Pawee Werawithayaset
Central Information Technology Center
Office of Information and Communication Technology
Royal Thai Police
Career progression at the Royal Thai Police
Working areas and the tooling behind them
Penetration testing across web, network and Active Directory; red teaming and adversary simulation mapped to MITRE ATT&CK. Metasploit, Burp Suite, SQLMap, Gobuster, Nmap, Nessus.
SOC Tier 1 and 2, SIEM work on Splunk, QRadar, ELK and FortiSIEM, threat hunting, log analysis and dark-web monitoring.
DFIR with Autopsy, Volatility, FTK and Wireshark. Root-cause analysis and post-incident reporting for executive audiences.
AWS, Fortinet Cloud NGFW, CNAPP, IAM, OWASP API Top 10 and hands-on API penetration testing.
VMware, Active Directory, Linux and Windows Server, Palo Alto NGFW, FortiGate and VPN.
Python, Bash and PowerShell, used to automate security tooling and repetitive analysis work.
Cybersecurity Act B.E. 2562 (CII scope), ISO/IEC 27001 as Lead Auditor and Implementer, PDPA, ISO 9001 and ISO 20000.
CTI frameworks and OSINT, arcX Foundation CTI Analyst, AttackIQ breach-and-attack simulation, MITRE ATT&CK.
Issue and expiry details are verifiable on Credly and LinkedIn.
National CTF and cyber-exercise results
Degrees, professional licence and published work
Channels and public profiles