
Closed
Posted
Paid on delivery
Freelance Job Post – Ethical Hacker / Penetration Tester Title: Ethical Hacker / Penetration Tester Required for Security Assessment Description: We are looking for a certified ethical hacker or penetration tester to perform a comprehensive security assessment of our digital assets. The engagement is strictly authorized and limited to systems that we own or have explicit written permission to test. Scope of work: * Web application security testing * API security assessment * Network vulnerability assessment * Mobile application security testing (if applicable) * Server and cloud security review * Authentication and access-control testing * Configuration review * Misconfiguration detection * Vulnerability identification and risk analysis * Security recommendations and remediation guidance Deliverables: * Executive summary report * Detailed vulnerability report * Risk ratings (Critical, High, Medium, Low) * Proof of concept for identified issues (where appropriate) * Step-by-step remediation recommendations * Retesting after fixes (optional) Requirements: * Prior penetration testing experience * Relevant certifications preferred (e.g. EC-Council CEH, OffSec OSCP, CompTIA Security+) * Ability to sign an NDA if required * Experience with modern web and cloud environments Important: Testing is authorized only for assets that we own or have explicit written permission to assess. No unauthorized access, data extraction, or attacks on third-party systems are permitted.
Project ID: 40533190
25 proposals
Remote project
Active 13 hours ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
25 freelancers are bidding on average ₹27,072 INR for this job

Hi, I'm ready to sign the NDA but please confirm that this is a legitimate Ethical Hacking task and you have full authorization of performing penetration testing on the remote/destined servers and services. Thanks
₹37,500 INR in 3 days
7.0
7.0

Hi there, This is exactly the kind of engagement I specialize in. I'm a CEH-certified penetration tester and ex-hacker with over 10 years of hands-on experience in offensive security. I've completed 109 projects on Freelancer with a 4.9 rating and hold Preferred Freelancer status. Your scope aligns perfectly with what I do daily - web app testing, API assessments, network vulnerability scanning, cloud security reviews, and auth/access control testing. I work with tools like Burp Suite, Nmap, Metasploit, OWASP ZAP, and custom scripts depending on the target. Deliverables I'll provide: executive summary for management, detailed technical report with CVSS-rated findings (Critical/High/Medium/Low), working PoCs where safe to demonstrate, and clear remediation steps your dev team can follow. Happy to do retesting after fixes too. I've done similar comprehensive assessments for clients across SaaS platforms, fintech apps, and enterprise environments. Check my profile and reviews from past security projects: freelancer.com/u/ahad47 Also happy to sign an NDA before we start. Ready to kick off immediately. Note: This is a placeholder bid. The price is fully negotiable and can be adjusted based on the actual scope and requirements of your project.
₹37,500 INR in 7 days
6.8
6.8

As an accomplished Network, Cybersecurity, VoIP, and System Engineer with over a decade of experience, I am confident that I possess the skillset necessary to perform an extensive security assessment on your digital assets. My expertise ranges from network administration, VOIP, wireless, security solutions, virtualization, system administration and cloud computing - all of which are vital for addressing the specific requirements of your project. Moreover, my proficiency aligns well with the ethical hacking and penetration testing services you seek. I am familiar with working within authorized boundaries and adhere strictly to protocols. Being versed in Cisco ASA, Fortinet, Palo Alto, Checkpoint and PFsense helps me navigate complex security systems effortlessly for vulnerability identification and risk analysis. Lastly, rapid response time is another advantage you would enjoy if you select me. I pride myself on delivering exceptional results within tight schedules without ever compromising quality. With this in mind, I look forward to offering you a detailed vulnerability report alongside risk ratings and actionable steps for remediation. The security landscape may be evolving rapidly but rest assured that my capabilities will faithfully keep pace.
₹25,000 INR in 5 days
6.2
6.2

Certified AWS Solutions Architect – Professional Certified AWS Solutions Architect – Associate CISA Certified Security Expert 16+ Years of Industry Experience in Information Security, Compliance & Risk Management Hi, I'm excited about the opportunity to assist with your security assessment. With 16+ years of experience in cybersecurity and compliance, I specialize in Web Application Penetration Testing and security assessments aligned with industry best practices such as OWASP Top 10 and CWE standards. For this engagement, I can perform a comprehensive web application security assessment, identify vulnerabilities, validate authentication and access-control mechanisms, detect misconfigurations, assess business logic flaws, and provide detailed remediation guidance. My deliverables include an executive summary, detailed vulnerability report with risk ratings (Critical, High, Medium, Low), proof-of-concept evidence where applicable, and actionable remediation recommendations. Please note that our expertise is focused on Web Application Security Testing only and does not include mobile application penetration testing. Regarding the budget, we can discuss and finalize it after gaining clarity on the application scope, number of URLs/modules, authentication requirements, and testing depth. Availability: 8 hours/day and available for discussion. Best Regards, SHD
₹35,000 INR in 7 days
5.3
5.3

