I am an offensive security engineer and penetration tester with three years of hands-on experience assessing web applications, APIs, Active Directory environments, mobile applications, wireless networks, and infrastructure.
I currently lead penetration testing activities for Azerbaijan Railways, where I coordinate assessment scope, findings, remediation priorities, and communication with technical and business stakeholders.
My work combines offensive security with source code review, red teaming, and security operations improvement. I help organizations translate technical vulnerabilities into risk-based findings and practical remediation actions.
I have experience deploying and tuning enterprise security solutions, including WAF, SIEM, XDR, and DDoS protection platforms. I have worked with F5 BIG-IP, Radware DefensePro, and Cloudflare in collaboration with vendor and customer teams.
I am proficient in Python, PowerShell, Bash, C, C++, C#, JavaScript, and Kotlin, and work across Linux, Windows, and macOS environments. My offensive security toolkit includes Nmap, Burp Suite, and Metasploit.
I hold OSWE, OSCP, OSWP, CRTO, and F5 Certified Administrator certifications. I also participate in cybersecurity competitions, have won national CTF and hackathon events, and published research on Pegasus spyware mitigation strategies.