
Closed
Posted
Paid on delivery
We are looking for an experienced cybersecurity expert to perform a comprehensive security assessment of our Python-based web application and infrastructure. Project Scope - Conduct a complete security audit of our application. - Identify vulnerabilities in the web application, APIs, database, and server. - Perform penetration testing and vulnerability assessment. - Review the application against the OWASP Top 10. - Analyze authentication, authorisation, session management, and input validation. - Review API security and identify potential attack vectors. - Assess SQL injection, XSS, CSRF, SSRF, IDOR, file upload, and other common vulnerabilities. -Review Linux server configuration and security hardening. - Assess cloud security configuration (if applicable). - Review source code for secure coding practices. - Investigate any suspicious activity or security incidents if discovered. - Provide a detailed report of findings, risk levels, proof of concept (where applicable), and recommended fixes. - Work with our development team to validate and verify remediation.
Project ID: 40573985
35 proposals
Remote project
Active 23 hours ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
35 freelancers are bidding on average ₹7,499 INR for this job

Hi there, You need a full security audit of a Python SaaS app – web, APIs, DB, server, cloud config, the whole stack. I've done dozens of these; I'll find SQLi, XSS, CSRF, IDOR, auth bypass, and any OWASP Top 10 gaps you have, plus harden the Linux box. What I'll do: ✅ Full black/grey-box pentest of your web app and APIs, OWASP Top 10 focused ✅ Source code review for secure coding flaws, auth/session weaknesses, input validation holes ✅ Linux server hardening audit – config, services, users, permissions, network exposure ✅ Cloud security configuration review (AWS/GCP/Azure) if you're using it ✅ Staged testing against a staging/uat environment first – zero prod impact until you approve ✅ Python web app security, API pentesting, MySQL security, cloud config audit ✅ OWASP Top 10, SQLi, XSS, CSRF, SSRF, IDOR, file upload attacks ✅ Linux hardening, firewall rules, least-privilege, kernel tuning ✅ Source code review for secure coding – Python frameworks (Django/Flask/FastAPI?) ✅ Microsoft® Certified: MCSA | MCSE | MCT ✅ 300+ projects delivered, 280+ five-star reviews Why me: I'll be available 24/7 during the engagement and will re-test every fix until you're satisfied. Are you running this on a managed cloud (AWS/GCP) or a bare-metal/VM setup, and which Python framework are you using? I can deliver this full assessment and remediation support in 7 days for ₹5,016 and start immediately.
₹5,016 INR in 7 days
6.7
6.7

Hi, I can perform a comprehensive security assessment of your Python-based SaaS application and infrastructure. With 16+ years of experience in cybersecurity, VAPT, cloud security, and secure application assessments, I follow OWASP Top 10, NIST, and industry-standard penetration testing methodologies. How I Can Help • Perform web application, API, server, and infrastructure security assessments • Review authentication, authorization, session management, and input validation • Identify SQL Injection, XSS, CSRF, SSRF, IDOR, file upload, authentication flaws, and business logic vulnerabilities • Assess Linux server hardening and cloud security configurations • Review source code for secure coding practices • Validate findings through safe proof-of-concepts and investigate any suspicious activity • Collaborate with your development team to verify remediation Tools & Methodology Burp Suite Professional, OWASP ZAP, Nmap, Nuclei, SQLMap, Nikto, Metasploit, and manual penetration testing. Deliverables • Executive summary and detailed technical report • Risk ratings, PoC evidence, and remediation guidance • Security recommendations aligned with OWASP Top 10 • Retest support after remediation We can discuss the budget and timeline later. Best regards, SaD
₹30,000 INR in 7 days
5.3
5.3

Hello, I understand you're looking for a complete security assessment of your Python web application, not just automated scanning, but practical testing with clear remediation guidance. I have experience with penetration testing, OWASP Top 10 assessments, API security, Linux hardening, secure code reviews, and vulnerability validation. I'll provide a detailed report with risk ratings, proof of concept where applicable, and actionable fixes, and can assist your team in verifying remediation. Before we begin, will testing be performed against a staging environment or your live production application?
₹7,000 INR in 7 days
4.9
4.9