Hello, I am an experienced cybersecurity professional with hands-on expertise in ethical hacking, penetration testing, vulnerability assessment, and security auditing of web, API, network, server, cloud, and mobile environments. For this engagement, I will perform a comprehensive security assessment of the authorized assets you provide, focusing on identifying vulnerabilities, misconfigurations, authentication weaknesses, access-control issues, and potential attack vectors. My methodology follows industry-standard practices, including OWASP, PTES, and security best practices. Deliverables will include: • Executive Summary Report • Detailed Vulnerability Assessment Report • Risk Classification (Critical, High, Medium, Low) • Proof of Concept (where applicable) • Actionable Remediation Recommendations • Optional Retesting After Fixes My experience includes: ✔ Web Application Penetration Testing ✔ API Security Testing ✔ Network & Infrastructure Assessment ✔ Cloud Security Reviews ✔ Authentication & Authorization Testing ✔ Security Configuration Audits I understand the importance of responsible disclosure, confidentiality, and legal compliance. I am comfortable signing an NDA and will ensure all testing remains strictly within the authorized scope provided by your organization. I would be happy to discuss your environment, objectives, and timeline to provide a tailored security assessment plan. Looking forward to working with you. Best Regards, Dhruv Patel
₹22,500 INR in 7 days
3.8
3.8

Hello! I’m excited to apply for your project “Web App Security Penetration Test” I'm a cybersecurity enthusiast and I have certifications such as eJPT, eWPT, and eWPTX. My main focus is web, Network and API pentesting. Here’s what I will deliver: ✅Full documentation of tools, commands, and reasoning (e.g., Burp Suite, nmap). ✅Screenshots and short videos where relevant. ✅Clean, professional report in Markdown or PDF format. Best regards, Mohamed
₹25,000 INR in 7 days
2.9
2.9

Hi, I have 8+ years of experience in cybersecurity, penetration testing, and ethical hacking across web, API, mobile, and cloud environments. My work includes identifying real-world vulnerabilities, validating exploitability, and providing clear, actionable remediation guidance aligned with OWASP and industry security standards. I can support your engagement with: • Web application security testing (OWASP Top 10 coverage) • API security assessment (auth, rate limiting, injection, broken access control) • Authentication and access-control testing (RBAC, session handling, privilege escalation) • Server and configuration review for misconfigurations and exposure risks • Mobile app security testing (if applicable, OWASP MSTG-based approach) • Vulnerability validation with clear proof-of-concept where required • Structured reporting with severity ratings, business impact, and remediation steps • Retesting after fixes to confirm resolution I also have strong experience documenting findings in executive-friendly reports as well as detailed technical breakdowns for development teams. I can sign NDA and start immediately.
₹27,555 INR in 15 days
3.0
3.0

Hi boss I focus on real-world attack vectors, not only automated scanner results. A few questions before we proceed: What technologies are in scope (PHP, Node.js, Python, WordPress, etc.)? Are the servers hosted on cloud platforms like Amazon Web Services, Google Cloud, or Microsoft Azure? Do you want black-box, white-box, or authenticated testing? Is mobile application testing included in this engagement? Do you have a preferred compliance standard (OWASP Top 10, PCI-DSS, ISO 27001)? Looking forward to working with you. Best regards.
₹20,000 INR in 2 days
1.8
1.8

I run security audits for SaaS and enterprise clients—typical scope: web apps, APIs, cloud infra, and config review. My last full assessment covered React, Node.js backend, AWS, and included authenticated and unauthenticated testing, then retesting after fixes. Tools: Burp Suite, OWASP ZAP, Nmap, and manual coverage on logic flaws and access control. Reports are plain-English, with PoC and exact code or config to patch the issue. I’m used to NDA/code-of-conduct compliance. Are your apps mostly Node/React, or another stack? Cloud is AWS, GCP, or Azure? Pradeep
₹25,000 INR in 7 days
1.7
1.7

