
Kapalı
İlan edilme:
I need an experienced security professional to carry out a full-scope penetration test against my production web application. The goal is to probe every layer that touches user authentication and the way we store or transmit data, then provide me with actionable evidence of weaknesses and clear remediation steps. Scope • The engagement centres on web application penetration testing—no network, wireless or social-engineering components at this stage. • Priority attack surfaces include the login flow, session management, password reset, access-control logic, and any point where sensitive data is processed or stored. API endpoints are out of scope unless they directly affect the above components. Approach You are free to use industry-standard tooling such as Burp Suite, OWASP ZAP, SQLMap, Kali-based utilities or custom scripts, provided all findings can be reproduced in my staging environment. Testing must comply with OWASP Testing Guide and avoid any interruption of live service. Deliverables - Kick-off call to clarify targets, rules of engagement and timetable - Written test plan outlining methodology and tooling - Exploitation evidence: screenshots, request/response pairs, or short PoC scripts - Risk-rated report covering each vulnerability, its impact, likelihood and remediation path - Executive-level summary suitable for non-technical stakeholders - Optional retest after fixes to confirm closure Acceptance Criteria A report that maps vulnerabilities to OWASP Top Ten categories and contains at least one validated finding for each in-scope area, or written confirmation that none were discovered, will mark the job complete. Estimated start: as soon as NDA is in place. Clear communication and respect for safe-testing windows are essential.
Proje No: 40044846
20 teklifler
Uzaktan proje
Son aktiviteden bu yana geçen zaman 2 ay önce
Bütçenizi ve zaman çerçevenizi belirleyin
Çalışmanız için ödeme alın
Teklifinizin ana hatlarını belirleyin
Kaydolmak ve işlere teklif vermek ücretsizdir
20 freelancer bu proje için ortalama ₹2.540 INR/ saat teklif veriyor

Hi, I hope you’re doing well. I’m Sahil, a certified cybersecurity specialist with 16+ years of experience conducting full-scope web application penetration tests for production-grade systems. I specialize in identifying authentication, session handling, access control, and data protection weaknesses without impacting live availability. For your project, I will perform deep testing of login flows, password reset mechanisms, session management, and authorization logic, strictly aligned with the OWASP Testing Guide. I use trusted tools such as Burp Suite, OWASP ZAP, SQLMap, and custom manual testing techniques, while ensuring all findings are safely reproducible in your staging environment. You will receive a complete test plan, risk-rated report mapped to OWASP Top 10, detailed exploitation evidence, and clear remediation steps. I also provide an executive summary and optional retesting after fixes. My hourly rate is $20/hr, I can start immediately, provide hourly or fixed-price engagement, and we can discuss the final budget based on complexity. Best regards, SaD
₹2.500 INR 40 gün içinde
5,2
5,2

Hi, I am Haresh, having 14+ years of experience in Software Testing Industry. - Having unique blend of knowledge in Quality Product Delivery, Processes Management, Functional testing, Integration and regression testing, load and Perfromance Testing which help me to take the Quality of the software to the next level. - Hands on experience on testing Desktop, Web Based, Mobile application and ERP based application. - Hands on experience on automation testing tools on selenium webdriver, jmeter, katalon studio, Appium, cypress, selenium with TestNG freamwork etc.. - Thorough understanding of Product Delivery Life Cycle, Software Testing Life Cycle and Software Development Life Cycle. - Experience in Well conversant with writing Test plan,Test Cases,Bug report, Release Note and Product Health Report. - Worked in various domains like Finance, Retail, Web Portals, Healthcare, ecommnerce, CMS, Eduction Portal, Life Insurance, ERP system etc. - I do have require mobile devices to test mobile view or applications like android and iOS applications. - I have hands on experience with Git, postman, MSSQL Server. Kindly review my profile and let me know you view over the same. Thanks, Haresh
₹2.500 INR 40 gün içinde
5,2
5,2

hello, can you send me the details and the target url of the web app in the chat messages? i'll check and will update you the progress as soon as possible :)
₹2.500 INR 40 gün içinde
4,3
4,3

