Most companies don't need another 80-page security report. They need someone to tell them: What c...Most companies don't need another 80-page security report. They need someone to tell them: What c...
The network for creativity
Join 1.25M professional creatives like you
Connect with clients, get discovered, and run your business 100% commission-free
Creatives on Contra have earned over $150M and we are just getting started
Most companies don't need another 80-page security report.
They need someone to tell them:
What can actually be exploited? What could it cost us? And what should we fix first?
That's the difference between checking a cybersecurity box and actually improving your security.
When I assess an application or infrastructure, I'm not interested in filling a report with 50 low-impact findings just to make it look impressive.
I care about attack paths.
→ Can authentication be bypassed? → Can one compromised account lead to something bigger? → Are APIs exposing data they shouldn't? → Can permissions be chained into privilege escalation? → Are cloud or infrastructure misconfigurations creating an easy entry point? → Would your monitoring actually notice an attacker?
And most importantly:
What should your team fix first?
That's the approach I bring to cybersecurity work — whether it's penetration testing, security audits, SOC/security monitoring, or security consulting.
I'm currently taking on new projects through Contra.
If you're building a SaaS product, web application, API, or growing infrastructure and you're unsure how it would hold up against a real attack, send me a message.
I'll happily take a look at what you're building and tell you where I'd start.
Post image
Back to feed
The network for creativity
Join 1.25M professional creatives like you
Connect with clients, get discovered, and run your business 100% commission-free
Creatives on Contra have earned over $150M and we are just getting started