Security Auditing Jobs

Filter

My recent searches
Filter by:
Budget
to
to
to
Type
Skills
Languages
    Job State
    20 jobs found

    I run a remote-access astronomy setup and need help moving day-to-day telescope operations from our ageing Server #1 to a brand-new Windows machine (Server #2). Scope of work • De-commission or disable non-weather services on Server #1 while keeping its weather station reachable until we solve the credential issue. • Configure Server #2 so two imaging cameras—a Starlight Express and a QHYCCD5 II—can upload frames via FTP (or SFTP if you advise) without interruption. • Because the previous webmaster is out of business and we do not have the WinSCP login he used, I need either: – recovery of those credentials, or – a clean replacement workflow that achieves the same live-weather feed and file transfers. • Advise on whether we stay ...

    $426 Average bid
    $426 Avg Bid
    56 bids

    I need a seasoned ethical hacker to run a full-scope penetration test against my live website. The priority is to uncover weaknesses that could expose our database or allow logic flaws in the web application to be exploited. All findings must be mapped to PCI DSS requirements so I can demonstrate compliance to my acquiring bank. Here is what I expect: • A controlled black-box test using industry-standard toolsets such as Burp Suite, OWASP ZAP, sqlmap, nmap, plus any custom scripts you rely on. • No disruption to production; schedule your active exploits during an agreed maintenance window and keep traffic levels reasonable. • A written report that ranks every issue by risk and includes reproduction steps, screenshots or PoC code, and clear remediation guidance. &bull...

    $1344 Average bid
    $1344 Avg Bid
    36 bids

    I'm seeking a skilled penetration tester to evaluate the security of our network infrastructure. The testing should cover: - Firewalls and Routers - Wireless Networks - Servers and Endpoints Ideal candidates should have: - Proven experience in network penetration testing - Strong knowledge of security protocols and vulnerabilities - Relevant certifications (e.g., CEH, CISSP) - Ability to provide a detailed report with findings and recommendations Please share your experience and approach to this task.

    $227 Average bid
    $227 Avg Bid
    9 bids

    I need a skilled ethical hacker to carry out a focused penetration test on my production web application. The goal is to uncover any exploitable weaknesses before they become a problem, with particular attention to: • Data validation • Session management Once we sign an NDA I’ll share architecture notes, limited credentials, and a staging URL. Please stay within scope, avoid destructive techniques, and document every step so I can reproduce the findings. Deliverables I expect – A concise executive summary of overall risk – Detailed, step-by-step proof-of-concept for each issue discovered – Practical remediation advice ranked by priority – A retest summary after fixes (short verification pass) Tools such as Burp Suite, OWASP ZAP, or yo...

    $578 Average bid
    $578 Avg Bid
    16 bids

    I need a CISA-, DISA- or CERT-In-qualified professional to steer our young insurance brokerage through every stage of the IRDA Cyber Security Audit required for account renewal. At present we have virtually no formal artefacts, so you will be building the full documentation suite from the ground up. Core items include our cybersecurity policies, incident-response plans, access-control procedures and any additional processes the audit checklist demands. You’ll be free to introduce industry-standard frameworks and tooling provided they satisfy IRDA guidelines. Once the documents are in place I also want your guidance during the actual compliance cycle—answering auditor queries, closing gaps, and keeping the material evergreen for future renewals. If you already work with an aut...

    $595 Average bid
    $595 Avg Bid
    5 bids

    Security Audit and Penetration Testing for Web and Mobile Application Project Overview I am looking for an experienced security auditor and penetration tester to perform a comprehensive security audit of a web application and mobile application. The application handles sensitive user and platform data through a backend database. The main objective of this project is to identify security vulnerabilities and, most importantly, verify that unauthorized users cannot access data or functionality that they are not permitted to access. The primary focus is on backend authorization, API security, database access control, authentication, privilege escalation, and protection against unauthorized data access. Main Security Requirement I need to verify that a normal user cannot access another us...

