Back to Developers
Trinadharaju Vudimudi

Trinadharaju Vudimudi

Security Engineer

Hyderabad, India 7+ yrs exp 90 ยท Outstanding

About

Accomplished Security Engineer with 7+ years of expertise in incident response, digital forensics, and threat mitigation. Adept at leading investigations, resolving security incidents, and fortifying systems against evolving cyber threats. Demonstrated success in collaborating with senior leadership to design and execute robust security strategies that safeguard organizational assets.

Skills & Expertise (25)

Microsoft Sentinel Advanced
9.0/10
5
Years Exp
Azure Sentinel Advanced
8.5/10
5
Years Exp
KQL Advanced
8.5/10
5
Years Exp
Active Directory Advanced
8.0/10
7
Years Exp
Splunk ES Advanced
7.5/10
4
Years Exp
MITRE ATT&CK Advanced
7.0/10
5
Years Exp
CrowdStrike Intermediate
6.5/10
2
Years Exp
Google Chronicle Intermediate
6.5/10
2
Years Exp
Microsoft Intune Intermediate
6.5/10
3
Years Exp
Dashboard Customisation Intermediate
6.0/10
4
Years Exp
Advanced Data Analytics Intermediate
6.0/10
4
Years Exp
AWS Intermediate
6.0/10
3
Years Exp
Microsoft Defender ATP Intermediate
6.0/10
3
Years Exp
Zscaler Intermediate
6.0/10
3
Years Exp
ServiceNow Intermediate
6.0/10
3
Years Exp
Microsoft Entra ID Intermediate
5.5/10
3
Years Exp
Bitlocker Intermediate
5.0/10
3
Years Exp
Office 365 Intermediate
5.0/10
3
Years Exp
MS Purview Defender IAM roles Rapid-7 MS Defender 365 Visualisation QRadar

Work Experience

Security Engineer

Capgemini

Apr 2025 - Present

Developed and maintained Microsoft Sentinel detection and monitoring use cases to identify suspicious user, endpoint, network, and cloud activities. Created and tuned analytics rules using KQL to detect security threats and reduce false-positive alerts. Engineered detection use cases for scenarios such as multiple failed logins, impossible travel, suspicious PowerShell activity, privilege escalation, malware indicators, anomalous sign-ins, and data exfiltration. Integrated and monitored security data from Microsoft Entra ID, Microsoft Defender, Zscaler, Azure resources, Windows endpoints, and other security sources. Developed Sentinel workbooks and dashboards to provide visibility into security incidents, alert trends, and operational metrics. Implemented automation rules and playbooks to automate repetitive incident-response activities and notification workflows. Performed continuous use-case tuning, threshold optimization, and false-positive reduction based on incident trends and analyst feedback. Performed end-to-end security incident triage, investigation, containment, remediation, and closure using Microsoft Sentinel and integrated security tools. Investigated security alerts by correlating user, endpoint, authentication, network, and cloud logs to determine the scope and potential impact of incidents. Conducted initial analysis of suspicious activities including account compromise, malicious URLs, phishing, malware, abnormal authentication, and endpoint security events. Used KQL queries to perform threat hunting, identify indicators of compromise (IOCs), and establish incident timelines.

