Summary
Overview
Work History
Education
Skills
Certification History
Personal Information
Timeline
SoftwareEngineer
Sugi Manoj Kathavarayan

Sugi Manoj Kathavarayan

Threat Hunter - Level 2
Bengaluru

Summary

A strong team player with expertise in the verticals of Incident management, Threat Intelligence, Threat Hunting, Malware Analysis, Security Operations Control, Vulnerability Intelligence, Cyber program Management.

Presently associated with Microsoft Corporation India Pvt. Ltd as a Threat Hunter (Level 2).

Organized and dependable candidate successful at managing multiple priorities with a positive attitude. Willingness to take on added responsibilities to meet team goals. Seeking a position that offers professional challenges utilizing interpersonal skills, excellent time management and problem-solving skills.

Overview

16
16
years of professional experience

Work History

Threat Hunter (Level-2)

Microsoft Corporation India Pvt. Ltd
Bengaluru, Karnataka
12.2021 - Current
  • Responsible to showcase the OKR (Objectives and key results) and ROI (Return of Investment) up to the C-Suite.
  • Disseminating Microsoft Defender Intelligence as a digest for the leadership team
  • Maintaining MTTA & MTTR for the overall Microsoft Defender health. Enhancing the process model to avoid any deviation beyond a P80 percentile.
  • Leading a team of threat hunters who notifies the suspicious activities for Microsoft customers such as Attack Staging, Attack Progression, Emerging Threats & Pre/Post ransomware incidents.
  • Heading the "Microsoft Threat Experts" collaborative programe in partnership with essential business units like Threat Intelligence, Vulnerability management, Offensive security team, Audit & Governance team.
  • Leading a team of experts sourced from different business units to train and test the "Microsoft Security Co-Pilot" for efficacy.
  • Conducting Forensics/Post-Mortem on critical incidents to identify gaps in detection logic and product coverage, and filing product false negatives as a follow-up.
  • Creating new detection logic in Kusto Query Language and working in improving the S/N ratio of existing logic during spike or surge scenarios.
  • Continuously updating the incident roadmaps and playbooks to keep up with the constantly evolving threat landscape.

Threat Intelligence Analyst

VMware Software India Pvt. Ltd.
Bengaluru, Karnataka
02.2019 - 12.2021
  • Monitoring the cyber threat landscape through open source channels, vendor feeds and sharing organizations.
  • Mapping relevant TTPs in Mitre Att&ck framework's standard to the ingested feeds within the TIP.
  • Working closely with the DFIR team in understanding the actor's motive, TTPs, and apply the knowledge in response activities during an incident.
  • Tracking related threat adversary for changes in TTPs & infrastructure, and setting proactive alerts.
  • Conducting threat hunts for relevant TTPs to identify the gaps in the environment.
  • Conducting Table top exercises and Live fire sessions.
  • Leading and supporting the regional SOC during investigations and act as a liaison between all business units during security incidents
  • Disseminating curated Intel for business units like SOC, RedTeam, DFIR, VulMan, etc
  • Disseminating weekly Intel report to CISO covering related threats and its impact to the organization
  • Generating metrics to show team's performance and its alignment with the organization's roadmap.

Cyber Threat Intelligence Analyst

The World Bank Group
Chennai, Tamil Nadu
08.2017 - 02.2019
  • Proactively monitor the Cyber Threat Landscape for existing and emerging threats.
  • Working closely with the SOC team to develop Internal Threat Intelligence by analyzing security incidents and events and gain insights about the threats that targets the bank.
  • Handling the day to day activities of the tier 1 and tier 2 teams to ensure effective resolution of alerts.
  • Mentoring junior team members.
  • Coordinating with international bodies such as US-CERT, DHS, FBI for threat updates and takedowns.
  • Ingesting IOCs from various sources like FS-ISAC, OSINT, etc.
  • Remediating any Brand/Email abuse related to The World Bank Group and its users.
  • Populating Monthly/Quarterly/Yearly Metrics for the management.
  • Developing standard operating procedures for intelligence operations and activities.

Security Researcher

Sutherland Global Services Ltd
10.2014 - 08.2017
  • Analyzing the suspicious file submitted by the customer, which possibly caused infection in their environment
  • Identifying the malicious character of the file (dynamic analysis) and determining the type of impact / threat caused in the customer's environment
  • Classifying the Malware based on its malicious behavior such as Ransomware, Password Stealer, Key-logger, Virus, etc
  • Deploying Generic & Signature DATs for Anti-Virus inclusion of the newly identified threats
  • Researching the latest threats and creating VIRUS INFORMATION LIBRARY and KNOWLEDGE BASE articles on the latest threats.

System Security Specialist

Gabriel Associates pvt. Ltd.
01.2010 - 10.2014
  • Training staff on network and information security procedures
  • Isolating any infected PC and responding to the threat
  • Collecting suspicious files and doing a preliminary analysis before sending it to the Anti-Virus vendor
  • Recommending security enhancements and procedures.

Web designer; Technical support

e4e Business Solutions Pvt Ltd.
05.2008 - 01.2010
  • Designing layout and converting them into HTML format and posting it directly in careerbuilder.com
  • Designing a single static webpage that reflects the characteristics of CareerBuilder clients
  • Troubleshooting errors in HTML & CSS codes.

Education

Bachelor of Engineering - Electrical And Electronics

Anna University
Chennai
04.2001 -

Skills

Strong understanding of APT attacks, Human Operated Ransomware attacks, and emerging threatsundefined

Certification History

  • SANS - GCIH, 04/2026
  • CISSP - Currently studying
  • Splunk - Core user, Expired
  • CEH v7, Expired

Personal Information

  • Date of Birth: 12/21/86
  • Marital Status: Married

Timeline

Threat Hunter (Level-2)

Microsoft Corporation India Pvt. Ltd
12.2021 - Current

Threat Intelligence Analyst

VMware Software India Pvt. Ltd.
02.2019 - 12.2021

Cyber Threat Intelligence Analyst

The World Bank Group
08.2017 - 02.2019

Security Researcher

Sutherland Global Services Ltd
10.2014 - 08.2017

System Security Specialist

Gabriel Associates pvt. Ltd.
01.2010 - 10.2014

Web designer; Technical support

e4e Business Solutions Pvt Ltd.
05.2008 - 01.2010

Bachelor of Engineering - Electrical And Electronics

Anna University
04.2001 -
Sugi Manoj KathavarayanThreat Hunter - Level 2