Independent offensive security · Belgium

Offensive security, 
done properly.

I'm Timo De Clercq, an independent penetration tester. Companies hire me to find the vulnerabilities that matter, before someone else does.

Based in BelgiumWorking across EuropeCEH · BSCP

Sectors I've tested in

Banking & fintech Energy & wind farms SaaS E-commerce & retail Food delivery HR & payroll Automotive
Security + software

Breaking and building.

Offensive security is what I'm known for, but I also build the tools and automation around it.

Pentests

Hands-on security testing of your external edge, internal network, and applications. I find the vulnerabilities that matter and prove the impact, not just a scanner dump.

ExternalInternalWeb & API

Bug Bounty

I hunt across public and private programs for real, exploitable bugs. The same offensive mindset, pointed at live targets and measured by proven impact.

Recon0-daysCVEs

Software development

I build the tools around the work: automation that removes the manual grind, AI-driven workflows, and custom security tooling.

AutomationAI toolsTooling
About

Three fronts, one mindset.

I work on three fronts, all driven by the same offensive mindset: penetration testing for companies, bug bounty hunting on live targets, and software that automates the work and turns findings into tools.

Breaking things is only half the job; explaining the breakage so it gets fixed is the other half. Developers get reproduction steps they can follow at their desk, boards get risk in the language of the business, and nobody gets 200 pages of scanner output.

WorkPentests · Bug bounty · Software
BaseBelgium, working across Europe
FocusWeb, API, internal networks
CertsCEH · Burp Suite Certified Practitioner
LanguagesDutch, English
Contact

Let's talk.

Tell me what you're building and what you're worried about. You'll hear back within a day.