J. METHMAL

About

From a classroom to global MSSP security operations

A first-class cybersecurity education, a builder's curiosity, and two-plus years of hands-on defense across banking, healthcare, pharmaceutical, and enterprise environments.

My Story

Why security, and why I build

I'm Jayodya Methmal — an Incident Response Analyst at Armature Systems, a US-based Managed Security Services Provider (MSSP), where I work remotely supporting security operations and incident response for clients across pharmaceutical, biopharmaceutical, healthcare, and enterprise industries — spanning SentinelOne, CrowdStrike Falcon, Cortex XDR, Microsoft Defender, Microsoft Sentinel, Okta, Abnormal Security, Zscaler, and Tines, while building out alert-tuning and automation processes. Before that, I spent time as an Engineer in IT Security at Commercial Bank of Ceylon PLC working inside Cortex XSIAM, and just over a year inside MillenniumIT ESP's 24/7 managed security operations center, defending banking, healthcare, and enterprise clients across on-premises, AWS, and Azure environments.

My path into security started with a genuine curiosity about how systems break. That curiosity led me to a BSc (Hons) in Cyber Security at the University of Staffordshire UK, delivered through APIIT Sri Lanka, where I graduated with First Class Honours and was awarded the Gold Medal for Best Performance in Cybersecurity — the culmination of four years split between network security labs, ethical hacking modules, and a growing stack of side projects.

What sets my approach apart is that I don't just monitor systems — I build them. From a React/Node platform connecting Sri Lankan entrepreneurs, to a fully homomorphic encryption pipeline for healthcare ML predictions, writing software keeps my defensive instincts grounded in how applications, infrastructure, and data actually behave under the hood.

On the professional side, one of the most formative experiences so far has been collaborating with Mandiant on a bank-wide compromise assessment — coordinating forensic artifact collection across more than 9,000 devices, from core servers to ATMs. It reinforced a simple principle that now guides everything I do: visibility first, then speed, then precision.

Portrait of Jayodya Methmal

Quick facts

Based in
Gampaha, Sri Lanka
Current role
Incident Response Analyst @ Armature Systems (Remote, MSSP)
Education
BSc (Hons) Cyber Security, First Class
Languages
English, Sinhala

Philosophy

Principles that guide how I work

Four ideas I keep coming back to — in a SOC, in a code review, or in a research write-up.

Detect early, verify fast

Every hour an attacker spends undetected is an hour of compounding risk. I treat detection latency as a metric worth fighting for — tuning rules until signal beats noise.

Build to understand how things break

Writing software — React apps, Node APIs, encrypted ML pipelines — keeps my defensive thinking grounded in how systems actually fail, not just how attacks are described in textbooks.

Document the lesson, not just the incident

A closed ticket without a lesson learned is a missed opportunity. I document root causes and feed them back into detection rules and runbooks.

Stay current, deliberately

From AttackIQ breach simulations to AI security foundations, I treat certifications and labs as a forcing function to stay ahead of the threat landscape — not a checkbox.

Journey

Education & career timeline

Oct 2021

Began BSc (Hons) Cyber Security

University of Staffordshire UK · APIIT Sri Lanka

Started a four-year honours degree spanning network security, ethical hacking, secure infrastructure design, cyber-risk analysis, and disaster recovery.

2022/2023

Honor Roll — School of Computing

APIIT Sri Lanka

Recognized for maintaining excellent academic performance throughout the 2022/2023 academic year.

Jul — Oct 2023

Intern, Managed Security Services

eBuilder Security

First professional exposure to security operations — incident handling, AWS administration, OSINT, and phishing simulations.

May — Oct 2024

Intern, Managed Security Services

MillenniumIT ESP

Supported a 24/7 SOC with incident monitoring, vulnerability management, and security reporting.

Oct 2024

Graduated First Class Honours & Gold Medalist

University of Staffordshire UK · APIIT Sri Lanka

Graduated with First Class Honours and received the Gold Medal for Best Performance in Cybersecurity.

Sep 2024 — Aug 2025

Associate Analyst, Managed Security Services

MillenniumIT ESP

Executed 24/7 SOC incident response across on-prem, AWS, and Azure environments; led security operations for a flagship healthcare client.

Aug 2025 — Apr 2026

Engineer, IT Security

Commercial Bank of Ceylon PLC

Owned detection engineering in Cortex XSIAM, led incident response, and collaborated with Mandiant on enterprise compromise assessment.

Apr 2026 — Present

Incident Response Analyst

Armature Systems (Remote · USA-based MSSP)

Remote security operations and incident response for pharmaceutical, biopharmaceutical, healthcare, and enterprise clients across SentinelOne, CrowdStrike Falcon, Cortex XDR, Microsoft Defender, Sentinel, Okta, Abnormal Security, Zscaler, and Google Workspace — while building out alert-tuning and Tines automation processes.

Open to security research collaborations & freelance engineering work

Let's strengthen your security posture — or build something new.

Whether it's detection engineering, a compromise assessment, or a full-stack build — I'm always glad to talk shop.