BooTeen

Offensive Security Engineer | Penetration Tester

About Me

Full Name: Nguyen Hoang Phi Long (but you can call me Long)

Aliases: BooTeen | Offensive Security Engineer | Penetration Tester

Skills

C/C++ | Python | PHP | JavaScript | Bash | PowerShell | SQL | Docker | CI/CD

nmap | fuff | gobuster | Sublist3r | Wireshark | Burp Suite | Metasploit | hashcat | hydra | JohnTheRipper | impacket | Responder | BloodHound | certify | LaZagne | Rubeus | Ligolo-Ng | reaver | aircrack-ng | wash | SysReptor | Nessus

MITRE ATT&CK | OWASP Top 10 | PTES | GDPR | CCPA | ISO 27000 family | PCI DSS

Cisco | Fortinet | Trellix | Tenable | Qualys | Forcepoint | OpenText | DataSunrise

Experience

Netwave LLC

Offensive Security Engineer | Aug 2022 – Present | Kyiv, Ukraine

netwave.ua

  • Adversary Simulation: Planned and executed external, internal, and hybrid penetration tests, identifying exploitable paths in complex infrastructures.
  • Custom Exploits & Tools: Developed tailored payloads, phishing kits, and automation scripts to support red team operations and vulnerability validation.
  • Security Posture Assessment: Delivered prioritized risk reports with actionable mitigation strategies, reducing exposure to critical threats by 30%.
  • Collaborative Remediation: Worked with blue teams and developers to remediate findings, improving mean time to resolution (MTTR).
  • Red Team Engagements: Simulated APT scenarios and initial access attacks, leveraging social engineering and living-off-the-land techniques.
  • Toolchain Integration: Integrated and maintained offensive and defensive tools including Cobalt Strike, Burp Suite Pro, BloodHound, and custom scripts.
  • Government and Enterprise Support: Conducted assessments of critical infrastructure and provided rapid security hardening for national service continuity.

Netwave LLC

Network Security Support Engineer | Feb 2021 – Aug 2022 | Kyiv, Ukraine

netwave.ua

  • 24/7 Operational Support: Monitored mission-critical networks round-the-clock.
  • Offensive Assessments: Conducted pentesting with tailored remediation strategies.
  • Strategic Consultations: Advised on compliance (GDPR, CCPA, ISO 27001), reducing audit non-conformities by 25%.
  • Large-Scale Projects: Led upgrades for 300+ sites and 1,500+ devices.
  • Incident Response & DLP: Investigated 5,000+ incidents and deployed DLP policies to reduce recurrences.
  • Tool Integration: Implemented Cisco, Fortinet, Tenable, Qualys, Forcepoint, and SysReptor, improving threat detection by 40%.
  • Government Collaboration: Supported government infrastructure with rapid response and redundant WiFi during blackouts.

Wirelane GmbH

Cyber Security Specialist | Feb 2023 – Aug 2023 | Munich, Germany

wirelane.com

  • Web & Container Security: Safeguarded 1000+ user accounts with comprehensive pentesting.
  • Docker Optimization: Reduced container image size by 67%, boosting performance.
  • ISO 27002 Compliance: Developed and enforced security policies, enhancing resilience by 40%.
  • SDLC Integration: Integrated security checks early in CI/CD, reducing remediation time by 40%.

Wirelane GmbH

Junior Embedded Software Developer | Aug 2022 – Dec 2022 | Berlin, Germany

wirelane.com

  • Hardware Security: Conducted hardware penetration tests on charging stations, remediating firmware vulnerabilities for OCTT compliance.
  • Automated Testing: Developed Python-based OCPP tests, achieving 100% OCTT compliance.
  • Efficiency Gains: Improved charging station software by 15%, reducing costs.

Key Achievements

Areas of Expertise

Offensive Security & Pentesting

Network & Infrastructure Security

Compliance & Policy

Technical Tools & Scripting

Education

National Aviation University | Bachelor's in Information and Communications System Security | Sep 2017 – Jul 2021

nau.edu.ua

Relevant Coursework: Network Security, Cryptography, Database Security, Secure Software Development, Wireless & Telecommunication Systems

Certifications

Languages