Summary
Overview
Work History
Education
Skills
Certification
Hobbies Languages
Timeline
Generic

Sudarshanbabu Maddaiah Yaragudi

Pune

Summary

12+ years experienced senior manager security and Security Consultant. I protect companies and enjoy preventing them from breaches and love to figure out gaps and share the insights across the leads. I have led high-performing SOC teams security Operations, SOC/MDR, Incident Response, Threat Management, Vulnerability Management, Cyber Resilience, and Security Governance. Proven experience leading high-performing SOC/CSIRT teams, developing MITRE ATT&CK detection frameworks, driving security automation, and strengthening enterprise and cloud security posture. Expertise in Incident Response, Threat Detection & Hunting, Detection Engineering, EDR/XDR, SIEM, Vulnerability Management, Security Risk Management, Email Security, GRC, Security Auditing, and Compliance. Experienced in implementing security controls and processes aligned with ISO 27001, NIST frameworks, and organizational security requirements. Strong people and stakeholder management capabilities, with experience mentoring security professionals, managing security operations in high-pressure environments, coordinating cross-functional teams, and driving security transformation, operational excellence, and continuous improvement.

Overview

6
6
Certification
12
12
years of professional experience

Work History

Senior Consultant/Senior Manager - Cyber Security

Coforge Ltd
07.2025 - Current
  • Managed SOC/Security Operations team, overseeing security monitoring, alert triage, incident response, threat detection, and day-to-day security operations.
  • Incident Response (IR) and cyberattack investigations, including containment, remediation, root cause analysis (RCA), and post-incident reporting.
  • Threat & Vulnerability Management, including vulnerability assessments, remediation tracking, risk assessment, VA/PT, and security audits.
  • Optimized security technologies including IBMqradar SIEM, Trend Micro EDR/XDR, Forcepoint DLP, CISCO ASA, fortinet firewalls, IDS/IPS, Nessus vulnerability management, and security monitoring platforms.
  • Developed and optimized security policies, procedures, playbooks, detection logic, and operational processes.
  • Conducted threat monitoring, threat hunting, security assessments, and detection gap analysis to strengthen security posture.
  • Drove security automation and process improvement to reduce manual effort, improve alert handling, and accelerate incident response.
  • Worked on Data breach, Attack surface on Cloudsek XVigil, Bvigil for brand protection.
  • Assessment for Security vendors and third-party technologies, including evaluation, deployment, and risk assessment.
  • Monthly phishing simulation for security awareness helping internal employees become first responder for an incident.
  • Drive Compliance with NIST CSF, ISO 27001, CIS controls, SOC 2 and CBUAE security regulations.
  • Implement and manage IT infrastructure security solutions identify and mitigate vulnerabilities, misconfigurations across server, network, and endpoint layers.

Senior Threat Analyst / Team Lead

Sophos India Pvt. Ltd
01.2020 - 03.2025
  • Managed a global team of 10+ Threat Analysts delivering Managed Detection and Response (MDR) services, providing technical leadership, mentoring, and operational oversight.
  • Conducted Continuous Threat Hunting and Threat Research using sophos EDR, XDR, Taegis SIEM, NDR, and cloud telemetry to identify adversary TTPs aligned with MITRE ATT&CK.
  • Investigated a wide range of cyber incidents through sophos MDR platform for ransomware, APTs, insider threats, credential compromise, lateral movement, as part of incident response.
  • Collaborated with Sophos Labs, Threat Intelligence, Product Management, and Knowledge Base teams to improve detections, validate threats, and publish customer security advisories.
  • Improved detection quality by tuning EQL detection logic, optimizing suppression rules, and participating in Purple Team exercises to validate MITRE ATT&CK coverage.
  • Performed peer review for incident investigation and investigation reports.

IT Analyst / Shift Lead

Allscripts India Pvt. Ltd
11.2015 - 01.2020
  • Led a team of 6 analysts managing day-to-day SOC operations.
  • Acted as SPOC for all server and endpoint security issues across enterprise users.
  • Cisco AMP endpoint alerts and report and product issues to the vendor.
  • Performed Vmware Vsphere troubleshooting on virtual machine for business continuity.
  • Worked on Network Monitoring and SCOM monitoring to ensure the high availability of Critical assets in the infrastructure.
  • Trained internal staff for day to day tickets on salesforce CRM.
  • Managed onboarding/offboarding for end user access management.
  • Investigated suspicious authentication and account compromise incidents using Splunk, analyzing login patterns, source IPs, failed/successful authentication events, and user activity.
  • Worked on break fix issues on end user machines and provided app support for critical applications.

Technical Support Engineer - Infrastructure

Mphasis
12.2013 - 11.2015
  • Monitor infrastructure alerts and respond to basic incidents for American express.
  • Troubleshoot user issues related to servers, networks, and applications.
  • Create, track, and update incident and service requests on CA servicedesk.
  • Support user account management, password resets, and access requests.
  • Worked on windows registry to fix the windows machine issues and application issues.
  • Assist with system patching, updates, and routine maintenance activities.
  • Review security alerts and escalate suspicious activities to the security team.
  • Maintain accurate documentation, knowledge base articles, and ticket updates.

Education

Bachelor of Computer Applications - undefined

Pune University
10-2017

SSC & HSC - CBSE Board

Kendriya Vidyalaya Range Hills
01-2012

Skills

  • Incident Response
  • Threat Hunting
  • Malware analysis
  • SOC Operations
  • Team Management
  • MITRE ATT&CK
  • Detection Engineering
  • SIEM Tools
  • Splunk
  • Securework Taegis
  • Palo Alto XSIAM
  • Cortex XDR
  • Endpoint Security
  • Sophos endpoint
  • Symantec Endpoint
  • CISCO AMP
  • Cortex AI
  • Threat Intel
  • OpenCTI
  • MISP
  • Cloudsek Xvigil
  • Firewalls
  • Sophos Firewall
  • Fortinet
  • Security Frameworks & Standards
  • NIST 20
  • CIS Controls
  • ISO 27001
  • SOC 2 Type 2
  • EU AI ACT
  • Regulatory & Industry Compliance
  • PCI-DSS
  • HIPAA
  • CBUAE Information Security Regulations
  • UAE Information Assurance Regulation

Certification

  • Certified Information Systems Security Professional (CISSP)
  • Certified Information Security Manager (CISM)
  • EC-Council Certified Incident Handler (ECIH v2)
  • Certified Ethical Hacker (CEH)
  • CompTIA Security+
  • Sophos Certified Architect & Sophos Central Engineer

Hobbies Languages

Trekking, MMA, Puzzles, Cycling, English, Hindi, Telugu, Marathi

Timeline

Senior Consultant/Senior Manager - Cyber Security

Coforge Ltd
07.2025 - Current

Senior Threat Analyst / Team Lead

Sophos India Pvt. Ltd
01.2020 - 03.2025

IT Analyst / Shift Lead

Allscripts India Pvt. Ltd
11.2015 - 01.2020

Technical Support Engineer - Infrastructure

Mphasis
12.2013 - 11.2015

SSC & HSC - CBSE Board

Kendriya Vidyalaya Range Hills

Bachelor of Computer Applications - undefined

Pune University
Sudarshanbabu Maddaiah Yaragudi