SG Sunil Gentyala
Contact

Sunil Gentyala

Twenty years in enterprise security teach you something certifications alone never will: the distance between a well-designed control and a resilient one is measured not in policy documents, but in decisions made under pressure, at scale, with incomplete information. That gap is where Sunil Gentyala's career has lived.

He is Lead Cybersecurity and AI Security Consultant at HCLTech, where he leads an 11-person security team across onsite and offshore environments, spanning multi-cloud security (Azure, AWS, GCP), enterprise identity and access management, application security, and AI/ML security for Fortune 500 clients including Uber, Disney, and Royal Caribbean. He serves as HCLTech's designated expert representative to the Cloud Security Alliance.

He is the creator of ContextGuard, a zero-trust middleware framework for Model Context Protocol (MCP) security, and the GSH Framework (Gentyala-Sovereign Hunt), an agentic AI threat hunting framework mapped to MITRE ATLAS and NIST CSF 2.0.

His research spans adversarial machine learning, MCP vulnerability analysis, post-quantum cryptography, and agentic AI governance. He holds over 20 years of enterprise PKI and security architecture experience and has published across CSO Online, Dark Reading, SC World, Cyber Defense Magazine, and BiometricUpdate.com. He holds a #FoundryExpert designation across IDG/Foundry publications (CSO Online, CIO.com, Computerworld) and has been featured on Decoded: The Cybersecurity Podcast.

He is an IEEE Senior Member (No. 101760715, ORCID: 0009-0005-2642-3479), active ISACA Professional Member (ID: 2297870), and is pursuing IET Fellowship (FIET).

20+
Years of security experience
14
Research publications
7
Industry articles
11
Cross-media citations

Featured Research & Projects

ContextGuard
Zero-trust middleware framework for Model Context Protocol (MCP) security.
GSH Framework
Gentyala-Sovereign Hunt — agentic AI threat hunting mapped to MITRE ATLAS and NIST CSF 2.0.
AegisSwarm-Core
Zero-trust governance for autonomous multi-agent AI networks. Published by the Cloud Security Alliance, cited externally as a reference implementation.
SybilShield-Core
Composite trust scoring framework for Sybil attack mitigation in permissionless blockchain networks.
CADLP
Context-aware DLP proxy that detects and redacts credentials, PII, and proprietary code before prompts reach external LLM APIs.
TRACE-MAS
Unified cryptographic framework securing multi-agent LLM pipelines against drift, spoofing, and prompt injection.
CausalNetTwin
Causal digital-twin framework for network security reasoning, targeting IEEE INFOCOM 2027.
PRAVAL
Ten-phase agentic vulnerability-assessment framework, IEEE TrustCom 2026.
ZKP-RA
Zero-knowledge proof reasoning anchors mitigating memory poisoning in autonomous agentic DeFi. Groth16 zk-SNARKs, ~182ms proofs.
ArchForge
Open-source system design workbench with 60+ interactive patterns and a real-time capacity calculator.
DockerDNA
Layer-by-layer container security analysis — secrets detection, CIS Docker Benchmark compliance, SBOM, and SARIF output.
LaptopAI-Agent
Fully local, privacy-first autonomous AI agent — LangGraph reasoning loop, Ollama, ChromaDB RAG, MCP tool integration.
40+ open-source security and AI research projects in total — see the full list on GitHub.