With a dedicated track record in building secure, reliable systems with Python and MySQL, I am the cybersecurity professional you need for this project. I specialize in conducting full-stack security audits, vulnerability assessments, and penetration testing to identify potential risks. As a consultant, I've regularly worked with the Ten Most Critical Web Application Security Risks (OWASP Top 10), making me proficient in assessing your application for issues like SQL injection and XSS, ensuring you get maximum protection. Moreover, my knowledge extends beyond the application code; I have expertise in reviewing server and cloud configurations for Linux environments. My goal is not only to identify vulnerabilities but work closely with your development team to validate and verify the effectiveness of remediation measures. Finally, as the Founder of Solves Inn, I am genuinely invested in your long-term success. Rather than just completing a task, my focus is on building smart, scalable solutions that stand the test of time. So if you need more than just a security audit - someone who can provide effective patches and help you grow securely - then let's connect!
₹1,500 INR in 1 day
4.2
4.2

Hi, I can perform a complete authorized security assessment of your Python-based SaaS application, APIs, MySQL database, Linux server, and cloud environment. I’ll begin by confirming the approved scope and test environment, then assess the system against OWASP Top 10 and API security risks. Testing will cover authentication, authorization, session management, input validation, SQL injection, XSS, CSRF, SSRF, IDOR, file uploads, insecure configurations, and access-control weaknesses. I’m experienced with web application penetration testing, Python security review, API testing, Linux hardening, MySQL security, cloud configuration, source-code review, and remediation validation. Deliverables will include: * Web application and API audit * OWASP Top 10 assessment * Database and Linux server review * Cloud security review * Source-code findings * Risk ratings and business impact * Safe proof-of-concept evidence * Prioritized remediation guidance * Technical and executive reports * Retesting of agreed fixes All testing will remain within your written authorization. I’ll focus on practical vulnerabilities, clear evidence, and actionable fixes your development team can implement efficiently. Best regards Ankit
₹5,000 INR in 1 day
3.5
3.5

With a comprehensive understanding of cloud security, Linux, and MySQL, I am the ideal candidate for your SaaS security assessment. Drawing from my five years of experience as a full-stack developer, I've honed my skills to specialize in creating secure and scalable digital solutions. Additionally, my past projects have prioritized efficient risk management and mitigation strategies just like the one you require for your Python-based web application. While conducting a detailed security audit, I'll assess your application using OWASP Top 10 principles to identify vulnerabilities in your web applications, APIs, database and servers. Building on this assessment, I'll perform penetration testing and vulnerability assessments using tried and tested tactics to ensure that all potential attack vectors are accounted for. Finally, to spot any suspicious activities or incidents within your systems if discovered. My services don't stop at assessing your security infrastructure- following the completion of the audit, I will provide you with a customized report that lists all the potential vulnerabilities I found ranked according to risk-levels identified, accompanied by applicable proof of concept where required and actionable recommendations that address each issue effectively.
₹7,000 INR in 7 days
1.6
1.6

From Rajkot We provide detailed vulnerability assessment and technical review of existing security controls for all targeted systems and assets are provided with this service. in the assessment, our team will present a comprehensive vulnerability report, logical network connection drawing, complete cyber asset inventory and recommended mitigation actions. What you will get with this project? - Full assessment report with all vulnerability, recommendation, test cases and Observations in detail. - Kindly contact me to get sample report. Waiting for your reply for further discussion. Thanks & Regards, Keyur
₹7,000 INR in 7 days
0.6
0.6

Hi, Your full SaaS security assessment is something I've handled successfully before. Here's what I'll do: Audit the Python web app, APIs, authentication flows, and input handling against OWASP Top 10 Perform targeted penetration testing for SQLi, XSS, CSRF, SSRF, IDOR, and file upload risks Review server, database, and cloud security posture, then deliver a clear remediation report You'll also receive: 1 to 3 days of free support after delivery Milestone-based payment for a smooth and secure process Looking forward to working with you. Best regards, Ribal Ali
₹12,500 INR in 4 days
0.0
0.0

Hi, I read your project carefully and I can deliver exactly what you need. I can start immediately and show you the first preview in a few hours. Let’s discuss the details.
₹1,500 INR in 2 days
0.0
0.0

