About / Experience & qualifications
Theodoros
Moutesidis.
Penetration tester, security engineer, and researcher. Based in Thessaloniki, working with teams on application security and the tools that support it.
A tester with an engineering background.
I break web applications and AI systems for a living, then build tools that make the work more effective. My focus is manual testing: understanding application behavior, following the evidence, and finding the authentication, authorization, and business-logic flaws that automated checks can miss.
As an independent consultant, I work through the full assessment lifecycle: defining scope, testing, validating findings, reporting, and discussing remediation. Alongside client work, I develop security tooling and conduct independent research.
My experience includes enterprise application portfolios, private vulnerability research programs, and security work involving government and European projects. I keep employer names, client identities, and private assessment details out of this public portfolio.
Having worked in development and infrastructure before specializing in security, I can discuss both the finding and the engineering decisions around fixing it.