Twenty years in enterprise security teach you something certifications alone never will: the distance between a well-designed control and a resilient one is measured not in policy documents, but in decisions made under pressure, at scale, with incomplete information. That gap is where Sunil Gentyala's career has lived.
He is Lead Cybersecurity and AI Security Consultant at HCLTech, where he manages offshore and onshore resources spanning multi-cloud security (Azure, AWS, GCP), enterprise identity and access management, application security, and AI/ML security for Fortune 500 clients including Uber, Disney, and Royal Caribbean. He serves as HCLTech's designated expert representative to the Cloud Security Alliance.
As a scholarly researcher, his agentic AI security work has moved from internal tooling to externally cited reference material. AegisSwarm-Core, his zero-trust governance framework for autonomous multi-agent AI networks, was published by the Cloud Security Alliance and has been cited independently — including by security researcher Asaf Nakash as "one of the few serious attempts to contain coordinated multi-agent systems." His broader agentic AI portfolio spans the GSH Framework (Governed Security Hunting, threat hunting mapped to MITRE ATLAS and NIST CSF 2.0), TRACE-MAS (cryptographically secured multi-agent LLM pipelines), ARGUS (autonomous LLM vulnerability discovery), PRAVAL (agentic vulnerability assessment), and CausalNetTwin (causal digital-twin reasoning for network security) — alongside scholarly work on agentic AI governance published in the ISACA Journal and analyzed in CIO.com.
His post-quantum and quantum-adjacent security research addresses the migration problem enterprises are only beginning to confront. QuantumShieldEdge is a hybrid QKD-integrated federated learning framework for secure consumer IoT at the network edge (target venue, IEEE CCNC 2027), demonstrating 85.2% accuracy under 20% Byzantine participation versus 71.4% for vanilla FedAvg. ContextGuard-MCP-PQC, approved by IEEE ICSCSA 2026 and pending publication on IEEE Xplore once the conference concludes, applies RFC 9794's PQ/T hybrid terminology to Model Context Protocol across four security layers, hardening handshakes with hybrid ML-KEM/ML-DSA constructs against harvest-now-decrypt-later and downgrade attacks. His SC World analysis of enterprise post-quantum HTTPS migration is paired with hrpq-gap-scan, an open-source tool auditing HRPQ preload and cookie-scoping downgrade gaps. His research also extends into gate-based quantum computing itself: with Floriano Caprio, Matteo Tortora, and Paolo Soda, he co-authored a CIBB 2026 paper applying the Quantum Approximate Optimization Algorithm (QAOA) to clinical risk factor selection, executed on a 54-qubit superconducting quantum processor.
His research spans adversarial machine learning, MCP vulnerability analysis, post-quantum cryptography, and agentic AI governance. He holds over 20 years of enterprise PKI and security architecture experience and has published across CSO Online, Dark Reading, SC World, Cyber Defense Magazine, and BiometricUpdate.com. He holds a #FoundryExpert designation across IDG/Foundry publications (CSO Online, CIO.com, Computerworld) and has been featured on Decoded: The Cybersecurity Podcast.
He is an IEEE Senior Member (No. 101760715, ORCID: 0009-0005-2642-3479), active ISACA Professional Member (ID: 2297870), MBCS (British Computer Society, Professional Member No. 995177441), an ACM Professional Member (No. 6835079), a CIISec Affiliate (Chartered Institute of Information Security, No. 220270), and is pursuing IET Fellowship (FIET).
