Penetration Testing & Attack Path Analysis
I assess internal networks, Active Directory and selected applications from an attacker's perspective. The result is a set of traceable attack paths, solid evidence and priorities that teams can act on.
Benjamin Iheukumere · Senior Cybersecurity Consultant
As an independent consultant, I help CISOs, IT leaders and technical teams understand complex cyber risks, prioritize them correctly and reduce them sustainably – from penetration testing and Microsoft security to networks, firewalls and critical infrastructure.
Services
I step in where risks need to be understood and resolved, not merely described. Depending on the project, I take responsibility for analysis, technical leadership, prioritization or implementation – working directly with stakeholders and without unnecessary handovers.
I assess internal networks, Active Directory and selected applications from an attacker's perspective. The result is a set of traceable attack paths, solid evidence and priorities that teams can act on.
I help secure Microsoft-centric environments – from Tier 0, privileged access and AD CS to domain controllers, Windows baselines and legacy authentication.
I analyze firewall and NGFW rule sets, VPN access, segmentation and logging. Legacy exceptions are assessed transparently and paired with safe remediation steps.
I turn findings from penetration tests, audits and internal reviews into concrete work packages, complete with owners, rollout path, rollback option, validation and defensible evidence.
I provide technical context for critical findings and architecture decisions, expose dependencies and help decision-makers weigh risk, effort and priorities with confidence.
I strengthen security projects as an experienced independent consultant – primarily remote, across the DACH region and on-site when needed. I work directly with CISOs, IT security, infrastructure and operations.
Working Together
Depending on your situation, I begin with a focused assessment, structured remediation or support for an ongoing security project.
Trigger: When a penetration test, audit or internal suspicion points to a relevant risk – or when a solid baseline is missing.
Output: Technical assessment, traceable evidence, clear priorities and a realistic action plan for management and the delivery team.
Trigger: When open findings need to be prioritized, remediated technically and documented transparently for retesting.
Output: Ownership, remediation path, rollout plan, rollback option, validation method and a complete evidence package.
Trigger: When a security project lacks experienced technical leadership, additional implementation capacity or independent sparring.
Output: Direct senior-level support for analysis, decisions and implementation – aligned with the team, schedule and operational constraints.
How I Work
At SafeLink IT, you work directly with me as the consultant accountable for the result – not with a sales layer or a rotating project team. I combine a management perspective, offensive analysis and operational implementation, and I stay with an issue until the decision, ownership and next step are clear.
Applied Defense Under Pressure
At Locked Shields 2026, I was part of Blue Team 01 and responsible for securing and defending a Windows- and AD-adjacent domain in a critical-infrastructure scenario. Under continuous attack, my responsibilities included monitoring, analysis, containment, hardening and recovery – in close international collaboration and under intense time pressure.
Exercise and operational details are intentionally kept general for security reasons.
Project experience
Long-term advisory work covering continuous penetration testing, identity risk reduction, improvements to firewalls, proxies and IPS, as well as vulnerability management and audit preparation.
Led the technical and organizational recovery after a security incident – including incident response, forensics, insurance, executive management and the rebuild of hybrid infrastructure.
Led internal penetration tests and Active Directory security assessments, including internal web applications, reporting and ongoing remediation support.
Prepared a preliminary study and comparison matrix for VPN and ZTNA solutions, including a management decision paper and recommendations for the future network design.
Public Work Samples
My public tools show how I approach security problems: transparently, repeatably and built for practical use.
A parallelized SMB share crawler that searches for exposed credentials, tokens and secrets during authorized assessments.
Read-only PowerShell checks for the Kerberos RC4/AES transition, exposing SPN accounts, KDC events and potential breakpoints before a change.
A Windows application providing near-real-time visibility into Sophos XGS logs over SSH, with filter presets, incident capture and a demo mode.
Work Sample: AD Hardening Assessment
The sample report turns individual technical findings into a shared risk picture for management and the delivery team.
A report is useful only when technical teams and decision-makers understand the same priorities. This fictional sample shows the structure and depth of my AD hardening assessment – including an executive summary, prioritized findings, Tier 0 exposure, AD CS risks and a realistic 90-day plan.
Fictional sample – no real client data
Effective hardening starts with the paths that actually control identities and systems. Changes are prioritized, introduced safely and then technically validated.
From the Field
These anonymized examples show how I connect technical findings with risk, evidence and a clear remediation path. No client data is used.
Certifications
My certifications demonstrate technical focus in offensive security, Active Directory, penetration testing and red teaming. What matters is turning that knowledge into effective improvements for real-world environments.
OffSec Certified Professional+
OffSec · Active
Offensive Security Certified Professional
OffSec · Active
Practical Network Penetration Tester
TCM Security · Active
Certified Ethical Hacker Master
EC-Council · Active
Certified Ethical Hacker Practical
EC-Council · Active
Certified Ethical Hacker
EC-Council · Active
Jr Penetration Tester
TryHackMe · ActiveJunior Penetration Tester
INE Security · Active
Certified Red Team Professional
Altered Security · In progress
OffSec Experienced Penetration Tester
OffSec · In progressAbout Me
Studied business informatics at Rheinische University of Applied Sciences in Cologne, specializing in multimedia networks.
Founded and led an IT systems house and managed cloud service provider as managing partner.
Independent cybersecurity consulting under SafeLink IT with both an offensive and defensive focus.
Security Blog
Technical perspectives on Active Directory, Windows and Microsoft security, networks, vulnerabilities and effective hardening.
Security Advisories
Concise analysis of relevant vulnerabilities and changes: what is affected, how serious is the risk and what should responsible teams review now?
Contact
Tell me briefly about your situation. I will respond personally – or you can choose a time directly through Microsoft Bookings.
Videos
In my most-viewed videos, I explain Active Directory security, lateral movement, password attacks and essential protective measures using practical examples.
4.3K+ views
1.5K+ views
1.5K+ views
830+ views