Penetration testing for web applications and APIs
Realistic testing of technical attack paths with clear risk ratings and prioritised recommendations.
View serviceIT-Security Consulting
I provide support where applications, development processes or security decisions need to be reliably tested and improved.
Focus
Realistic testing of technical attack paths with clear risk ratings and prioritised recommendations.
View serviceMake security decisions earlier in the development process without unnecessarily blocking releases.
View serviceTraining and workshops based on real technologies, findings and project risks.
View serviceAt the beginning I clarify the goal, scope, roles, approvals and the desired decision-making needs. During implementation, I coordinate relevant findings with the responsible people and report critical risks at an early stage. At the end you will receive comprehensible findings, clear priorities and concrete next steps for development and management.
I test mobile applications and selected infrastructure according to scope and project requirements as a supplement to a suitable penetration test.
View the complete engagement process. The synthetic sample report gives a concrete impression of the deliverable.
Partner model
For consulting engagements and technical assessments, I take on clearly defined tasks with agreed roles, authorisations and communication channels.
Technical testing, evidence assessment and white label support with clearly defined responsibilities.
View partnership optionsAdditional services
These services complement my core offering where they meaningfully support a specific security objective.
Triage, technical assessment and clear processes for external security reports.
View service