Junior Cybersecurity Professional

Levi
Hekman

Looking for a junior pentesting role or internship — while sharpening offensive security skills through hands-on assessments, threat research, and tools like the one below.

Levi Hekman
status: open to junior roles

01 — About

Professional Summary

Cybersecurity professional trained through the Ethical Hacker bootcamp at NOVI College Utrecht — an intensive HBO-level program focused on applied security and real-world attack scenarios. I completed two parallel learning tracks: Organisation Security and Systems Security, where theoretical concepts were consistently translated into hands-on assignments.

My focus lies in offensive security, web application testing, and vulnerability analysis — with strong attention to scope, impact, and remediation. I translate technical findings into clear, risk-based recommendations that organizations can act on.

4
Security Projects
OWASP
Methodology
HBO
Bootcamp Level
↳ also building Helder Beveiligd ↗ — a security consultancy for SMEs, currently in development

02 — Work

Selected Security Projects

01

ISO 27001 Compliance Audit & Risk Assessment

ContextOrganisation Security eindopdracht (30 EC)
ScopeGovernance, ISO/IEC 27001:2022 audit, SANS Maturity Model
FindingsGaps in vuln. management, segmentation, data classification
OutcomeRemediation roadmap: SIEM/UEBA, Zero Trust, maturity level 2 → 3
ISO 27001 · HBO Level
02

Threat Intelligence & Forensics — Equifax Case Study

ContextOrganisation Security — dreigingslandschap
ScopeThreat actor profiling, OSINT, Cyber Kill Chain
ApproachReconstructed the 2017 Equifax breach (CVE-2017-5638)
OutcomeForensic investigation plan & legal impact analysis
Threat Intel · HBO Level
03

Network, OS & Application Security Blueprint

ContextSystems Security eindopdracht — NovaTech B.V.
ScopeNetwork recon, OS hardening, PTES/OWASP app review
FindingsVulnerable Apache host, open SMTP relay, EternalBlue exposure
OutcomeConsolidated hardening & remediation blueprint
PTES · HBO Level
04

NovaTech CTF — Multi-Stage Exploit Chain Design

ContextSystems Security — Challenge Design
ScopeBuilt & tested a Dockerized, cross-platform CTF
ApproachLFI → log poisoning → RCE → cronjob privilege escalation
OutcomeFully documented exploit chain for peer students
CTF Design · HBO Level

03 — Interactive Tool

Free Security Scan

Most small businesses have never had their security checked — not because it isn't important, but because a professional assessment is expensive and hard to access. This scan changes that.

In 5 minutes, you get a clear picture of where your organisation stands on information security. You'll see your score, the gaps that put you at risk, and exactly what to fix first — based on the same ISO 27001 framework that auditors and enterprise security teams use.

Instant compliance score
A percentage that tells you honestly how your organisation compares to the ISO 27001 standard — the benchmark for information security.
🎯
Prioritised action list
Not a vague report — a ranked list of your actual gaps, sorted by risk level, so you know exactly where to start.
💬
Free consultation
After the scan, you can reach out directly. I'll look at your results and tell you what I'd tackle first — no commitment required.

Who is this for? — Any business that handles customer data, works with external partners, or wants to be prepared before a client or auditor asks the difficult questions.

No account. No data stored. No strings attached — just a clear picture of where you stand.

~ security_scan.sh
live — no data stored
~ company
0 / 30 answered

04 — Tooling

Technologies & Tools

Tooling supports manual analysis — it does not substitute for methodology.

Kali Linux
Nmap
Burp Suite
Metasploit
SQLmap
Wireshark
Linux / Bash
Git & GitHub
NOVI
Ethical Hacker Bootcamp
NOVI College Utrecht · HBO

05 — Contact

Let's Talk