Hello! I’m Saif Aboalnaga, a Cybersecurity Professional and Junior Penetration Tester specializing in network, web, and API security, as well as Governance, Risk, and Compliance (GRC).
I have hands-on experience in penetration testing, digital forensics, and GRC, gained through professional internships, specialized bootcamps, and real-world simulations. I also actively participate in Capture the Flag (CTF) competitions — securing 3rd place at the eFinance CTF and ranking in the top 2% globally on TryHackMe.
I’m proficient with tools like Burp Suite, Metasploit, Wireshark, Nmap, and Nessus, and hold multiple industry certifications including INE eJPT (Junior Penetration Tester), eCDFP (Digital Forensics Professional), and (ISC)² Certified in Cybersecurity (CC).
🔒 What I can help you with:
Web & Network Penetration Testing
Vulnerability Assessment & Reporting
Incident Analysis & Digital Forensics
GRC and ISO 27001 Compliance Support
Security Awareness & Best Practices
I’m passionate about helping organizations strengthen their cybersecurity posture through ethical testing and proactive defense. Let’s work together to make your systems more secure and resilient!
Ethical Hacking
Penetration Testing
Vulnerability Assessment
Network Penetration Testing
Web App Penetration Testing
Information Security
Cybersecurity Monitoring
Network Security
Digital Forensics
Compliance Consultation
Governance, Risk Management & Compliance
Information Security Audit
Information Security Awareness
Risk Management
Incident Management
Mostafa A.
Cairo, Egypt
$70/hr
5.0
49 jobs
✅ Top Rated Expert ✅ Senior Penetration Tester ✅ Digital Forensics ✅ Cyber Investigation
I help companies and individuals secure their systems with proven cybersecurity expertise. I'm a cybersecurity expert and Information Security projects manager and founder at XEye Security, I have more than 13 years of work experience including Penetration Testing, Digital Forensics, and OSINT, and I am also a Top-Rated freelancer on Upwork with a 100% Job Success Score.
⇨ Certificates we hold: CEH, OSCP, OSCP+, CRTP, OSEP, eMAPT, CRTE, GCIA, GCIH, SSCP, GRISC, CISA, CCSP, CompTIA Security+, and CompTIA Pentest+.
Together with my teams from XEye Security, we will provide you the following services with highest quality and best results:
• Penetration Testing (Manual and Automated) to identify and fix vulnerabilities with high quality official report from XEye Security and in compliance with all security standards.
• Digital Forensics and Cyber Investigations to uncover the hidden attacks, root cause, the evidence and we will support you in legal proceedings.
• Cyber Intelligence and OSINT (Open-Source Intelligence) to reveal information about intruders or cyber criminals who committed any blackmail or cybercrime against you. we will collect and reveal evidence, detect threats and also data breaches.
• Reputation Management to protect, repair, and enhance your business online digital image.
• Dark Web Monitoring and Investigation to detect and find all breached data.
• Social Media Accounts Recovery, we recover lost social media accounts as far as it belongs to you.
• Email Security and Reputation Enhancement to protect your emails and domains from all kinds of cyber threats and ensuring that your emails not marked as spam.
• Information Security Compliance Consulting, Audits for SOC 2, ISO 27001, and ISO 27701.
At XEye Security, we have worked with renowned enterprises and small and medium sized companies around the US, the EU, the MENA, and South Africa and we have provided high-quality services, and solutions allowing our clients to stay secure and compliant.
We have a sub company named XEye Academy, we provide private trainings with certified and skilled expert trainers for almost all cybersecurity majors with dedicated labs and support, and in partnership with PECB, we provide internationally recognized certification courses such as ISO/IEC 27001 Information Security Management, ISO/IEC 27002 Controls Implementation, ISO/IEC 31000 Risk Management, and specialized Cybersecurity Management programs including Cybersecurity Foundation and Lead Cybersecurity Manager.
⇨ Why choose XEye Security?
• Proven expertise in all cybersecurity majors
• Global reach with diverse industry experience
• Affordable, accessible cybersecurity solutions and services
• Client‑ready and high-quality standards
• More than 97% client satisfaction rate
• Your cybersecurity is our top priority
Please reach out to me through Upwork, I and my team are happy to support you and provide you with the best services at any time.