Security Engineer

Urjanet

Jul 2022 - Mar 2025

Monitoring, analysing, and responding to infrastructure threats, vulnerabilities, and risks. Collecting the logs of all the Windows, Linux, and network devices, and analysing the logs to find suspicious activities. Experienced in creating conditional access policies and fine-tuning the ASR rules in Defender 365 and Intune. Handling spam and phishing email submissions from end-users, taking containment steps by further investigating domains and IPs to recommend proper blocking, and creating SPF, DKIM, and DMARC records for the domains to protect against spoofing. Good hands-on experience in creating playbooks, workbooks, and repositories in Azure Sentinel. Experience in handling and deploying the Defender agents into servers to onboard into Defender, and troubleshooting agent connectivity issues using the MDE Client Analyser. Experienced in creating conditional access policies and fine-tuning the ASR rules in Defender 365 and Intune. Experience in working on host isolation, advanced threat analysis, and using Microsoft Defender ATP EDR. Configure and manage dashboards, notebooks, data connectors, and playbooks in Azure Sentinel. Hunt security threats using Azure Sentinel. Proactively participate in the creation and enhancement of processes and procedures, such as Security Playbooks. Experience in providing end-to-end support to enterprise counterparts, identifying the root cause of sophisticated enterprise initiatives, and implementing endpoint security solutions, such as Microsoft Defender ATP. Extensive experience in conducting in-depth investigations by collecting package data and live response in the Defender portal. Analyse and investigate the alerts in the SOC monitoring tool to report any abnormal behaviours, suspicious activities, traffic anomalies, etc. Provided expert advice on the latest cybersecurity trends and threats, guiding company strategy and defence mechanisms. Experienced with Microsoft Entra ID, Active Directory, and endpoint management solutions.

Security Analyst

3i Infotech

May 2016 - Dec 2019

Good knowledge and working experience in central logging, log management, and Splunk SIEM architecture. Working on an email fraud defence console to secure the environment from hackers, fraudsters, and other threats. Experience in Data Analytics, Advanced Data Analytics, Visualisation, Advanced Visualisation, Dashboard Customisation, and Advanced Dashboard Customisation in Splunk. Escalating security incidents based on the client's SLA and providing meaningful information related to security incidents by conducting in-depth analyses of events, which makes the customer's business safe and secure. Taking the appropriate action based on advisories, IOCs, identifying threat actors using Mitre ATT&CK, and coordinating with the respective team to block the IOCs. Participate in hunt missions using threat intelligence, analysis of anomalous log data, and the results of brainstorming sessions to detect and eradicate threat actors. Configure and manage dashboards, notebooks, data connectors, and playbooks in Azure Sentinel. Hunt security threats using Azure Sentinel. Conduct in-depth analysis of security events, collaborating directly with customers to escalate, and thoroughly investigate incidents. This involves understanding the scope, impact, and root cause of incidents to tailor the response effectively. Experience in vulnerability assessments. Evaluate and prioritise identified vulnerabilities for remediation by collaborating directly with customers. Good hands-on experience in creating virtual machines, deploying endpoint agents on them, and managing IAM roles in an AWS environment. Monitor, respond to, and analyse trends in workstations and servers for security-related events. Perform daily, weekly, and monthly scheduled tasks for Defender ATP. Knowledge of email security threats and security controls, including experience analysing email headers. Good knowledge of MITRE ATT&CK, the diamond model, and other cyber threat kill chains. Working experience in a SOC environment with hands-on experience using the SIEM Splunk tool, which includes log analysis, fine-tuning existing correlation rules to reduce false positives, and responding to incidents. Experience in creating endpoint health check reports, vulnerability reports, and creating SOPs according to the latest trends. Providing threat and vulnerability analysis, as well as security logs from a large number of security devices, in addition to investigating incident response support when there is a threat. Extensive experience in conducting in-depth investigations by collecting package data and live response in the Defender portal. Good hands-on experience in the integration of AWS and Azure security, implementing the policies, and fine-tuning the rules. Investigating and monitoring network traffic, IDS, firewall, and endpoint security logs using IBM QRadar and Splunk. Insider threat and APT detection, or the understanding and differentiation of intrusion attempts, and false alarms.

Education

Bachelor of Science in Computer Science and Engineering - BHIMAVARAM INST. OF ENGG & TECH

- 2017 ยท Afghanistan

Certifications

No certifications added yet

Interested in this developer?

Profile Score Breakdown

๐Ÿ“ท Photo 10/10
๐Ÿ“„ Resume 10/10
๐Ÿ’ผ Job Title 10/10
โœ๏ธ Bio 10/10
๐Ÿ› ๏ธ Skills 20/20
๐ŸŽ“ Education 10/10
โฑ๏ธ Experience 15/15
๐Ÿ’ฐ Rate 0/5
๐Ÿ† Certs 0/5
โœ… Verified 5/5
Total Score 90/100

Profile Overview

Member sinceOct 2026