At ONFIDO, I designed centralized logging architecture that brought AWS, application, and infrastructure telemetry together. I also built behavioral detections in Splunk and automated investigation and containment playbooks using Splunk SOAR.
I led cloud and application incident investigations and threat-hunting activities, establishing repeatable playbooks and response standards for engineering teams. I embedded preventative security checks into Terraform workflows and performed threat modeling for new features and architectural changes.
Earlier, at QUADRI CONSULTING, I performed penetration testing and security assessments across applications and infrastructure. I also taught cybersecurity and digital forensics, including training students through Azerbaijan’s National Cybersecurity Training Programme.

