I will audit and harden your microsoft 365 security

Sri Lanka

I speak Sinhala, English

Information Security Engineer

I am an Information Security Engineer with over three years of experience in the field. I focus on vulnerability management, penetration testing, SIEM, EDR, networking, and incident response. I hold m...
About this Gig

Your M365 tenant ships configured for convenience not security.


Legacy auth enabled, audit logging incomplete, external sharing wide open. These are the gaps attackers exploit.


I find and fix them before they do.


I'm an SC-200 certified analyst at a national CERT (CSIRT), handling real incidents across government and critical infrastructure. I bring that same rigor to your tenant.


What You Get:

⯈ Secure Score deep-dive with prioritized actions

⯈ MFA & Conditional Access gap analysis

⯈ Email auth verdict SPF, DKIM, DMARC pass/fail

⯈ Defender, DLP & external sharing review

⯈ Admin role sprawl check

⯈ Professional PDF report with remediation roadmap


Why It Matters: 43% of cyberattacks target small businesses 14% of cyber insurance claims denied for non-compliance A misconfigured tenant can void your coverage


Ideal for SMBs, startups prepping for SOC 2/ISO 27001, IT managers inheriting a tenant, or MSPs needing white-label audits.


Certs: SC-200 | SentinelOne ×3 | Fortinet FCA | CISA ICS300 Background: 3+ yrs SOC, VAPT, SIEM (QRadar, ELK), EDR, IR. BSc Cyber Security (Plymouth).


Message me before ordering to confirm scope.

Server:

Apache HTTP

Virtual private server

Database server

Operating system:

Windows

Linux

Unix

Vmware

BSD