About
From a classroom to global MSSP security operations
A first-class cybersecurity education, a builder's curiosity, and two-plus years of hands-on defense across banking, healthcare, pharmaceutical, and enterprise environments.
My Story
Why security, and why I build
I'm Jayodya Methmal — an Incident Response Analyst at Armature Systems, a US-based Managed Security Services Provider (MSSP), where I work remotely supporting security operations and incident response for clients across pharmaceutical, biopharmaceutical, healthcare, and enterprise industries — spanning SentinelOne, CrowdStrike Falcon, Cortex XDR, Microsoft Defender, Microsoft Sentinel, Okta, Abnormal Security, Zscaler, and Tines, while building out alert-tuning and automation processes. Before that, I spent time as an Engineer in IT Security at Commercial Bank of Ceylon PLC working inside Cortex XSIAM, and just over a year inside MillenniumIT ESP's 24/7 managed security operations center, defending banking, healthcare, and enterprise clients across on-premises, AWS, and Azure environments.
My path into security started with a genuine curiosity about how systems break. That curiosity led me to a BSc (Hons) in Cyber Security at the University of Staffordshire UK, delivered through APIIT Sri Lanka, where I graduated with First Class Honours and was awarded the Gold Medal for Best Performance in Cybersecurity — the culmination of four years split between network security labs, ethical hacking modules, and a growing stack of side projects.
What sets my approach apart is that I don't just monitor systems — I build them. From a React/Node platform connecting Sri Lankan entrepreneurs, to a fully homomorphic encryption pipeline for healthcare ML predictions, writing software keeps my defensive instincts grounded in how applications, infrastructure, and data actually behave under the hood.
On the professional side, one of the most formative experiences so far has been collaborating with Mandiant on a bank-wide compromise assessment — coordinating forensic artifact collection across more than 9,000 devices, from core servers to ATMs. It reinforced a simple principle that now guides everything I do: visibility first, then speed, then precision.

Quick facts
- Based in
- Gampaha, Sri Lanka
- Current role
- Incident Response Analyst @ Armature Systems (Remote, MSSP)
- Education
- BSc (Hons) Cyber Security, First Class
- Languages
- English, Sinhala
Philosophy
Principles that guide how I work
Four ideas I keep coming back to — in a SOC, in a code review, or in a research write-up.
Detect early, verify fast
Every hour an attacker spends undetected is an hour of compounding risk. I treat detection latency as a metric worth fighting for — tuning rules until signal beats noise.
Build to understand how things break
Writing software — React apps, Node APIs, encrypted ML pipelines — keeps my defensive thinking grounded in how systems actually fail, not just how attacks are described in textbooks.
Document the lesson, not just the incident
A closed ticket without a lesson learned is a missed opportunity. I document root causes and feed them back into detection rules and runbooks.
Stay current, deliberately
From AttackIQ breach simulations to AI security foundations, I treat certifications and labs as a forcing function to stay ahead of the threat landscape — not a checkbox.
Journey
Education & career timeline
Oct 2021
Began BSc (Hons) Cyber Security
University of Staffordshire UK · APIIT Sri Lanka
Started a four-year honours degree spanning network security, ethical hacking, secure infrastructure design, cyber-risk analysis, and disaster recovery.
2022/2023
Honor Roll — School of Computing
APIIT Sri Lanka
Recognized for maintaining excellent academic performance throughout the 2022/2023 academic year.
Jul — Oct 2023
Intern, Managed Security Services
eBuilder Security
First professional exposure to security operations — incident handling, AWS administration, OSINT, and phishing simulations.
May — Oct 2024
Intern, Managed Security Services
MillenniumIT ESP
Supported a 24/7 SOC with incident monitoring, vulnerability management, and security reporting.
Oct 2024
Graduated First Class Honours & Gold Medalist
University of Staffordshire UK · APIIT Sri Lanka
Graduated with First Class Honours and received the Gold Medal for Best Performance in Cybersecurity.
Sep 2024 — Aug 2025
Associate Analyst, Managed Security Services
MillenniumIT ESP
Executed 24/7 SOC incident response across on-prem, AWS, and Azure environments; led security operations for a flagship healthcare client.
Aug 2025 — Apr 2026
Engineer, IT Security
Commercial Bank of Ceylon PLC
Owned detection engineering in Cortex XSIAM, led incident response, and collaborated with Mandiant on enterprise compromise assessment.
Apr 2026 — Present
Incident Response Analyst
Armature Systems (Remote · USA-based MSSP)
Remote security operations and incident response for pharmaceutical, biopharmaceutical, healthcare, and enterprise clients across SentinelOne, CrowdStrike Falcon, Cortex XDR, Microsoft Defender, Sentinel, Okta, Abnormal Security, Zscaler, and Google Workspace — while building out alert-tuning and Tines automation processes.
Open to security research collaborations & freelance engineering work
Let's strengthen your security posture — or build something new.
Whether it's detection engineering, a compromise assessment, or a full-stack build — I'm always glad to talk shop.