I test your website the way an attacker would – before they do.
Penetration testing, security checks and secure websites for small and medium-sized businesses in the Zurich region. Fixed price, clearly defined scope, a report you can understand.
Free initial callSee servicesServices
Every project is different. After a short, free call you get a fixed price – you know exactly what you get in advance.
External quick scan
Analysis of what an attacker sees from the internet: open services, outdated software, exposed data, subdomains, TLS and e-mail configuration. Short report with the main risks.
RequestWeb application pentest
Manual test of your web application following the OWASP Top 10: authentication, access control, injection, XSS, SSRF, business logic. Report with proof of concept, severity (CVSS) and concrete fixes.
RequestHardening review
Review of servers, cloud environments or Microsoft 365 for insecure settings. Prioritised list of measures.
RequestRetest
Verification that the reported vulnerabilities have been fixed correctly. Updated report as evidence.
RequestSecure websites for SMEs
Modern, fast websites with security built in from day one: HTTPS, security headers, backups, minimal attack surface. Including legal notice and privacy policy under Swiss law (nFADP).
RequestMaintenance & security
Updates, backups, monitoring and small changes – so your website stays secure after launch.
RequestAfter the free initial call you receive a binding fixed-price offer tailored to your scope.

About me
I'm Juan Amorós García, based in Dietikon. I come from hands-on professions: before moving into cybersecurity I worked as a precision assembler in the automotive industry – a job where mistakes are not an option. I bring that same care to every project.
I work for small and medium-sized businesses that want to know how secure their website or IT really is – without jargon and without big-consultancy prices.
- Master in Cybersecurity and Ethical Hacking
- University Expert in Cybersecurity and Ethical Hacking (Universidad Isabel I)
- eJPT – Junior Penetration Tester (OSCP in preparation)
- Vulnerability report acknowledged by NASA (Vulnerability Disclosure Program)
- Active in bug bounty programmes
- Languages: Spanish, English, German (basic)
How I work
Security starts with how we work together. That's why I follow clear rules.
Initial call
Free and without obligation. We clarify what should be tested and what matters to you.
Written authorisation
I only test with written authorisation and a clearly defined scope. NDA on request.
Testing
Careful testing without denial of service and without unnecessary access to real data.
Report & debrief
A clear report with prioritised measures – and I walk you through the results personally.
Contact
Write or call me – the initial call is free. Spanish and English welcome.
jag.cybersec@gmail.com +41 76 698 27 74Dietikon · Zurich region / Limmattal