
Closed
Posted
As we prepare to launch our online-security startup, I need a seasoned penetration tester to run a full-spectrum assessment that spans network, web and mobile layers. The scope touches every corner of our stack—cloud resources, the internal LAN, and the publicly exposed perimeter—so you’ll be diving into each environment with equal depth. Primary objectives • Expose and document vulnerabilities before launch • Provide clear, actionable fixes that bring us in line with relevant compliance frameworks • Cross-check findings with our in-house AI analytics so we can validate security controls continuously Deliverables • An engagement plan outlining tools, timelines and test boundaries • Hands-on testing covering: – Network infrastructure (internal & external) – Web applications – iOS & Android mobile apps • A consolidated report that details: – Identified weaknesses with CVSS scores – Evidence (screenshots, logs, POCs) – Remediation guidance ranked by risk and effort • A debrief session to walk the team through results, map next steps, and integrate outcomes with our AI-driven monitoring pipeline Successful completion means every critical and high-risk issue is either remediated or has a mitigation plan we can track in the AI system. If you thrive on cutting-edge projects—yes, anti-gravity prototypes are truly on the roadmap—this is the place to leave your mark.
Project ID: 40508884
37 proposals
Remote project
Active 1 day ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
37 freelancers are bidding on average $23 AUD/hour for this job

Hello Mate!----------------I am expert Penetration Testing/ VAPT expert---------------------I have all required paid tools------------SO let's have a quick discussion to get start.'
$20 AUD in 40 days
5.1
5.1

I understand you need a comprehensive penetration test for your upcoming launch, similar to how I recently identified critical SQL injection flaws and cross-site scripting vulnerabilities for a SaaS platform poised for Series A funding. My approach will involve a multi-layered assessment, beginning with passive reconnaissance and OSINT to map your attack surface across cloud (AWS/Azure/GCP), internal LAN, and perimeter. This will be followed by active scanning with tools like Nmap and Nessus, then deep dives into web application vulnerabilities using Burp Suite Pro, OWASP Top 10 methodologies, and custom scripts for API testing. Mobile application testing will utilize MobSF and Frida for dynamic analysis. My technical plan prioritizes efficient identification of exploitable weaknesses. I'll leverage a combination of automated tools and manual exploitation techniques to uncover vulnerabilities across network protocols, authentication mechanisms, authorization controls, and data handling. For cloud environments, I'll focus on misconfigurations and excessive permissions. Network assessments will include fuzzing and protocol analysis. The output will be a detailed report with prioritized vulnerabilities, clear exploit chains, and precise remediation steps, cross-referenced with your AI analytics where applicable to ensure validation and actionable insights for your compliance goals. Given your focus on AI analytics validation, how do you envision the integration of my findings with your internal systems to achieve this? Also, what are your target compliance frameworks for this initial launch? I'm available for a brief call to discuss the specifics of your stack and how I can deliver a robust security posture before your go-live.
$25 AUD in 7 days
4.3
4.3

Hello, I'm Rudra Kumar, an experienced Senior QA Engineer and Scrum Master. With my decade-long focus on comprehensive quality assurance and Agile delivery practices, I can provide you with the penetration testing expertise you need to secure your online-security startup before its launch. My extensive skills in Web Applications and Mobile Apps, working across different sectors like SaaS platforms, FinTech, and Healthcare provide me solid domain expertise that matches your project's requirements. I have hands-on experience in performing network, web application and mobile app testing; exactly what you require for this project. Moreover, my ability to cross-check findings with your in-house AI analytics system will enable us to not just identify vulnerabilities, present them with clear, actionable fixes ranked by risk and effort but also integrate all of this data effectively into your monitoring pipeline. By prioritizing issues based on their implications and providing mitigation plans backed up with verifiable evidence, I ensure successful completion entails every critical and high-risk issue being resolved or mitigated, aligning our approach strongly to yours.
$15 AUD in 40 days
4.3
4.3

Hi, I am Haresh, having 14+ years of experience in Software Testing Industry. - Having unique blend of knowledge in Quality Product Delivery, Processes Management, Functional testing, Integration and regression testing, load and Perfromance Testing which help me to take the Quality of the software to the next level. - Hands on experience on testing Desktop, Web Based, Mobile application and ERP based application. - Hands on experience on automation testing tools on selenium webdriver, jmeter, katalon studio, Appium, cypress, selenium with TestNG freamwork etc.. - Thorough understanding of Product Delivery Life Cycle, Software Testing Life Cycle and Software Development Life Cycle. - Experience in Well conversant with writing Test plan,Test Cases,Bug report, Release Note and Product Health Report. - Worked in various domains like Finance, Retail, Web Portals, Healthcare, ecommnerce, CMS, Eduction Portal, Life Insurance, ERP system etc. - I do have require mobile devices to test mobile view or applications like android and iOS applications. - I have hands on experience with Git, postman, MSSQL Server. Kindly review my profile and let me know you view over the same. Thanks, Haresh
$20 AUD in 40 days
4.6
4.6

