About us

Offensive security is not a side offering here

Our focus is the attacker's side: penetration tests, alarm tests, offensive development and code security audits. That is what we specialise in. We work independently, free from vendor interests.

How we work

Our focus is understanding precisely where your systems are vulnerable and where they can be strengthened. We assess every finding in the context of your organisation – a vulnerability only becomes a risk when a realistic attacker can reach it.

We do not recommend products we earn money on, and we do not sell assessments you do not need. What we commit to is in the offer – including a retest after every penetration test.

We are based in Wiesbaden in the Rhine-Main area and work with clients across Germany.

Where we come from

Wisp Security GmbH is led by Ben Stuart – a computer scientist from Wiesbaden with a long-standing focus on pentesting and operational IT security. The ambition has stayed the same over the years: making complex systems secure and improving them lastingly through automation.

Our official profiles: LinkedIn, GitHub, Codeberg.

Background

The road to Wisp Security GmbH

The stations that shaped how we work.

Security practice from critical infrastructure to mid-sized companies

Several years as a senior IT security consultant: pentesting, code audits and SOC automation. Plus an introductory penetration-testing course taught at Goethe University Frankfurt.

Stuart Security

Going independent as a pentester and IT security consultant in Wiesbaden – under his own name.

Wisp Security GmbH founded

Independent security assessment as its own company, free of vendor interests. Registered at Amtsgericht Wiesbaden, HRB 36454.

Team

Who is behind it

Small and specialised – you talk directly to Ben Stuart.

  • Ben Stuart

    Managing director

    Computer scientist (M.Sc.) with years of experience across the whole range of IT security, from critical infrastructure to classic mid-sized companies. Certified OSCP, OSWE, OSEP, OSED and OSCE³.

Partner

Alarm tests with RedMimicry

For alarm tests we use RedMimicry, the Berlin platform for breach and attack emulation – we are a partner there. Attacks run realistically and reproducibly – how well SOC, EDR, NDR and SIEM detect them becomes measurable.

RedMimicry

RedMimicry

Breach & attack emulation, Berlin

Personal certifications

You can verify our qualification.

All certifications are issued by Offensive Security and stand for passed hands-on exams.