Ethical Hacking
Penetration Testing
Vulnerability Assessment
Digital Forensics
Security Assessment & Testing
Web App Penetration Testing
Manual Testing
Kali Linux
Information Security
SOC 2
ISO 27001
SOC 2 Report
Cloud Security
Security Engineering
OWASP
Andrew M.
Cairo, Egypt
$5/hr
5.0
2 jobs
🔐 Penetration Testing Expertise
I specialize in various penetration testing methodologies, ranging from reconnaissance and enumeration to exploitation and post-exploitation phases. My self-taught journey has allowed me to dive deep into:
Network Penetration Testing: Identifying open ports, services, and vulnerabilities using tools like Nmap, Wireshark, and Metasploit.
Web Application Testing: Knowledge of the OWASP Top 10 vulnerabilities, with hands-on experience in finding and exploiting web application security flaws like SQL injection, XSS, and CSRF.
System Exploitation: Familiar with exploiting misconfigurations, weak credentials, and outdated systems on Linux and Windows environments.
🔧 Tools and Techniques
I have practical experience with a wide range of industry-standard tools used in penetration testing:
Nmap: Network scanning and port enumeration.
Metasploit Framework: Exploitation and post-exploitation.
Burp Suite: Web application vulnerability identification.
Wireshark: Network protocol analysis and traffic monitoring.
OpenVAS & Nessus: Vulnerability scanning and reporting.
SQLMap: Automated SQL injection and database testing.
Hydra: Brute force attack tools for login and credential testing.
John the Ripper & Hashcat: Password cracking and analysis.
📚 Self-Study & Certifications (In Progress)
While I’m still pursuing formal certifications, my continuous learning path has exposed me to the same concepts and knowledge covered in recognized programs such as:
TryHackMe: Participated in Capture the Flag (CTF) challenges, working on various real-world penetration testing scenarios.
Hack The Box: Completed multiple labs focused on web and network exploitation, privilege escalation, and post-exploitation.
YouTube & Blogs: Regularly follow prominent cybersecurity experts and resources for up-to-date learning and practical knowledge.
🖥️ Personal Projects
To further sharpen my skills, I’ve developed and maintained a personal cybersecurity lab to simulate penetration testing environments. Here are a few highlights of my hands-on projects:
Home Lab Setup: Created virtual environments using VirtualBox, simulating networks and vulnerable machines such as Metasploitable and DVWA for practice. Conducted vulnerability scans and exploited systems using tools like Nmap, Nessus, and Metasploit.
CTF Participation: Regularly engage in Capture the Flag events on TryHackMe and Hack The Box, successfully identifying and exploiting vulnerabilities in both Linux and Windows environments.
Scripting Automation: Developed basic Python scripts to automate repetitive tasks like scanning and vulnerability assessment.
🕵️♂️ Key Services I Offer
Whether you’re a small business or an individual looking to secure your systems, I can provide valuable services to enhance your security posture:
Web Application Penetration Testing: Comprehensive testing to identify and exploit web vulnerabilities, including SQL injection, XSS, and broken authentication mechanisms.
Network Penetration Testing: Identify open ports, vulnerable services, and misconfigurations in your network infrastructure.
Vulnerability Assessment: A detailed report on potential vulnerabilities within your systems, offering insights and suggestions on remediation.
Password Auditing and Brute Forcing: Ensure that your systems have strong, secure password policies by testing them against various brute force methods and password cracking techniques.
Wireless Network Testing: Evaluate the security of your wireless infrastructure, including encryption and access point vulnerabilities.
Security Consultation: Provide strategic guidance on how to strengthen your security practices, including best practices in securing web applications, networks, and user data.
🧠 Continuous Learning & Future Goals
Cybersecurity is an ever-evolving field, and I pride myself on being a lifelong learner. I regularly participate in online courses, hands-on labs, and CTFs to stay current with the latest attack vectors, vulnerabilities, and defense strategies. I’m currently working towards formal certifications such as:
CompTIA Security+
Certified Ethical Hacker (CEH)
Offensive Security Certified Professional (OSCP)
I am committed to continuously expanding my knowledge and refining my skills to provide high-quality cybersecurity services.