Hi there, This project instantly caught my eye, so I had to reach out. I see you are looking for a seasoned penetration tester for your online-security startup, focusing on network, web, and mobile layers with a comprehensive assessment. I've helped businesses enhance security and compliance through detailed testing methodologies. I can help you too. Feel free to request samples of successful projects I've completed. Based on what you mentioned, here is how we would approach the project: - Develop a detailed engagement plan with tools and timelines - Conduct thorough testing across network, web, and mobile layers - Provide a comprehensive report with identified weaknesses and remediation guidance - Hold a debrief session to discuss results and future steps Rest assured, we will ensure clear communication and deliver a seamless, user-focused solution optimized for performance. Best Regards, XRProConnect
$15 AUD in 7 days
4.0
4.0

We at Offensium Vault Private Limited (ISO 27001:2022 & ISO 9001:2015) can deliver a full-spectrum security assessment covering your network, web, mobile, and cloud environments before launch. Scope Coverage • External & internal network penetration testing • Web application and API security assessment • iOS & Android mobile application penetration testing • Cloud security review and attack surface analysis • Validation of findings through manual exploitation and industry-standard methodologies Methodology & Tools • OWASP Top 10, OWASP Mobile Top 10, PTES, NIST-aligned testing • Burp Suite, Nmap, Metasploit, Wireshark, MobSF, Frida, OWASP ZAP, Nessus, and custom scripts • Real-world attack simulation with validated PoCs Deliverables • Engagement plan with scope, methodology, timelines, and testing boundaries • Consolidated report with CVSS severity ratings • Screenshots, logs, and reproducible PoCs • Risk-prioritized remediation roadmap • Executive summary for stakeholders • Debrief session to review findings and next steps Added Value • Experience across SaaS, fintech, healthcare, and enterprise platforms • Findings can be structured for easy integration into your AI-driven monitoring and tracking workflows • Focus on ensuring all Critical and High-risk findings have either remediation or a documented mitigation strategy Ready to start immediately and support your launch-readiness objectives.
$20 AUD in 40 days
3.6
3.6

Hi there, Your project caught my attention because this is exactly the kind of work I do every day. I'm a certified penetration tester with 12+ years of offensive security experience. Relevant engagements: • Web app pentest (FinTech startup) — Found a critical IDOR vulnerability exposing 50k+ customer records. Provided a prioritized remediation report; client patched within 48 hours. • Internal network pentest (Healthcare org) — Achieved full domain compromise via unpatched MS17-010 and weak AD delegation settings. Delivered executive summary + technical report with full attack chain. • API security assessment (SaaS platform) — Identified BOLA and JWT algorithm confusion flaws. Reported 12 findings across critical, high, and medium severity. • Red team exercise (E-commerce) — Phishing campaign + initial access led to simulated data exfiltration. Full kill-chain documented in the report. What you get: → Scoping call to define targets, rules of engagement, and methodology → Manual + tool-assisted testing (no black-box scanner dumps) → Dual-layer report: executive summary for leadership, technical detail for devs → Free retest to verify your fixes after remediation Certifications: OSCP | CEH | eJPT | CompTIA PenTest+ — Sumit Sharma Penetration Tester | OSCP | CEH
$20 AUD in 40 days
3.1
3.1

Dear Client, Good afternoon . How are you? I hope this proposal finds you well. I'M A CERTIFIED & EXPERIENCED EXPERT, WELL VERSED WITH THE REQUIREMENTS FOR YOUR PROJECT "Startup Seeks Versatile Pen Tester." This is to inform you that I have KEENLY gone through your project description, CLEARLY understood all the project requirements as instructed in your project proposal and this is to let you know that I will perfectly deliver as desired. Being in possession of all stated required skills, (Cloud Security, Data Protection, Risk Assessment, Compliance, Penetration Testing, Mobile App Testing, Web Security and Network Security), as this is my field of professional specialization having completed all certifications and developed adequate experience in the respective field, I hereby humbly request you to consider my bid for professional, quality and affordable services that meet all your requirements. I always guarantee timely delivery and unlimited revisions where necessary hence you are assured of utmost satisfaction when working with me. Please send me a message so that we can discuss more and seal the project. WELCOME.
$70 AUD in 40 days
2.4
2.4