Your scope needs a proper authorization boundary first, because web, API, cloud and server testing can get messy fast if targets, accounts and exclusions are not written down clearly. I would start by locking the target list, allowed test windows, credentials if needed, and any production limits. Then I would work through the web app and API surface, auth and access control checks, exposed network services, cloud or server misconfigurations, and common paths that lead to data exposure or privilege issues. You would get one clear deliverable in 3 days for 37500 INR: a risk-ranked penetration test report with reproducible PoCs, affected endpoints or hosts, impact, evidence, and practical remediation steps your team can actually apply. This is an indicative estimate from the brief, I will give you a firm quote once the scope is locked. If you want optional retesting after fixes, I can handle that after the first report, but I would keep this first job focused on the assessment and remediation pack.
₹37,500 INR in 3 days
1.3
1.3

Hello, I am interested in assisting you with the authorized security assessment of your digital assets. ? I have 6+ years of hands-on experience in Web Application, API, Network, Mobile, Server, Cloud, and Configuration Security Assessments, and I hold CEH, CRTP, and CRTA certifications. My approach is manual-first and focused on identifying real-world risks such as authentication issues, access-control flaws, misconfigurations, business logic issues, and security gaps. For this engagement, I can help with: ? Web application security testing ? API security assessment ?️ Network vulnerability assessment ? Mobile testing, if applicable ☁️ Server and cloud review ? Authentication and access-control testing ⚙️ Misconfiguration detection ? Risk analysis with remediation guidance Before starting, I will confirm the approved scope, testing window, environments, user roles, and restrictions to ensure safe, controlled testing. All activities will be strictly limited to authorized assets only. ✅ Deliverables will include an executive summary, detailed vulnerability report, severity-wise risk ratings, PoC where appropriate, business impact, and step-by-step remediation guidance. I can also support retesting after fixes if required. ? I am comfortable signing an NDA before starting. ? Please share the scope, URLs/IPs, test accounts, API documentation, and cloud/server details. Once reviewed, I can provide the timeline, approach, and commercials. Regards, Keyur
₹37,500 INR in 7 days
0.6
0.6

I understand that hiring a freelancer without reviews requires trust. One advantage of working with someone building their reputation is that you get their full attention and commitment. Before submitting this proposal, I took the time to understand what success looks like for this project. I take every project personally because my reputation depends on it. For your security assessment project, I will approach it with a meticulous eye for detail, conducting thorough web application, API, network, mobile app, server, and cloud security assessments. I will provide you with comprehensive reports, risk ratings, proof of concept, and detailed remediation recommendations. My extensive experience in penetration testing and relevant certifications ensure quality work. While new to Freelancer.com, I prioritize communication, reliability, and delivering exceptional results. I am currently offering discounted rates to build my reputation. I'd love to chat more about your project! The worst that can happen is you walk away with a free consultation. Regards, Jabu
₹18,750 INR in 7 days
0.0
0.0

Hello, I am a DevOps Engineer with a PG-DITISS certification from CDAC specializing in IT Infrastructure and System Security. I have hands-on experience with cloud platforms (AWS, Azure, and GCP), Linux administration, CI/CD pipelines, containerized environments, and security best practices. My background in cybersecurity includes web application vulnerability assessment, penetration testing, security analysis, and infrastructure hardening. Combining DevOps and security expertise allows me to identify vulnerabilities across applications, servers, and cloud environments while providing practical remediation recommendations. I would be happy to assist with your website security assessment and provide a detailed report with findings, risk ratings, and mitigation steps. Looking forward to discussing your requirements.
₹25,000 INR in 7 days
0.0
0.0

Hello, I am a Cybersecurity student and Penetration Tester with hands-on experience in web application security, API testing, vulnerability assessment, and bug bounty hunting. I have worked with Gurugram Cyber Police on cybercrime investigations and have responsibly disclosed vulnerabilities to multiple organizations. For this project, I can perform a comprehensive security assessment covering web applications, APIs, authentication mechanisms, server configurations, and common misconfigurations. I will provide a detailed report with risk ratings, proof of concept, and remediation recommendations. I can start immediately and am available to sign an NDA if required. Regards, Harsh Bardhan
₹15,000 INR in 10 days
0.0
0.0

Hello, I understand the importance of conducting an authorized and well-documented security assessment without affecting production stability or business operations. I’m a Cyber Security Analyst and Penetration Tester with hands-on experience in Web Application VAPT, API Security Testing, authentication testing, access-control validation, vulnerability assessment, and security research. I hold the Certified Ethical Hacker (CEH v13) certification and have experience identifying vulnerabilities such as IDOR, XSS, authentication flaws, insecure JWT implementations, session management weaknesses, and API misconfigurations using tools such as Burp Suite Professional, Nmap, SQLmap, Metasploit, and Wireshark. I have also reported vulnerabilities through responsible disclosure and bug bounty programs involving organizations including Dell, Meesho, Frontegg, Poorvika, and Audible. For this engagement, I can provide: • Web & API security assessment • Authentication and authorization testing • Configuration and misconfiguration review • Risk-based vulnerability reporting • Proof-of-concept validation • Remediation recommendations • Optional retesting after fixes I also actively write technical security blogs and lab writeups related to real-world attack scenarios and vulnerability analysis. I can start immediately, work under NDA if required, and deliver detailed professional reports with actionable remediation guidance. Looking forward to working with you.
₹15,000 INR in 7 days
0.0
0.0