Timeline

2026 May
Quoted in Non-Stop Agentic AI Action Has Teams Assembling to Face the Threat — BiometricUpdate.com, on enterprise AI agent infrastructure security gaps
2026 April
🥉 Bronze — Cybersecurity Professional of the Year at the 2026 Cybersecurity Excellence Awards
2026 April
Shortlisted for Cyber Security Influencer of the Year at the Cyber Security Awards 2026
2026 April
Nominated for the Alan Turing Cyber Leadership Award at the National Cyber Awards — under expert judging panel review
2026 April
Published MCP security analysis at SC World on Model Context Protocol attack vectors and zero-trust mitigations
2026 April
Submitted multi-venue paper package — A Post-Quantum Migration Taxonomy for Model Context Protocol — to IEEE TIFS, ACM QSec, and Elsevier FGCS
2026 March
Expert commentary cited in Zscaler-SquareX Deal Boosts Zero Trust, Secure Browsing Capabilities — Dark Reading, on browser-centric zero-trust enforcement architecture
2026 March
CSA Peer Review completed — MLOps Key Activities, Cloud Security Alliance
2026 March
Published LLM Jailbreak Survey to Zenodo (DOI: 10.5281/zenodo.19241166) and SSRN
2026 March
GSH Framework reached v1.0.0-beta with full playbook set and CI workflow
2026 February
Published The Sentinel Intelligence: A CISO's Guide to Sovereign Security in the Age of AGI — Cyber Defense Magazine, introducing the SI architectural framework
2026 February
Published Why 2025's Agentic AI Boom Is a CISO's Worst Nightmare — CSO Online, on indirect prompt injection, memory poisoning, and agentic denial-of-service exploits
2026 February
CSA Peer Review completed — IAM Standards and Protocols
2026 February
CSA Peer Review completed — Post-Quantum Cryptography Key Management
2026 February
ContextGuard published at GitHub with v1.0.0-ieee-submission release tag
2026 April
Invited as peer reviewer at the Cyber Defense Review — peer-reviewed scholarly journal of the U.S. Army Cyber Institute at West Point
2026 January
Submitted paper to IEEE SmartNets 2026Identity 3.0 and Zero-Trust for Critical Infrastructure, introducing the IMM-CI maturity model (EDAS ID 69662X)
2025 December
Featured on Decoded: The Cybersecurity PodcastBrowser Zero Trust: Hardening Security Controls (41 min); also on Apple Podcasts
2025 December
Published Hardening Browser Security with Zero-Trust Controls — CSO Online, six-principle browser zero-trust framework with NIST SP 800-207 and CISA Maturity Model alignment
2025 December
Completed peer review for EJCSI-2026-03-024; registered on Web of Science / Publons
2025 December
Completed BCS Fellowship application (Experiential route)
2025 November
Published Beyond Silos: How DDI-AI Integration Is Redefining Cyber Resilience — CSO Online, on AI-driven predictive threat detection via DDI integration
2025 November
Submitted paper to IEEE QCE26Post-Quantum Zero-Trust Migration Framework (QZTMF), co-author John Martin (HCLTech Auckland), QNET track
2025 October
ISACA Journal article — Governing Agentic AI via MCP and COBIT 2019 / NIST CSF 2.0, co-authored with Praveen Kumar Mannam (Salesforce)
2025 September
Zero-trust data pipelines paper submitted to JRTCSE, co-authored with Sunil Kumar Mudusu (Church Mutual Insurance)
2025 August
Elevated to IEEE Senior Member — No. 101760715
2025 July
Appointed as HCLTech designated expert representative to the Cloud Security Alliance

