About
About Me
Hi, I’m Tofig Orujov 👋
Penetration Testing Enthusiast
Contact:
tofiq.orucov001@gmail.com
Skills & Interests
- Penetration testing (Windows/Linux, Active Directory, Web Apps)
- Vulnerability assessment & exploitation
- Network security & hardening
- Privilege escalation techniques
- Writing technical walkthroughs and guidesa
Education
Azerbaijan Technical University (2023-2025)
Master’s in Multiprocessor Systems and Networks
Baku State University (2019-2023)
Bachelor’s in Mathematics
Certifications
- Certified Penetration Testing Specialist (HTB CPTS) - Hack The Box (2025)
- Red Hat Certified System Administrator (RHCSA) - Red Hat (2023)
- Fortinet NSE 4 - Fortinet (2023)
- CompTIA A+ - CompTIA (2023)
SOC Analyst @ Cyberpoint MSSP (Oct 2025 – Present)
- Performed initial triage and analysis of security alerts generated by SIEM (Splunk, ELK Stack) and EDR (CrowdStrike Falcon) platforms
- Monitored security dashboards and incident queues to identify, investigate, and categorize potential threats
- Gained hands-on experience with a SOAR platform (Cortex XSOAR) for security alert enrichment and incident ticket management
- Followed standard operating procedures (SOPs) and playbooks to resolve low-priority incidents and manage false positives
- Actively learning and familiarizing with the organization’s cybersecurity technology stack and incident response workflows
Professional Experience
System Administrator @ Azerbaijan State Pedagogical University (Feb 2024 – Sep 2025)
- Implemented security controls (firewalls, AV, network policies)
- Automated routine tasks with custom scripts
- Managed system infrastructure and user permissions
- Provided technical support and troubleshooting
- Monitored and optimized system performance
Cybersecurity Journey
I actively practice offensive security on:
On my blog, I document:
- Detailed write-ups of HTB/VulnLab machines
- Penetration testing methodologies
- Vulnerability research findings
- Practical security tips and tricks