IEEE Xplore
A Multi-Stage NLP Framework for Enterprise Data Protection in Public LLM Interactions
Sunil Gentyala, Nimmagari Tejasri, Sunil Kumar Mudusu
Published
DLP
LLM Security
SybilShield-Core: A Composite Trust Scoring Framework for Sybil Attack Mitigation in Permissionless Blockchain Networks
Sunil Gentyala, K Sanjeevaiah, Suresh Kumar Darisi
Published
Blockchain
The Metamorphosis of Access: Strategic Imperatives for Identity 3.0 and Zero Trust Integration in Critical Infrastructure
Sunil Gentyala, Floriano Caprio, Sunil Kumar Mudusu, Suresh Kumar Darisi, Satish Kumar Allani
Published
Zero Trust
Critical Infrastructure
A Zero-Trust Supply Chain Security Framework for Model Context Protocol-Based AI Systems
Sunil Gentyala, Ch. Srinivas, Raghu Dhumpati
Published
MCP Security
Supply Chain
Agentic Security Validation Framework for Retrieval-Augmented and Tool-Enabled Large Language Model Systems (ARGUS)
Sunil Gentyala, N. Sudhakar Reddy, Kothapalli Chaitanya Deepthi, Pathapati Saroja, Kammara Venkatarangaiah Achari, Ruhisulthana Shaik
Published
LLM Security
A Post-Quantum Security Framework for Model Context Protocol Using ContextGuard
Sunil Gentyala, P. Krishna Sunil, Vamshi Lande, Akhila Kasturi, Suresh Kumar Darisi, Ruhisulthana Shaik
IEEE ICSCSA 2026, Paper ICSCSA-011 — approved, to be indexed on IEEE Xplore once the conference concludes (Aug 19–21, 2026)
Approved
Post-Quantum
MCP Security
A Unified Mathematical Framework for Secure Multi-Agent Large Language Model Pipelines (TRACE-MAS)
Sunil Gentyala, Y. Geetha Reddy, Manasa Pendyala, Vishnu Gatla, Sundarigari Manoj, Ruhisulthana Shaik
IEEE ICSCSA 2026, Paper ICSCSA-168 — accepted, conference Aug 19–21, 2026
Accepted
Multi-Agent
CyberFuse-CI: Adversarially Resilient Vulnerability Detection Through Heterogeneous Multi-Source Data Fusion and LLM-Augmented Reasoning
Sunil Gentyala, Sunil Kumar Mudusu, Praveen Kumar Mannam
IEEE ICETCI 2026, EDAS #1571273793 — accepted, conference Aug 19–22, 2026
Accepted
Vulnerability Detection
Governing Heterogeneous API Gateway Estates Through Policy-as-Code: An Engineering Management Perspective
Sunil Gentyala, Floriano Caprio, Praveen Kumar Mannam, Angajala Tejaswi, Rakesh Prakash, Akhila Kasturi
IEEE TEMSCON GLOBAL 2026, EDAS #145 (1571270844)
Accepted
API Security
AdaptFlow: A Self-Optimizing AI-Driven Data Pipeline Architecture for Real-Time Inference at Scale
Sunil Kumar Mudusu, Sreepal Reddy Bolla, Sunil Gentyala
Published
Data Pipelines
Temporal Probabilistic Modeling with Uncertainty-Aware LSTM Networks for Self-Aware Fault Detection and Prognostics in Autonomous Aerospace Systems
Rakesh Prakash, Soujanya Jagadeesh, Sunil Gentyala
Published
Aerospace
Adaptive Neural Control for Multi-UAV Swarm Coordination: Trajectory Tracking, Collision Avoidance, and Wind Disturbance Rejection
Rakesh Prakash, Soujanya Jagadeesh, Sunil Gentyala
Published
Aerospace
Other Peer-Reviewed Venues
Quantum-Assisted Clinical Risk Factor Selection for Diabetes Readmission Prediction
Floriano Caprio, Matteo Tortora, Paolo Soda, Sunil Gentyala
CIBB 2026 — Quantum Artificial Intelligence for Bioinformatics and Biostatistics track
Accepted
QAOA
Quantum Computing
Zero-Trust Data Pipelines for AI Systems: A Framework for Secure, Verifiable, and Auditable Data Engineering
Sunil Kumar Mudusu, Sunil Gentyala
Published
Zero Trust
Data Security
On Auditing MCP Deployments
Sunil Gentyala, Praveen Kumar Mannam
ISACA Journal — in editorial review, 2026
Under Review
AI Governance
MCP Security
ARIIA 2026 — 2nd International Conference on Augmented Reality, Intelligent Systems & Industrial Automation
Dayananda Sagar University, Bengaluru — Taylor & Francis / Routledge proceedings, December 2026
Technical Reviewer
12 manuscripts
IEEE ICETCI 2026 — International Conference on Emerging Techniques in Computational Intelligence
Mahindra University & École Centrale School of Engineering, Hyderabad — IEEE Computational Intelligence Society, August 2026
Peer Reviewer
3 manuscripts
NEleX 2026 — 2nd International Conference on Next Generation Electronics
VIT Vellore — co-sponsored by IEEE Madras Section, ANRF, May 2026
Reviewer
4 manuscripts
IDEA 2026
Reviewed via Microsoft CMT, May 2026
Reviewer
5 manuscripts
IEEE ICTMOD 2026
EDAS-managed review, August-September 2026
Reviewer
4 manuscripts
BTS-I2C 2026 — 3rd Beyond Technology Summit on Informatics International Conference
EDAS-managed review, September 2026
Reviewer
1 manuscript
The Cyber Defense Review
Reviewer
1 manuscript
IEEE Transactions on Information Forensics and Security
Reviewer
1 manuscript
European Journal of Computer Sciences and Informatics
Reviewer
2 manuscripts
Cloud Security Alliance
Working-group artifact review — see Timeline for individual credits
Reviewer
2 published artifacts
35 manuscripts reviewed across 10 venues since late 2025, spanning IEEE-sponsored conferences, an EDAS/CMT-managed program, a U.S. Army Cyber Institute journal, and Cloud Security Alliance working groups.