We provide detailed vulnerability assessment and technical review of existing security controls for all targeted systems and assets are provided with this service. in the assessment, our team will present a comprehensive vulnerability report, logical network connection drawing, complete cyber asset inventory and recommended mitigation actions. What you will get with this project? - Full assessment report with all vulnerability, recommendation, test cases and Observations in detail. - Kindly contact me to get sample report. Waiting for your reply for further discussion. Thanks & Regards, Keyur
$20 AUD in 40 days
0.6
0.6

Hi there, I understand you're looking for a full-spectrum security assessment to establish a strong pre-launch baseline. The core operation involves testing your entire stack-cloud infra, LAN, web, and mobile apps-to identify vulnerabilities. The key outcome is not just a report, but a prioritized remediation plan with findings that can be ingested by your internal AI analytics system to continuously validate security controls. Technical approach: We'll conduct a multi-layered assessment. Network testing will involve external reconnaissance (Shodan, OSINT) and internal authenticated/unauthenticated scans. For web and mobile, we'll use a hybrid of SAST/DAST, focusing on the OWASP Top 10, API security, insecure data storage, and business logic flaws using tools like Burp Suite Pro. Core modules: Our process includes: Scoping & Engagement Planning, Threat Modeling, Multi-Vector Penetration Testing (Network, Web, Mobile), Vulnerability Analysis with CVSS scoring, and Remediation Strategy sessions to map findings directly into your AI monitoring framework. Relevant systems: - SecureCom: A communication platform we built with military-grade 512-bit ECC encryption, giving us deep insight into cryptographic and architectural weaknesses. - CoreWipe: A GrapheneOS security application for remote device management, demonstrating our expertise in hardened mobile environments. Our strategy is to begin with a clear Rules of Engagement document. We provide immediate alerts for any critical findings, followed by a comprehensive report detailing vulnerabilities, evidence, and actionable fixes. The final phase is a collaborative debrief to ensure the results are understood and integrated. Regards, Rohit
$15 AUD in 28 days
0.0
0.0

✩░▒▓▆▅▃▂▁ Full-Spectrum Pen Testing ▂▁▂▃▅▆▓▒░✩ Hi there, You need a penetration test that spans network, web, and mobile layers, uncovering vulnerabilities before launch while ensuring actionable remediation and compliance alignment. The goal is to secure every part of your stack—from cloud resources to the internal LAN and public perimeter—so your AI-driven monitoring pipeline starts on solid footing. ✅ Engagement plan with tools, timelines, and test boundaries ✅ Hands-on testing: network, web applications, iOS & Android ✅ Comprehensive report: CVSS-rated vulnerabilities, evidence, remediation guidance ✅ Debrief session to integrate findings with AI monitoring One question: do you want the assessment to include social-engineering checks, or strictly technical layers? ⚡ Looking forward to helping your startup launch with confidence, knowing every critical risk is mapped and mitigated. Thanks & Regards
$20 AUD in 40 days
0.0
0.0

I understand you need a full-spectrum penetration test covering network, web, and mobile layers for your online-security startup's launch. My experience includes identifying critical vulnerabilities across cloud, internal, and perimeter environments, most recently uncovering and facilitating the remediation of a major SQL injection flaw for a SaaS platform prior to their Series A funding. I will deliver a comprehensive report detailing all findings, categorized by risk, and provide specific, step-by-step remediation guidance aligned with common compliance frameworks. My methodology will involve tools like Nmap for network mapping, Burp Suite Pro for web application analysis, and MobSF for mobile security testing, with all discovered vulnerabilities cross-referenced against your in-house AI analytics. What is the specific compliance framework you are targeting for remediation guidance? Ready to start as soon as you confirm scope.
$25 AUD in 7 days
0.0
0.0

This looks like a great fit, We will run a full penetration assessment across your cloud, LAN, perimeter, web apps, and mobile apps, then deliver a consolidated report with CVSS scores, evidence, and prioritized remediation steps. For the AI integration piece, we will structure findings as machine-readable output so your monitoring pipeline can ingest and track each issue automatically. A couple of quick things to confirm: 1) Which cloud provider hosts your infrastructure (AWS, GCP, Azure)? 2) Are the mobile apps native or built on a cross-platform framework? The number quoted here is a starting estimate. The exact cost and timeline will be confirmed after we go through the full scope together. Ready to start whenever you are. Faizan
$23 AUD in 40 days
0.0
0.0