    $406 Average bid
    $406 Avg Bid
    4 bids

    I'm seeking a comprehensive pre-launch code audit for my React Native application. The focus areas are FlatList performance, Firestore query optimization, and Security Rules validation. All three are equally critical. Key Requirements: - React Native FlatList Performance: Analyze and optimize rendering of dynamic data to ensure smooth scrolling and reduced latency. - Firestore Query Optimization: Review and enhance composite queries with multiple conditions, ensuring efficient data retrieval and minimizing read operations. - Security Rules Validation: Audit current security rules for Firestore to ensure data protection and integrity. Ideal Skills and Experience: - Expertise in React Native, specifically with FlatList and performance optimization. - Strong knowledge of Firestore, esp...

    $108 Average bid
    $108 Avg Bid
    40 bids

    My WordPress installation has been hit by a malware injection and I need it cleaned as soon as possible. I’m looking for a specialist who can: • Pin-point and remove every malicious file, script, or database entry • Restore any core, theme, or plugin files that have been compromised • Patch security holes and harden the site (firewall rules, secure permissions, up-to-date plugins, and a quality security plugin such as Wordfence or Sucuri) • Deliver a concise report outlining what was found, what was fixed, and how to avoid a repeat incident Once the site is sanitised I’d like you to run a fresh scan to confirm it’s 100 % clean, then put the site back online without downtime. Access to hosting, cPanel, and WordPress admin will be provided imme...

    $35 Average bid
    $35 Avg Bid
    66 bids
    VAPT Assessment
    3 days left
    Verified

    I need a comprehensive vulnerability assessment and penetration test performed on my production web application. Because I can grant limited internal knowledge—such as architecture diagrams, sample credentials, and API documentation—I would like the engagement run as a grey box exercise rather than pure black-box reconnaissance. 1 External VA/PT - 4 public IPv4/region - Full manual validation through WAF/security stack 2 Internal VA/PT - 10 segments / 250 live IPs - Credentialed + non-credentialed testing 3 Web Application — Virtual Trust - 1 app / 20 modules / 10 roles - Grey/white box + targeted production validation 4 Web Application — CrimsonLogic - 1 app / 20 modules / 10 roles 5 API Security 50 endpoints base - Full OWASP API Top 10 + business logic 7 Confi...

    $567 Average bid
    $567 Avg Bid
    17 bids

    I’m ready to invite an experienced ethical hacker to run a full-scope security assessment on my live application. Your mission is to simulate real-world attacks, identify every meaningful vulnerability, prove exploitation with clear evidence, and outline practical remediation steps. Here’s what I need from you: • A mutually agreed test plan that follows industry standards such as OWASP and NIST, tailored to the specific tech stack I will disclose once an NDA is in place. • Active exploitation of discovered weaknesses (no destructive methods) and thorough validation of each finding. • A concise executive summary plus a detailed, step-by-step technical report that includes risk ratings, reproduction steps, impacted components, and prioritized mitigation advice...

    $293 Average bid
    $293 Avg Bid
    18 bids

    Looking for an experienced developer/security tester to analyze an OTP-based login system on a website that I am authorized to test. I need someone who can review the website’s OTP authentication workflow, identify security weaknesses, and suggest a secure way to streamline the authorized login process. Requirements: OTP login workflow analysis Website/API security testing Authentication flow review Security vulnerability assessment Clear report of findings Only authorized security testing. No unauthorized access or credential bypass.

    $87 Average bid
    $87 Avg Bid
    20 bids

    I need concise, audit-ready documentation for all of our existing SIEM use cases so we can demonstrate HIPAA compliance without scrambling each time an auditor appears. The focus is firmly on the HIPAA Security Rule and Privacy Rule; other frameworks are out of scope for now. You will walk through every alert, correlation rule, and report currently active in our SIEM, map each one to the relevant HIPAA control, and write clear explanations of its purpose, data sources, trigger logic, and expected investigator actions. Where coverage is thin, flag the gap so we can decide whether to build a new rule or accept the risk. Deliverables: • A structured document (Word or Markdown) that lists each use case, its mapped HIPAA Security or Privacy Rule citation, triggering criteria, response wo...

    $10 / hr Average bid
    $10 / hr Avg Bid
    21 bids

    I need a detailed and actionable plan for configuring FortiAnalyzer so that it monitors our network devices, servers, and endpoints in a way that genuinely serves the security team. The solution must deliver real-time alerts, support deep historical data analysis, and provide clear compliance reporting so we can pass audits without scrambling at the last minute. You will start by reviewing our current Fortinet stack and logging policies, then map out the exact steps, settings, and best-practice dashboards required. I expect the deliverables to be concise yet thorough: • Architecture & data-flow diagram tailored to our environment • Step-by-step configuration guide for log collection, alert rules, and report templates • Sample real-time alert policies with severity ...