Good evening , How are you? I hope this proposal finds you well. I have checked your project (Top-Tier Web Penetration Test), which lies in the field of my certification & experience. This is to inform you that I have KEENLY gone through your project description, CLEARLY understood all the project requirements as instructed in your project proposal and this is to let you know that I will perfectly deliver as desired. Being in possession of all stated required skills like; Risk Assessment, Network Security, Data Protection, Testing / QA, Web Security, Usability Testing, Penetration Testing and Software Testing:, as this is my field of professional specialization having completed all certifications and developed adequate experience in the respective field, I hereby humbly request you to consider my bid for professional, quality and affordable services that meet all your requirements. I always guarantee timely delivery and unlimited revisions where necessary hence you are assured of utmost satisfaction when working with me. Please send me a message so that we can discuss more and seal the project. WELCOME.
₹2.500 INR 40 gün içinde
1,0
1,0

Hello, and thank you for the clear project scope. I’m an experienced penetration tester with a strong focus on web application security, authentication flows, and secure data handling. Your requirements align directly with my expertise, especially around login mechanisms, session management, password reset flows, and access-control validation. I follow OWASP Testing Guide methodologies and combine manual techniques with industry-standard tools such as Burp Suite, OWASP ZAP, Kali utilities, and custom scripts. All findings will be fully reproducible in your staging environment and gathered without disrupting your production service. My deliverables include: • Kick-off call and detailed test plan • Safe, methodical testing across all in-scope components • Evidence-supported findings (screenshots, traffic logs, PoCs) • Risk-rated vulnerability report mapped to OWASP Top Ten • Executive-level summary for non-technical stakeholders • Optional retest after fixes I can start as soon as the NDA is in place, and I maintain clear communication and respect all safe-testing windows. Looking forward to helping you strengthen your application’s security posture Availability I can begin immediately once the NDA is signed. Looking forward to working with you and helping strengthen the security of your platform.
₹2.500 INR 50 gün içinde
0,0
0,0

I bring strong manual testing experience, attention to detail, and a proven ability to deliver high-quality results. I ensure clear communication, timely updates, and thorough testing to meet your project requirements effectively. Why I’m the best candidate: With 2.9 years of hands-on experience in manual, API, and regression testing, I provide reliable, accurate, and efficient work. I focus on understanding the project needs, identifying issues early, and delivering excellent, error-free outcomes.
₹2.500 INR 40 gün içinde
0,0
0,0

Hello, I’m a cybersecurity specialist with strong experience in web application penetration testing. I will test your production app with a focused approach on authentication, session management, password reset flows, access control, and any area handling sensitive data. All work will follow the OWASP Testing Guide and be safely reproducible in your staging environment. Why I’m a great fit: • 6+ years in offensive security and web app testing • Skilled with Burp Suite, OWASP ZAP, SQLMap, Kali tools, and custom scripts • Strong reporting: clear evidence, PoCs, and executive summaries • Zero-interruption testing and professional communication Deliverables: • Kick-off call • Test plan (methods + tools) • Exploitation evidence (screenshots, requests/responses, PoCs) • Risk-rated report mapped to OWASP Top Ten • Executive summary • Optional retest after fixes I can start immediately once the NDA is in place and will provide clear, actionable results that help you secure your application.
₹2.500 INR 40 gün içinde
0,0
0,0

Hello there, I am a Certified ethical hacker who has over 10 years experience with a lot of projects. I will be glad if the job is giving to me. I will do my assessment against owasp top 10 and send you executives summary report.
₹2.500 INR 40 gün içinde
0,0
0,0

I am a Security & QA Engineer specializing in web penetration testing, OWASP Top 10 analysis, authentication/session testing, and secure data-flow reviews. My approach follows the OWASP Testing Guide, ensuring safe and reproducible results on production and staging. Scope covered: ✔ Authentication & login flow ✔ Session/token security ✔ Password reset ✔ Access control & role validation ✔ Sensitive data exposure checks Deliverables: • Test plan + methodology • Evidence-based findings (screenshots, PoCs) • Risk-rated OWASP report with clear fixes • Executive summary • Free retest after remediation I ensure clear communication, safe testing windows, and high-quality reporting. Ready to start immediately once the NDA is in place.
₹2.500 INR 40 gün içinde
0,0
0,0

Hi. Currently i am working for a banking project where we do multiple web application and Mobile Application pentesting daily.
₹3.000 INR 20 gün içinde
0,0
0,0