🚀 Why Choose Me?
While I may be at the beginning of my career in cybersecurity, my enthusiasm, dedication, and hands-on experience set me apart. Here’s why you should consider me for your next project:
Self-Motivated and Fast Learner: I have developed a strong technical foundation through self-study and practical experience, giving me the ability to adapt to new tools and technologies quickly.
Passion for Cybersecurity: I am deeply passionate about identifying vulnerabilities and helping others secure their systems. My work is driven by curiosity and a desire to protect against cyber threats.
Attention to Detail: Cybersecurity requires thorough analysis an
Penetration Testing
Vulnerability Assessment
Information Technology
Network Design
Problem Solving
Operating System
Troubleshooting
Internet of Things
OWASP
Network Security
Security Testing
Risk Analysis
Risk Assessment
Kali Linux
Security Analysis
Hassan H.
Alexandria, Egypt
$70/hr
4.9
28 jobs
⚠️DISCLAIMER ⚠️: I DON'T ACCEPT ILLEGAL WORK AND I DO NOT HACK MOBILE PHONES OR ACCOUNTS OR ANY TYPE OF THIS WORK
As a dedicated Computer Engineering student, I've invested years in mastering ethical hacking, web app penetration testing, and conducting OSINT investigations, starting my journey in 2018. Through practical application and thorough testing of these skills, I've evolved into a versatile professional, excelling as a hacker, proficient web app penetration tester, adept vulnerability assessment specialist, and detail-oriented OSINT investigator. My track record speaks for itself, boasting a pristine reputation and a flawless 100% success rate across all Jobs
FAQ
Q: Am I certified 🤔?
A: yes,I am certified web app Penetration tester with eWPTX from INE
Q: What tools do i use in Penetration testing?
A: That depends on the job, so sometimes i use manual scans and exploits and sometimes i use tools like (Nmap, BurpSuite, Metasploit, Nessus, SQLmap, OpenVAS, WPScan, Nikto, TestSSL)
Ethical Hacking
Penetration Testing
Vulnerability Assessment
System Security
Cybersecurity Management
Digital Forensics
Web Testing
Cybersecurity Monitoring
Black Box Testing
Article Writing
Aircrack-ng
Web App Penetration Testing
Website Security
Internet Security
Linux System Administration
Mohamed Y.
Giza, Egypt
$40/hr
5.0
116 jobs
I'm a Penetration Tester and Cyber Security Specialist who is a professional in evaluating the security posture of Web-Applications (Websites) and ensuring the security of personal clients' online identities, accounts, devices, and networks, I've possessed my current knowledge through 3+ years of self-study and research plus 2+ years of work in the industry, protecting clients on a personal level and running vulnerability assessments against business websites, always leaving positive impression and impact, I hold a great record of being able to expertly provide the following services:
- Perform comprehensive security checkups on Emails and Phone numbers and pinpoint security holes which often lead victims to be hacked with zero interaction nor awareness from them.
- Assist in Account Recovery (Ex. Instagram, Facebook)
- Educate thoroughly on the findings and remediations for a vulnerable target, equipping clients with enough information to trust themselves as they continue to utilize the technologies as normal with no fear of being targetted by hackers.
- Investigate and educate on online frauds/scams, especially crypto ones, why and how they work, and how to distinguish between legit and not legit easily.
- Clean up networks and devices from viruses/malware and ensure optimal patching for security.
- Report fraud websites that impersonate legit businesses for a takedown.
IMPORTANT: When it comes to cybersecurity-related services, there is a number of scammers not to be underestimated, whether within or outside of Upwork, therefore stay vigilant and keep in mind the following,
1. If you were scammed online via crypto, there's no one out there with the right to give a guarantee that they will be able to recover it for you despite how well furnished the so-called hacker's portfolio appears to be, the chance remains very slim and you should only pursue this kind of service for the sake of leaving no stone unturned knowing the high probability of failure, and you should only select a freelancer with a reputable profile and reviews to back up their activity because scammer accounts are usually fresh with no reviews and no verified ID, feel free to consult me to evaluate that.