CSO Online
Sunil Gentyala
CSO Online, September 2026
GenAI Security
Pen Testing
RAG Security
Sunil Gentyala
CSO Online, August 2026
Identity Security
SOC Detection
Sunil Gentyala
CSO Online, May 2026
MCP Security
Zero Trust
Sunil Gentyala
CSO Online, April 2026
AI Coding Agents
Password Entropy
Sunil Gentyala
CSO Online, February 2026
Agentic AI
Prompt Injection
Sunil Gentyala
CSO Online, January 2026
Application Security
Supply Chain
Sunil Gentyala
CSO Online, December 2025
Browser Security
Zero Trust
Sunil Gentyala
CSO Online, November 2025
DDI
AI Security
Sunil Gentyala
CSO Online, October 2025
Post-Quantum Cryptography
Secure Messaging
Cloud Security Alliance
Sunil Gentyala
Cloud Security Alliance, August 2026 — companion to the CSO Online article above
Identity Security
SOC Detection
Sunil Gentyala
Cloud Security Alliance, June 2026
Multi-Agent AI
Zero Trust
Sunil Gentyala
Cloud Security Alliance, April 2026
Post-Quantum Cryptography
Zero Trust
Sunil Gentyala
Cloud Security Alliance, March 2026
MCP Security
Zero Trust
Sunil Gentyala
Cloud Security Alliance, January 2026
Browser Security
Zero Trust
Sunil Gentyala
Cloud Security Alliance, December 2025
Agentic AI
Prompt Injection
Sunil Gentyala
Cloud Security Alliance, November 2025
AI Security
Multi-Cloud
CIO
Sunil Gentyala
CIO, July 2026
Agentic AI
AI Governance
Sunil Gentyala
CIO, June 2026
AI Governance
Agentic AI
Sunil Gentyala
CIO, January 2026
AI Infrastructure
Cloud Security
Security Boulevard
Sunil Gentyala
Security Boulevard, June 2026
Threat Modeling
Cyber Defense
Sunil Gentyala
Security Boulevard, January 2026
LLM Security
Data Protection
Sunil Gentyala
Security Boulevard, November 2025
Prompt Injection
AI Security
Cyber Defense Magazine
Sunil Gentyala
Cyber Defense Magazine, April 2026
Zero Trust
Cyber Defense
Sunil Gentyala
Cyber Defense Magazine, February 2026
Agentic AI
CISO Strategy
SC World
Sunil Gentyala
SC World, July 2026
Post-Quantum Cryptography
Browser Security
Sunil Gentyala
SC World, March 2026
MCP Security
Zero Trust
LinkedIn, CSO Online (official account), September 2026 — promoting his GenAI/LLM/RAG pen-testing guide; CSO Online editor Ed Murray engaged directly in the comments, asking how conventional AppSec testing should adapt to probabilistic LLM outputs without generating false positives
Editor Engagement
GenAI Security
LinkedIn, Cloud Security Alliance (official account), August 2026 — CSA's own comment thanks its "subject matter reviewers who always help us improve our work," naming Sunil Gentyala directly alongside the review team
Named by CSA
Post-Quantum Cryptography
Dark Reading — expert commentary on browser-centric zero-trust enforcement architecture
Cited
Browser Security
BiometricUpdate.com, May 2026 — quoted on enterprise AI agent infrastructure security gaps and deployment risks
Quoted
Agentic AI
Decoded: The Cybersecurity Podcast, December 2025 (41 min) — full episode based on CSO Online article •
Apple Podcasts
Podcast Feature
Zero Trust
LinkedIn, Asaf Nakash — names
AegisSwarm-Core directly as "one of the few serious attempts to contain coordinated multi-agent systems" • companion
Spotify episode on
Context Window: AI Security Podcast
Cited
Multi-Agent Security
Agentic Threat Tracker, 24 July 2026 — incident-tracker entry on the CSA "Securing the Swarm" analysis, names
AegisSwarm-Core directly ("introduces AegisSwarm, a proposed open-source reference implementation for zero-trust multi-agent security")
Cited
Multi-Agent Security
LinkedIn newsletter, Mariano Mattei (Founder & Principal AI Architect, Mattei Systems), August 2026 — Executive Insight and Recommended Action sections built around the CSO Online OAuth client ID spoofing article
Cited
OAuth Security
IIM Calcutta alumnus — shares the CSO Online OAuth client ID spoofing article, reproducing its Figure 1 attack-and-detection workflow with attribution
Cited
OAuth Security
NewesTek, August 2026 — republishes the CSO Online OAuth client ID spoofing article's Figure 1 attack-and-detection workflow with attribution
Cited
OAuth Security
DevOps channel — links back to the CSO Online OAuth client ID spoofing article as the original source
Cited
OAuth Security
HazeTec, August 2026 — summarizes the CSO Online OAuth client ID spoofing article, linking back to the original
Cited
OAuth Security
Threads — shares the CSO Online OAuth client ID spoofing article
Cited
OAuth Security