Secure My Web Application

Job ID: 40258190

Budget: £20 – £250 GBP

I’m looking for an application-security specialist to give my production web app a thorough security treatment. The site is live, handles user data, and has grown faster than our in-house safeguards. I want someone who can step in, evaluate the current state of the code and infrastructure, discover weaknesses, and guide or implement the fixes.

Scope
• Focus strictly on the web-application layer—session handling, input validation, authentication, authorisation, business-logic flaws, and secure deployment practices.
• I’m open to any mix of techniques you feel will uncover issues: manual code review, automated scanning, penetration testing, or a structured vulnerability assessment. If you can combine several approaches, even better.
• Findings should be documented in a clear report that ranks each issue by severity, explains impact, and includes practical remediation steps.

Deliverables
1. Kick-off call to outline the attack surface and agree on testing boundaries.
2. Security assessment (tools of your choice: Burp Suite, OWASP ZAP, custom scripts, etc.).
3. Written report with vulnerabilities, evidence, and remediation guidance.
4. Follow-up session to walk through results and clarify fixes.

Acceptance Criteria
• All high- and medium-severity issues reproduced and demonstrated.
• Report delivered in PDF and editable format.
• Recommendations aligned with OWASP Top 10 and industry best practices.

If you have experience hardening large-scale web apps and can turn around a concise, actionable report, let’s talk and lock down timelines.