Hire the Best Penetration Testers
in Germany
Leinfelden-Echterdingen, Germany
I am a Senior Penetration Tester (currently working at Mercedes-Benz) specializing in manual, deep-dive security assessments for web applications, APIs, and cloud infrastructure. I do not run automated scanners and hand over a 100-page PDF of false positives. I specialize in finding the complex, chained business-logic flaws, multi-tenant isolation issues, and authorization bypasses that automated tools completely miss. **Certifications:** - OSWE (Offensive Security Web Expert) - OSEP (Offensive Security Experienced Penetration Tester) - OSCP+ (Offensive Security Certified Professional) - OSWA, OSWP, KLCP **My Core Focus Areas:** - Web App & API Penetration Testing: Identifying IDORs, mass assignment, complex injection flaws, and authentication bypasses in modern SPAs and microservices. - Network Penetration Testing: Internal/External infrastructure assessments, Active Directory exploitation, and lateral movement. - Cloud Security: Exploiting access control misconfigurations in AWS, Azure, and GCP. **What you receive at the end of the engagement:** - Zero False Positives: Every vulnerability I report is manually verified and proven with exact reproduction steps. - Compliance-Ready Reporting: I deliver formal reports featuring accurate CVSS scoring, board-ready executive summaries, clear PoCs, and developer-centric remediation instructions. - Professional Discipline: I strictly adhere to established Rules of Engagement (RoE) to ensure zero business disruption during testing. Shoot me a message, and I’d be happy to share a redacted sample report so you can see the exact quality of work you will receive before we start.
- Penetration Testing
- Encryption
- Information Security
- Vulnerability Assessment
- Web App Penetration Testing
- Metasploit
- Web Application Security
- Network Engineering
- DevOps
- Application Security
- Phishing Detection
- Black Box Testing
- SQL Injection Mitigation
- .NET Framework
- Kali Linux
Berlin, Germany
Security & compliance lead for SaaS and fintech. SOC 2, ISO 27001, pentesting, and fractional vCISO — so security closes enterprise deals instead of blocking them. I'm an Information Security Lead with 10+ years securing SaaS end-to-end. By day I run AppSec and cloud security at a global B2B SaaS unicorn. On Upwork, I bring that same rigor to founders, CTOs, and security leads who need to get audit-ready — fast. OSCP · CCNSE · CDP | Top Rated | 100% JSS | 25+ five-star reviews | 100+ apps pentested What I deliver: → SOC 2 & ISO 27001 audit readiness (4–8 weeks): gap analysis, 15+ policies, risk assessment, evidence collection, vendor reviews, auditor handoff. Vanta, Drata, Sprinto, Secureframe, Thoropass. → Pentesting (1–2 weeks): OWASP-aligned web, mobile, API. Developer-friendly report with repro steps, CVSS, business impact, and remediation. Attestation letter + free retest included. → Fractional vCISO (retainer): security questionnaires, vendor reviews, board reporting, AWS/Azure/GCP posture, IR readiness, continuous compliance. Best fit if you're: prepping your first SOC 2 or ISO 27001 audit, losing enterprise deals on security questionnaires, stuck inside Vanta/Drata without knowing what to upload, or scaling on AWS and need a security baseline — without paying $250k for a full-time CISO. Frameworks: SOC 2, ISO 27001:2022, NIST CSF, NIST 800-53, PCI DSS, GDPR, HIPAA, OWASP ASVS/MASVS, CIS Benchmarks. Stack: Burp Suite Pro, Nuclei, AWS Security Hub/GuardDuty, Terraform, GitHub Actions, Snyk, SAST/DAST/SCA, Python. Next step: send your scope or just describe where you're stuck. Within 24 hours you'll get a fixed-price quote, SOW, and timeline. If I'm not the right fit, I'll tell you who is.
- Penetration Testing
- Ethical Hacking
- Information Security
- Vulnerability Assessment
- Kali Linux
- Application Security
- Business with 10-99 Employees
- Amazon Web Services
- Security Analysis
- Linux
- Mobile App Testing
- Security Engineering
- Web Application Security
- Information Security Audit
- Python
- Website Security
How it works
Post a job for free Post a job
Tell us what you need. Create your own job post or generate one with AI then filter talent matches.
Hire top talent fast
Consult, interview, and hire quickly, so you can meet the freelancers you're excited about.
Collaborate easily
Use Upwork to chat or video call, share files, and track project progress right from the app.
Payment simplified
Manage payments in one place with flexible billing options. Only pay for approved work, hourly or by milestone.
Don't just take our word for it
“Upwork provides an umbrella-level of security. I can see a talent’s work history and ratings. I can hold payments in escrow. I can communicate through Upwork Messages instead of working through my email address.”
Kim Darling
Emerald Tiger
“Upwork is the best platform to hire skilled professionals when we're not looking for a full-time employee. All the companies in our portfolio use Upwork to find talent across a wide range of fields.”
David Merry
Kinetic Investments
“Our very specific requirements can be a challenge—With Upwork, we’re able to access a bigger community to ensure the success of our projects.”
Katja Krohn
Summa Linguae
How do I hire a Penetration Tester in Germany on Upwork?
You can hire a Penetration Tester in Germany on Upwork in four simple steps:
- Create a job post tailored to your Penetration Tester project scope. We'll walk you through the process step by step.
- Browse top Penetration Tester talent on Upwork and invite them to your project.
- Once the proposals start flowing in, create a shortlist of top Penetration Tester profiles and interview.
- Hire the right Penetration Tester for your project from Upwork, the world's largest work marketplace.
At Upwork, we believe talent staffing should be easy.
How much does it cost to hire a Penetration Tester?
Rates charged by Penetration Testers on Upwork can vary with a number of factors including experience, location, and market conditions. See hourly rates for in-demand skills on Upwork.
Why hire a Penetration Tester in Germany on Upwork?
As the world's work marketplace, we connect highly-skilled freelance Penetration Testers and businesses and help them build trusted, long-term relationships so they can achieve more together. Let us help you build the dream Penetration Tester team you need to succeed.
Can I hire a Penetration Tester in Germany within 24 hours on Upwork?
Depending on availability and the quality of your job post, it's entirely possible to sign up for Upwork and receive Penetration Tester proposals within 24 hours of posting a job description.