Hello, your full-spectrum assessment covering cloud, LAN, perimeter, web, and mobile apps is exactly what I do best, and the anti-gravity roadmap tells me you care about real security from day one. I hold OSCP and cloud security certifications and have done pre-launch tests for several security startups. I will first provide an engagement plan with tools, boundaries, and timeline. Then I will test your cloud infrastructure for misconfigurations, your internal LAN for weak segmentation, your web apps for OWASP Top Ten and logic flaws, and your iOS and Android apps for insecure storage and hardcoded secrets. My report will include CVSS scores, evidence like screenshots, and remediation guidance ranked by risk and effort. I will also deliver a debrief session and help integrate findings with your AI analytics pipeline so you can validate fixes continuously. Your hourly rate of $15 to $25 AUD works for me, with an estimated 35 to 50 hours. Let me know if you want to hop on a quick call. Kind regards
$20 AUD in 40 days
0.0
0.0

Hi, What specific compliance frameworks are you aiming to align with for your startup? I can help you find and document vulnerabilities throughout your entire stack, including network, web, and mobile layers. With several years of experience in penetration testing, I know how to expose and prioritize risks effectively. I’ll provide a solid engagement plan that outlines tools and timelines, alongside hands-on testing and a comprehensive report detailing identified weaknesses, complete with CVSS scores and actionable remediation guidance. I’m excited about the prospect of working with your team, especially on such innovative projects. Let’s discuss how I can help ensure your launch goes smoothly and securely. Best Regards, William.
$25 AUD in 40 days
0.0
0.0

Hey, I'm really pumped about this opportunity! I recently led a project with similar challenges and nailed it. Drawing from my experience in Web Security, Compliance, Mobile App Testing, Penetration Testing, Cloud Security, Network Security, Risk Assessment, Data Protection, I’m ready to dive into your project. Please come over chat and discuss your requirement in a detailed way. Regards Vishal Maharaj
$25 AUD in 40 days
0.0
0.0

Hi there, I believe my experience is a great match for your project. ✅ Strong Frontend & Backend Expertise ✅ Clean, Maintainable Code ✅ Scalable Architecture & API Development ✅ Fast Response and Reliable Communication I have successfully delivered numerous web applications and would be happy to bring the same level of quality to your project. Looking forward to connecting with you. Best regards,
$20 AUD in 40 days
0.0
0.0

Dear Valued Client, After reviewing your project requirements, I am confident that I have the skills, experience, and dedication needed to deliver a high-quality solution that meets your expectations. I take pride in understanding my clients' objectives and transforming their ideas into reliable, scalable, and effective solutions. Throughout the project, you can expect clear communication, complete transparency, attention to detail, and timely delivery of all agreed milestones. I would welcome the opportunity to discuss your project in more detail, answer your questions, and share recommendations on the best approach. Even if we do not move forward together, I am happy to provide valuable insights that may help you make an informed decision. Kind Regards, Phakisang Molefe Senior Software Engineer
$15 AUD in 7 days
0.0
0.0

I can offer a reliable and results-driven approach to your project. I understand the need for a clean, professional, and seamless penetration testing process that covers network, web, and mobile layers, ensuring your cloud, LAN, and perimeter environments are thoroughly assessed. With expertise in security assessments and compliance alignment, I provide detailed vulnerability analysis, automated risk scoring, and actionable remediation guidance. While I am new to freelancer, I have tons of experience and have done other projects off site. I would like to chat more about your project! Regards, Andiswa Ngqika
$18 AUD in 14 days
0.0
0.0

Hello, I can perform a comprehensive penetration test across your network, web, and mobile environments, identifying vulnerabilities and providing actionable remediation guidance in line with industry best practices and compliance frameworks. Deliverables I will provide: • Detailed engagement plan with scope, tools, and timelines • Network testing (internal and external) • Web application security assessment • iOS and Android app penetration testing • Consolidated report with CVSS-scored findings, evidence, and prioritized remediation guidance • Debrief session to walk through results and integrate fixes with your AI monitoring pipeline Best regards
$20 AUD in 40 days
0.0
0.0

South Brisbane, Australia
Payment method verified
Member since Nov 3, 2018
$15-25 AUD / hour
$8-15 AUD / hour
$250-750 AUD
$30-250 AUD
$8-15 AUD / hour
$15-25 AUD / hour
₹600-3000 INR
₹150000-250000 INR
₹600-1500 INR
$30-250 USD
$30-250 USD
min $50 AUD / hour
$250-750 USD
$10-30 USD
₹100-400 INR / hour
₹750-1250 INR / hour
$30-250 USD
$250-750 USD
₹12500-37500 INR
$250-750 USD
$10-30 CAD
₹12500-37500 INR
$25-50 USD / hour
$30-250 USD
₹12500-37500 INR