point and FortiGate

Professional Experience

Cybersecurity Intern - NCINGA Current

  • Develop and tune custom SIEM correlation rules to improve detection fidelity and reduce false-positive rates.
  • Design and implement SOAR-driven automation for incident response workflows, decreasing manual analyst workload.
  • Support threat hunting and CTI activities to proactively identify indicators of compromise ahead of automated alerting.

Technical Proficiencies

Security Operations

Network Security

Cloud Security (Multi-Cloud)

Cyber Threat Intelligence


Latest Projects

Air-Gapped SIEM Log Pipeline

Objective Deliver reliable log ingestion and correlation for environments with no external connectivity, where standard cloud-fed threat intelligence is unavailable.
Approach Designed an isolated collection and forwarding pipeline with local correlation logic, preserving detection capability without external dependency on internet-facing feeds.
Relevance Directly applicable to regulated, classified, or OT/ICS environments where air-gapping is a compliance mandate rather than a design preference.
Tags SIEM Log Pipeline Engineering Isolated Network Architecture Detection Engineering

View Repository →


Linux Security Hardening — Auditd & Lynis

Objective Establish a repeatable, benchmarked hardening baseline for Linux hosts.
Approach Implemented kernel-level auditing via Auditd for granular system-event capture, paired with Lynis for automated security scoring and CIS-aligned compliance assessment.
Relevance Supports audit-readiness and demonstrates a measurable, standards-aligned approach to endpoint hardening — a core expectation for SOC and infrastructure security roles.
Tags Linux Hardening Auditd Lynis CIS Benchmarks Compliance

View Repository →


Highly Available Cloud CI/CD Platform

Objective Architect a resilient CI/CD platform with security controls embedded at the pipeline level (DevSecOps).
Approach Built for high availability across cloud infrastructure using fault-tolerant deployment patterns and integrated security gating at each release stage.
Relevance Demonstrates the ability to balance delivery velocity with security governance - a critical skill set as organizations shift security left in the SDLC.
Tags CI/CD High Availability Cloud Architecture DevSecOps

View Repository →


Certifications

Certification Credential Code Issuing Body Domain
Microsoft Certified: Cybersecurity Architect Expert SC-100 Microsoft Security Architecture
Microsoft Certified: Security Operations Analyst Associate SC-200 Microsoft Security Operations
Microsoft Certified: Identity and Access Administrator Associate SC-300 Microsoft Identity & Access Management
Microsoft Certified: Azure Security Engineer Associate AZ-500 Microsoft Cloud Security
Microsoft Certified: Azure Administrator Associate AZ-104 Microsoft Cloud Administration
Microsoft Certified: Azure Network Engineer Associate AZ-700 Microsoft Cloud Networking
Fortinet Certified Associate FCA Fortinet Network Security
Cisco Certified Network Associate CCNA Cisco Networking Fundamentals
ISO/IEC 27001:2022 Lead Auditor - PECB / Accredited Body Information Security Governance
Red Hat System Administration II RH134 Red Hat Linux Systems Administration
OCI Networking Professional - Oracle Cloud Networking
Aviatrix Multi-Cloud Network Associate MCNA Aviatrix Multi-Cloud Networking
Nutanix Certified Professional - Network & Security NCP-N&S 7 Nutanix Hybrid Cloud Networking & Security
Google Cloud Associate Cloud Engineer - Google Cloud Cloud Engineering

Verified digital badges available via Credly and on request during interview or reference processes.


Education

BSc (Hons), Cyber Security & Digital Forensics Kingston University · Expected September 2027

Higher National Diploma (HND), Network Engineering - Awarded with Distinction National Institute of Business Management (NIBM)


GitHub Activity


Channel Link
LinkedIn Linkedin.com
Email Gmail.com
GitHub GitHub.com

Open to SOC Analyst, Security Engineering, Network Security and Cloud Security opportunities.

"Detect early. Respond decisively. Harden continuously."

Pinned Loading

  1. Janiru-Sudasinghe Janiru-Sudasinghe Public

    Aspiring Network Security Engineer focused on building secure, scalable infrastructure. Documenting my journey in Cloud, Virtualization, and Cyber Defense.