Publications

Contextual Sensitivity Classification and Utility-Preserving Redaction for Enterprise LLM Deployments (CADLP)
Sunil Gentyala
IEEE ICIRCA 2026 — IEEE Xplore
SybilShield-Core: A Composite Trust Scoring Framework for Sybil Attack Mitigation in Permissionless Blockchain Networks
Sunil Gentyala, K Sanjeevaiah, Suresh Kumar Darisi
IEEE ICICDS 2026, Paper ID ICICDS-690 — IEEE Xplore
The Metamorphosis of Access: Strategic Imperatives for Identity 3.0 and Zero Trust Integration in Critical Infrastructure
Sunil Gentyala, Floriano Caprio, Sunil Kumar Mudusu, Suresh Kumar Darisi, Satish Kumar Allani
IEEE SmartNets 2026, EDAS #1571252869 — IEEE Xplore
A Zero-Trust Supply Chain Security Framework for Model Context Protocol-Based AI Systems
Sunil Gentyala, Ch. Srinivas, Raghu Dhumpati
IEEE ICCBI 2026 — DOI: 10.1109/ICCBI68589.2026.11619741
A Post-Quantum Security Framework for Model Context Protocol Using ContextGuard
Sunil Gentyala and co-authors
IEEE ICSCSA 2026 — accepted, conference Aug 19–21, 2026
A Unified Mathematical Framework for Secure Multi-Agent Large Language Model Pipelines (TRACE-MAS)
Sunil Gentyala, Y. Geetha Reddy, Manasa P. and others
IEEE ICSCSA 2026, Paper ICSCSA-168 — accepted, conference Aug 19–21, 2026
ARGUS: An Agentic Security Validation Framework for Retrieval-Augmented and Tool-Enabled Large Language Model Systems
Sunil Gentyala, N. Sudhakar Reddy, K. Chaitanya Deepthi
IEEE ICCVBIC 2026, Paper CMSS-0147 — accepted, conference Aug 19, 2026
CyberFuse-CI: Adversarially Resilient Vulnerability Detection Through Heterogeneous Multi-Source Data Fusion and LLM-Augmented Reasoning
Sunil Gentyala, Sunil Kumar Mudusu, Satish Kumar Allani
IEEE ICETCI 2026, EDAS #1571273793 — accepted, conference Aug 19–22, 2026
Governing Heterogeneous API Gateway Estates Through Policy-as-Code: An Engineering Management Perspective
Sunil Gentyala
IEEE TEMSCON GLOBAL 2026, EDAS #145 (1571270844)
AdaptFlow: A Self-Optimizing AI-Driven Data Pipeline Architecture for Real-Time Inference at Scale
Sunil Gentyala, Sunil Kumar Mudusu, Sreepal Reddy Bolla
IEEE ICETM 2026, Paper ID 225
Temporal Probabilistic Modeling with Uncertainty-Aware LSTM Networks for Self-Aware Fault Detection and Prognostics in Autonomous Aerospace Systems
Sunil Gentyala, Rakesh Prakash, Soujanya Jagadish
IEEE MetroAeroSpace 2026, EDAS #81 (1571263908)
Adaptive Neural Control for Multi-UAV Swarm Coordination: Trajectory Tracking, Collision Avoidance, and Wind Disturbance Rejection
Sunil Gentyala, Rakesh Prakash, Soujanya Jagadish
IEEE MetroAeroSpace 2026, EDAS #82 (1571263910)
Zero-Trust Data Pipelines for Enterprise AI Systems
Sunil Gentyala, Sunil Kumar Mudusu
JRTCSE, Vol. 14, No. 2.2, 2026 — DOI: 10.70589/JRTCSE.2026.14.2.2
Governing Agentic AI via Model Context Protocol and COBIT 2019 / NIST CSF 2.0
Sunil Gentyala, Praveen Kumar Mannam
ISACA Journal — under review, 2026
12 IEEE conference papers accepted in 2026 (4 published on IEEE Xplore), plus journal work. See IEEE Xplore author profile and ORCID for the complete record.
See all publications on Zenodo, ORCID, and the IEEE Xplore author profile.

Industry Articles

Sunil Gentyala
CSO Online, August 2026
Sunil Gentyala
SC World, March 2026
Sunil Gentyala
Cyber Defense Magazine, February 2026
Sunil Gentyala
CSO Online, February 2026
Sunil Gentyala
CSO Online, December 2025
Sunil Gentyala
CSO Online, November 2025

🎙Media Coverage & Podcast Features

Dark Reading — expert commentary on browser-centric zero-trust enforcement architecture
BiometricUpdate.com, May 2026 — quoted on enterprise AI agent infrastructure security gaps and deployment risks
Decoded: The Cybersecurity Podcast, December 2025 (41 min) — full episode based on CSO Online article • Apple Podcasts
LinkedIn, Asaf Nakash — names AegisSwarm-Core directly as "one of the few serious attempts to contain coordinated multi-agent systems" • companion Spotify episode on Context Window: AI Security Podcast
Agentic Threat Tracker, 24 July 2026 — incident-tracker entry on the CSA "Securing the Swarm" analysis, names AegisSwarm-Core directly ("introduces AegisSwarm, a proposed open-source reference implementation for zero-trust multi-agent security")
LinkedIn newsletter, Mariano Mattei (Founder & Principal AI Architect, Mattei Systems), August 2026 — Executive Insight and Recommended Action sections built around the CSO Online OAuth client ID spoofing article
IIM Calcutta alumnus — shares the CSO Online OAuth client ID spoofing article, reproducing its Figure 1 attack-and-detection workflow with attribution
NewesTek, August 2026 — republishes the CSO Online OAuth client ID spoofing article's Figure 1 attack-and-detection workflow with attribution
DevOps channel — links back to the CSO Online OAuth client ID spoofing article as the original source
HazeTec, August 2026 — summarizes the CSO Online OAuth client ID spoofing article, linking back to the original
Threads — shares the CSO Online OAuth client ID spoofing article