Website Application Manual Pen Testing and vulnerability fix and generate Report -- 2
Budget: ₹1,500 – ₹12,500 INR
I’m ready to bring in a security specialist to run a thorough, manual penetration test on my live e-commerce application. Automated scanners aren’t enough for this engagement—I need human-driven testing that uncovers real-world attack paths.
Here’s what I’m looking for:
• A full manual assessment covering all SQL Injection, Cross-site Scripting (XSS) and Cross-site Request Forgery (CSRF),Web Application Penetration Testing , Network Penetration Testing Services External or Internal, Web Services Testing, API Testing
• Exploitation-level proof of concept for every confirmed issue, with clear, reproducible steps.
• A concise risk-ranked report that separates critical, high, medium and low findings, followed by practical remediation advice written in plain language my dev team can action immediately.
• A executive summary suitable for non-technical stakeholders.
Please let me know your preferred methodology (OWASP, PTES, etc.), estimated time to complete, and any information you need from me before kickoff (test credentials, staging URLs, headers, or traffic capture). I’m aiming for a quick turnaround but can be flexible to ensure depth and accuracy.
Here’s what I’m looking for:
• A full manual assessment covering all SQL Injection, Cross-site Scripting (XSS) and Cross-site Request Forgery (CSRF),Web Application Penetration Testing , Network Penetration Testing Services External or Internal, Web Services Testing, API Testing
• Exploitation-level proof of concept for every confirmed issue, with clear, reproducible steps.
• A concise risk-ranked report that separates critical, high, medium and low findings, followed by practical remediation advice written in plain language my dev team can action immediately.
• A executive summary suitable for non-technical stakeholders.
Please let me know your preferred methodology (OWASP, PTES, etc.), estimated time to complete, and any information you need from me before kickoff (test credentials, staging URLs, headers, or traffic capture). I’m aiming for a quick turnaround but can be flexible to ensure depth and accuracy.