Hello, We are a team of 11 experienced IT professionals specializing in Ethical Hacking, Cybersecurity, and Cloud Computing. With extensive industry experience, we provide reliable, secure, and professional solutions tailored to our clients' needs. We are committed to delivering high-quality work and ensuring complete customer satisfaction. We look forward to helping you with your project. Thank you. Contact: johnksaver at gmaildotcom
₹35,000 INR in 10 days
0.0
0.0

Hello — I’m a security researcher with 5 years of hands-on experience in application and infrastructure security, and I’d like to help you secure your systems. I specialize in web and API penetration testing (including JWT/OAuth flows, SSRF, CSRF, and business logic issues), thick-client and mobile application assessments (static/dynamic analysis, root/jailbreak detection, SSL pinning, sensitive data exposure), and internal security audits aligned to OWASP and industry best practices. I use tools such as Burp Suite, MobSF, Trivy, and custom scripts to discover and verify vulnerabilities, and I produce clear, prioritized remediation reports with PoCs and recommended fixes. I communicate progress regularly, can work under NDA, and tailor test scope to your compliance needs. Available to start immediately and deliver high-quality findings with remediation guidance. Let’s discuss scope, timeline, and budget so I can provide a detailed plan. Certifications Ceh Ewptx Crtp
₹30,000 INR in 8 days
0.0
0.0

Expert Penetration Tester with Bug Bounty experience. Ready for your full VAPT (Web, API, Network, Mobile). Professional report with PoC & remediation. NDA OK. Can start immediately.
₹25,000 INR in 14 days
0.0
0.0

I am a certified ethical hacker ready to secure your digital assets. I will perform a comprehensive vulnerability assessment covering your web applications, APIs, network infrastructure, and cloud servers to identify misconfigurations and authorization flaws. Following industry standards like OWASP, I will deliver a detailed technical report categorizing risks from critical to low,complete with clear Proof of Concepts. You will also receive step-by-step remediation guidance to help your developers easily patch every loophole. I operate strictly within authorization boundaries and maintain absolute confidentiality. Let’s connect to discuss your architecture and start securing your platform.
₹25,000 INR in 7 days
0.0
0.0

Hello, I am interested in assisting with your Ethical Hacking / Penetration Testing project. I have a Computer Engineering background and a strong understanding of web application security, API testing, vulnerability assessment, authentication testing, and security best practices. I follow industry-standard methodologies such as OWASP and responsible disclosure principles, ensuring that all testing is performed only on authorized systems. For this project, I will: - Perform a comprehensive security assessment of the agreed scope - Identify vulnerabilities and analyze their potential impact - Provide clear risk ratings (Critical, High, Medium, Low) - Include proof of concept where appropriate and safe - Deliver practical, step-by-step remediation recommendations - Support optional retesting after fixes are implemented Deliverables: - Executive Summary Report - Detailed Vulnerability Assessment Report - Risk Analysis with Prioritized Findings - Remediation Guidance - Retest Report (if required) I am committed to maintaining confidentiality, professionalism, and clear communication throughout the engagement. I would be happy to discuss the project scope, timeline, and deliverables in more detail before we begin. Thank you for your consideration. I look forward to working with you. Best regards, Harsh
₹25,000 INR in 7 days
0.0
0.0

Anantapur, India
Payment method verified
Member since Jul 10, 2024
₹12500-37500 INR
₹12500-37500 INR
₹750-1250 INR / hour
₹12500-37500 INR
₹600-1500 INR
€750-1500 EUR
$250-750 AUD
₹1500-12500 INR
$250-750 USD
₹12500-37500 INR
$30-250 USD
$250-750 USD
min €36 EUR / hour
₹12500-37500 INR
$20000-35000 USD
₹1500-12500 INR
$250-750 USD
$8-15 USD / hour
$15-25 USD / hour
₹12500-37500 INR
₹12500-37500 INR
$2-8 AUD / hour
₹12500-37500 INR
$250-750 USD
$250-750 USD