Need ethical hacker for testing

Job ID: 40387204

Budget: ₹250,000 – ₹500,000 INR

I need a seasoned ethical hacker to perform a full-scale security audit of one of my production web applications. The primary goal is to uncover code-level vulnerabilities—anything from insecure input handling to flawed session management—and provide a clear remediation plan. While the audit may touch on broader OWASP issues, I’m specifically interested in how the current codebase could be exploited and what exact fixes will close those gaps.

Here is how I see the engagement unfolding:

• Conduct a thorough review of the live application and its underlying source code, using industry-standard tools such as Burp Suite, OWASP ZAP, static analysis utilities, and any custom scripts you rely on.
• Deliver a detailed report that ranks each finding by severity, explains the exploit path, and outlines practical mitigation steps. Code snippets or proof-of-concepts are welcome where relevant.
• Wrap up with a brief debrief session (video or written) so I can clarify any questions before pushing changes to production.

I’ll grant you test-environment access, API keys, and any documentation you require once we finalize terms. The audit should respect current uptime SLAs—no testing that could disrupt service.

Acceptance criteria:
– At least one pass of automated and manual testing covering the full feature set.
– A vulnerability matrix with CVSS scoring or a comparable rating scheme.
– Actionable remediation advice that my development team can implement without guesswork.

If you have recent experience auditing web apps for code vulnerabilities and can commit to a concise turnaround, let’s move forward.