Penetration Tester | Web App Security Specialist
I help businesses find and fix security gaps before attackers do — OWASP Top 10 vulnerabilities, misconfigurations, exposed panels, weak SSL/headers, and CMS-specific flaws (WordPress, etc.). Every engagement ends with a clear, jargon-free report: what's broken, how bad it is, and exactly how to fix it.
Tools I work with: Burp Suite, Nmap, Metasploit, Nessus, Wireshark.
Work Terms
Available for both short-term audits and ongoing engagements, with flexible hours to accommodate US, UK, and EU time zones for calls and check-ins.
Communication: I respond within 24 hours (usually much faster) and keep clients updated at each stage — scoping, testing, and final report.
Process: Every engagement starts with a quick scope discussion (what's being tested, any constraints), followed by testing, and ends with a clear written report — vulnerabilities found, severity, and step-by-step fixes. No technical jargon dump.
Payment: Milestone-based for larger engagements; full payment upfront for smaller, fixed-scope audits. Rates depend on scope — happy to quote after a short scoping call.
Revisions: One round of report clarification/follow-up included at no extra cost if something needs more explanation.
Confidentiality: All findings and client data are kept strictly confidential. NDA available on request before testing begins.