Web Application Security Testing

Job ID: 40336467

Budget: $250 – $750 USD

I need a seasoned security specialist to carry out a focused penetration test on my production-level web application. The goal is to uncover exploitable vulnerabilities, assess our exposure against the OWASP Top 10, and verify that existing controls truly protect user data and business logic.

The scope is strictly the web layer: front-end, back-end APIs, session management, authentication, and data-handling workflows. Although an accompanying iOS build exists, this engagement is limited to the browser-based experience and its underlying services.

Please use recognised methodologies (OWASP, PTES) and trusted tooling such as Burp Suite, OWASP ZAP or equivalent. Black-box with light credentials is preferred so you can also probe privilege escalation scenarios.

Deliverables
• A clear, reproducible vulnerability report ranked by criticality and mapped to CVSS
• Proof-of-concept evidence (screenshots, request/response pairs, or short videos) for every high or critical finding
• Actionable remediation guidance that developers can implement without guesswork
• A brief executive summary for non-technical stakeholders

I would like the initial findings within one week of project start and the full report no later than two weeks after that. If you have recent web app pentest experience and can meet this timeline, I’m ready to get started.