    $170 Average bid
    $170 Avg Bid
    17 bids

    Hello my name is CJ and I’m in need of serious assistance due to my pc getting hacked and need to make sure the steps I’ve done erase everything they installed down to the process.

    $24 / hr Average bid
    $24 / hr Avg Bid
    31 bids

    My OpenCart shop’s core has started flooding the error log with three recurring problems: • deprecated functions • outdated PHP-version warnings • deprecated class usage Because the errors sit inside core functionality, they risk slowing the site and exposing security gaps. I need a developer who knows OpenCart inside out to clean up the codebase, silence the warnings the right way (no error-suppression hacks), and leave every storefront feature working exactly as before. What I expect once you are done is simple: noticeably faster page loads and the peace of mind that the store is running on a tighter, more secure foundation. Typical tasks will include tracing the log entries back to the offending files, refactoring or replacing the legacy calls, testing...

    $439 Average bid
    $439 Avg Bid
    249 bids

    I run a custom-built e-procurement platform (PHP, Bootstrap front-end, MySQL) hosted on a private AlmaLinux VM and administered through DirectAdmin. Before pushing new features live, I need a thorough penetration test that zeroes in on web-application weaknesses. Please quote separately for a Black-Box assessment (no internal knowledge) and a Grey-Box assessment (limited credentials or code snippets provided). The goal is to understand how each testing style changes the risk picture and the remediation roadmap. Scope of the engagement • Authentication & authorization • Input validation & sanitization • Session management You may explore any additional vectors necessary to fully cover those three areas, but infrastructure, network layers, and the database e...

    $155 Average bid
    $155 Avg Bid
    138 bids

    I need a security specialist to lock down my publicly facing SOAP API. Right now it is shielded only by Basic Authentication, and I am concerned this is not enough to prevent unauthorized access. Your first task is to examine the existing endpoints, auth flow, and server configuration, identify every crack that could let an intruder in, and then propose concrete counter-measures. From there, I expect you to implement stronger mechanisms—whether that means WS-Security headers, message-level encryption, mutual TLS, moving to token-based or OAuth authentication, or another proven strategy you can justify. Please plan to: • Deliver a concise audit report outlining current vulnerabilities. • Apply and test the agreed-upon hardening measures in a staging environment. ...

    $241 Average bid
    $241 Avg Bid
    26 bids

    Tengo un servidor web Ubuntu alojado en Azure. Después de un ajuste en las reglas perdí todo acceso externo: no responden ni SSH (22) ni HTTP (80) ni HTTPS (443). Desde el portal de Azure todavía puedo entrar por consola de emergencia, así que la máquina está encendida; simplemente la capa de red o las reglas internas/externas están bloqueando el tráfico. Necesito que: • Analices y corrijas las Network Security Groups, reglas de firewall de la VM y cualquier configuración de iptables/ufw que impida estos puertos. • Restablezcas la autenticación SSH con claves existentes o, si fuera necesario, generes una nueva pareja y la dejes operativa. • Verifiques que el sitio web vuelve a ser accesible por HTTP...

    $152 Average bid
    $152 Avg Bid
    86 bids

    Especialista en Ciberseguridad / Forense Digital – Detección y Análisis de Malware / Spyware en Windows (Remoto) Descripción: Busco un profesional con experiencia comprobable en análisis de malware, respuesta a incidentes o informática forense para auditar un equipo con sistema operativo Windows ante sospechas de software espía (spyware) o persistencia no autorizada. Objetivos del servicio: Realizar un triaje inicial y análisis de persistencia (tareas programadas, servicios, entradas de registro, extensiones). Analizar procesos en memoria y tráfico de red saliente para descartar conexiones C2 o exfiltración de datos. Identificar y aislar artefactos maliciosos si los hubiera (análisis estático/din&aacut...

    $205 Average bid
    $205 Avg Bid
    2 bids

    Recommended Articles Just for You