I have 4 years of experience in web and mobile application security assessment across various technologies. I am an eMAPT-certified professional with strong expertise in performing VAPT using manual techniques and industry-standard tools. My approach covers business logic testing, authentication flaws, and OWASP Top 10 vulnerabilities, ensuring thorough assessment and remediation support for web and mobile based applications.
₹2.500 INR 40 gün içinde
0,0
0,0

Hi, I've heard you need an experienced security professional to carry out a full scope penetration test. You've found me with 4+ years of experience who can carry out a full scope penetration test against your web application. Approach: I will go for information gathering, scanning with the help of tools like OWASP Zap, nikto, nmap etc. After that i will go for Authentication, Authorization, Input validation, Injection, Security misconfiguration etc. Deliverables: I will provide a detailed report with description, impact and PoC's After fixes I retest to confirm closure. I am ready to test, are you? Let's connect and secure your application together. Thanks & Regards, Mohd Haris
₹2.500 INR 10 gün içinde
0,0
0,0

I am an experienced penetration tester specializing in web application security, and I would like to conduct a focused full-scope assessment of your production application with emphasis on authentication workflows, session management, password reset mechanisms, access-control logic, and any components that handle sensitive data. My approach follows OWASP standards, combining manual exploitation with targeted automation to identify critical vulnerabilities such as broken authentication, IDOR, session hijacking, and data-exposure risks. The engagement will remain strictly within the defined scope—no network, API, or social-engineering testing unless directly tied to authentication or data protection. You will receive clear, evidence-based findings along with actionable remediation steps to strengthen the security posture of your application.
₹2.500 INR 40 gün içinde
0,0
0,0

I bring one year of focused experience as a Manual Test Engineer, specializing in end-to-end quality assurance across multiple cycles, including functional and regression testing. While this marks my first engagement with you, possess a proven ability to systematically design and execute test cases, identify complex defects, and deliver precise, actionable bug reports. I am committed to maintaining exceptional product integrity and ensuring a seamless, high-quality user experience for your organization. most importantly this was my 1st bid , I'm exited about it
₹2.500 INR 40 gün içinde
0,0
0,0

I will perform a full-scope penetration test on your production web application, focusing on authentication flows, session management, access control, and all sensitive data processes. Using OWASP-compliant methodologies and industry-standard tools, I will identify, validate, and document any weaknesses without disrupting your live service. Deliverables include a detailed test plan, reproducible exploitation evidence, a risk-rated vulnerability report mapped to OWASP Top Ten, an executive summary, and an optional retest after fixes. I can begin as soon as the NDA is in place and will maintain clear, professional communication throughout the engagement.
₹2.500 INR 40 gün içinde
0,0
0,0

Hlo sir I am an ethical hacker working as an industry in Pentreation testing and I have full knowledge in Pentreation tester i can do testing with all types of tool with analyze of website and perform automation and manual testing in that and apart from that I can do with my own custom script with that having experience and knowledge in that already working in industry and having CEH certificate
₹2.500 INR 40 gün içinde
0,0
0,0

Hello Sir/Madam, It is a pleasure to have you know that I have done similar research in the Hackerone Bug bounty programs where I have contributed to the security of several Companies' Websites. I started Penetration Testing with my knowledge of the OWASP TOP TEN vulnerabilities as my priority focus because of its impact, and I have a good experience with manual testing to uncover undetected using automated tools. I have a strong experience using tools like NMAP, Burpsuite, OWASP ZAP, SQLMAP, and CHROME WEB DEVELOPER TOOL. Other required tools I easily assess from the OSINT FRAMEWORK and Kali Linux help and man commands. I was recently introduced to Freelancer and I am willing to negotiate prices to your favour to acquire this job, because I need to boost my profile. I look forward to helping you secure your Web Application. Thank you.
₹2.500 INR 40 gün içinde
0,0
0,0

Indore, India
Ara 7, 2025 tarihinden bu yana üye
₹1500-12500 INR
€250-750 EUR
$25-50 USD / saat
$30-250 USD
₹100-400 INR / saat
$250-750 USD
$30-250 USD
$60 USD
$10-30 USD
₹12500-37500 INR
₹100-400 INR / saat
$30-250 USD
$400-500 USD
$60 USD
$250-750 USD
₹12500-37500 INR
$30-250 AUD
$2-8 USD / saat
₹1500-12500 INR
$250-750 USD