How I can help your team.
Three focused services, built around the same idea - finding what attackers would find before they do. Pick the right starting point below, or book a call if you're not sure where to begin.
Penetration testing
Web, API, internal and external. Manual exploitation backed by clear, actionable reports.
Learn more →- ▸ Executive summary
- ▸ Technical findings report
- ▸ Retest after fixes
ISO 27001 consulting
Build and audit your ISMS. Bureau Veritas certified, hands-on with documentation and controls.
Learn more →- ▸ Gap assessment
- ▸ SoA & documentation
- ▸ Internal audit reports
Security advisory
Ongoing consulting for teams without a full-time security hire. DevSecOps and architecture reviews.
Learn more →- ▸ Monthly retainer hours
- ▸ On-call Slack access
- ▸ Quarterly reviews
Every engagement, in four steps.
From the first call to the final report.
Discovery
Free 30-min call to understand what you're working on.
Scoping
Clear scope, timeline, and fixed quote - usually within a week.
Engagement
The actual work, with weekly updates and a shared Slack channel.
Delivery
Final report, debrief call, and a free retest where applicable.
Not sure which service fits?
Book a free 30-minute call. We'll figure it out together.