2. Same applies to the request of hacking an account, there are complicated caveats that explain why it DOES NOT work the way you think it does but to keep it short, if you want someone's account hacked, aside from it being illegal and unethical and isn't the type of "service" I provide, the chance for it to work is about 1% to begin with, again, I'm available for consultation, account recovery is a different subject with a higher probability for success as long as it's your own account that was lost/hacked.
Ethical Hacking
Penetration Testing
Vulnerability Assessment
Security Assessment & Testing
Security Testing
Internet Security
Network Penetration Testing
Website Security
Information Security Consultation
Network Security
System Security
Information Security
Malware Removal
Mahmoud A.
Cairo, Egypt
$15/hr
5.0
9 jobs
My name is Mahmoud Magdy, I am an ethical hacker and a pentester.
I simply love hacking, but don’t get me wrong, as I said I am ethical.
I am an expert at Cyber Security Penetration testing and QA Testing, and I’ve got many years of experience. I am currently working at Procabnow as a Pentester and QA Software Testing Engineer.
- Certified ethical hacker.
- CTF player (my rank: 58th in all of Arab).
- Bug Hunter on many website bounty programs.
-Some tools I use: BurpSuite Professional, Nmap, Knock.py, Metasploit, writing vulnerability scan by python .
-Networking: Wireshark, MITMF, ettercap-ng, programming Network Scanner by python, Writing packet sniffer by python.
Technologies and OS: Kali Linux, Backbox Linux, Darknet, HTML, CSS, Python, VM, Photoshop.
I have already tested countless websites, as well as web and mobile apps for Microsoft, Oracle, ebay, EGO, Hair Direct, Ronaj Vodafone, etc etc. Of course, I’ve performed exploratory testings for many clients and pretty much write test cases on a daily basis. I’ve completed more than 25,000 tests and found more than 7,000 relevant bugs.
My bug reports are detailed, and include screenshots and videos so that everything is clear.
If you need Pentester and manual testing for your product, feel free to contact me. This is my passion, and I’ll be glad to help you.
How it works
Post a job for freePost a job
Tell us what you need. Create your own job post or generate one with AI then filter talent matches.
Hire top talent fast
Consult, interview, and hire quickly, so you can meet the freelancers you're excited about.
Collaborate easily
Use Upwork to chat or video call, share files, and track project progress right from the app.
Payment simplified
Manage payments in one place with flexible billing options. Only pay for approved work, hourly or by milestone.
Don't just take our word for it
“Upwork provides an umbrella-level of security. I can see a talent’s work history and ratings. I can hold payments in escrow. I can communicate through Upwork Messages instead of working through my email address.”
KD
Kim Darling
Emerald Tiger
“Upwork is the best platform to hire skilled professionals when we're not looking for a full-time employee. All the companies in our portfolio use Upwork to find talent across a wide range of fields.”
DM
David Merry
Kinetic Investments
“Our very specific requirements can be a challenge—With Upwork, we’re able to access a bigger community to ensure the success of our projects.”
KK
Katja Krohn
Summa Linguae
How do I hire a Certified Ethical Hacker in Egypt on Upwork?
You can hire a Certified Ethical Hacker in Egypt on Upwork in four simple steps:
Create a job post tailored to your Certified Ethical Hacker project scope. We'll walk you through the process step by step.
Browse top Certified Ethical Hacker talent on Upwork and invite them to your project.
Once the proposals start flowing in, create a shortlist of top Certified Ethical Hacker profiles and interview.
Hire the right Certified Ethical Hacker for your project from Upwork, the world's largest work marketplace.
At Upwork, we believe talent staffing should be easy.
How much does it cost to hire a Certified Ethical Hacker?
Rates charged by Certified Ethical Hackers on Upwork can vary with a number of factors including experience, location, and market conditions. See hourly rates for in-demand skills on Upwork.
Why hire a Certified Ethical Hacker in Egypt on Upwork?
As the world's work marketplace, we connect highly-skilled freelance Certified Ethical Hackers and businesses and help them build trusted, long-term relationships so they can achieve more together. Let us help you build the dream Certified Ethical Hacker team you need to succeed.
Can I hire a Certified Ethical Hacker in Egypt within 24 hours on Upwork?
Depending on availability and the quality of your job post, it's entirely possible to sign up for Upwork and receive Certified Ethical Hacker proposals within 24 hours of posting a job description.