Hi, your time is valuable so I'll keep this short. I understand exactly what you're looking to achieve. I'll build or improve your solution using Cloud Security, MySQL, Risk Assessment, Penetration Testing, Internet Security, Web Security, Linux and Data Protection, keeping the code clean, the functionality reliable, and everything aligned with your requirements. My focus is on delivering a solution that works right the first time, not just getting the job done. One quick question: is there anything you'd like me to prioritize before I get started? Rameen
₹7,770 INR in 6 days
0.0
0.0

I am genuinely excited about the Full SaaS Security Assessment project and feel extremely confident in my professional capabilities for several reasons. Firstly, I possess a strong background in cybersecurity with in-depth knowledge of identifying vulnerabilities and conducting comprehensive security audits for various web applications, like the Python-based system you have. Secondly, my years of experience as both a Full Stack developer and a certified MERN Stack Developer give me a unique perspective that enables me to scrutinize your application and infrastructure from many angles ensuring all potential security loopholes are addressed. Regards Akif A
₹7,000 INR in 2 days
0.0
0.0

Hello, I have extensive experience in Web Application Penetration Testing, API Security, and Infrastructure Security, and I can perform a complete security assessment of your Python-based application. My approach goes beyond automated scanning—I manually validate every finding to identify real attack vectors while minimizing false positives. The assessment will cover the OWASP Top 10, authentication and authorization, session management, SQL Injection, XSS, CSRF, SSRF, IDOR, file upload vulnerabilities, API security, secure code review, Linux server hardening, database security, and cloud configuration (if applicable). If any suspicious activity is identified during the assessment, I'll investigate it and provide a detailed analysis. You'll receive a professional report with validated findings, severity ratings, proof of concept where applicable, business impact, and clear remediation recommendations that your developers can implement. I can also assist your team in verifying fixes after remediation to ensure all vulnerabilities are properly resolved. I focus on delivering actionable results rather than generic scanner outputs, and I'm confident I can help strengthen the overall security posture of your application. Looking forward to discussing the project further.
₹8,000 INR in 7 days
0.0
0.0

I've recently helped a client achieve a similar outcome in cybersecurity assessments. We can assist in conducting a comprehensive security audit for your Python-based web application and infrastructure. We will identify vulnerabilities, perform penetration testing, review against OWASP Top 10, and assess for common vulnerabilities like SQL injection and XSS. Our focus will be on secure coding practices, server configuration, and cloud security. With our expertise, we can provide a detailed report of findings and work with your team on remediation. Let's discuss further steps. Regards, Ezra.
₹4,400 INR in 7 days
0.0
0.0

Hi there, With over a decade of cybersecurity experience, I am confident in my ability to meet all your expectations for a comprehensive security assessment. Your emphasis on a "clean, professional, user-friendly, seamless, integrated, automated" approach aligns perfectly with my expertise. In reviewing your project details, I see the need for a thorough evaluation of your Python-based web application and infrastructure to identify vulnerabilities and mitigate risks effectively. As a seasoned cybersecurity professional, I specialize in penetration testing, vulnerability assessment, and secure coding practices. I am the right person for this project due to my proven track record in delivering top-notch security assessments. I am committed to speedy communication, fast turnaround, and building long-term relationships with returning customers. I am available for a quick chat! Regards, Adam F
₹6,250 INR in 7 days
0.0
0.0

As a cybersecurity expert, I understand the critical need for a thorough security assessment. I'll meticulously review your Python web app, APIs, and infrastructure to uncover vulnerabilities. My approach involves comprehensive penetration testing, OWASP Top 10 analysis, and reviewing authentication and server security. I'll provide clear reports and work closely with your team on fixes. For this project, I'll leverage Python security tools, OWASP resources, and Linux security best practices. Revisions and transparent communication are guaranteed throughout. Even if you don't hire me, the worst that will happen is that you'll end with a free consultation, so let's chat! Regards, Ryan. Could you please share how soon you need the security assessment completed to align our timelines effectively?
₹5,750 INR in 7 days
0.0
0.0

I noticed your need for a comprehensive security assessment for your Python-based web application and infrastructure. My team specializes in building websites for service businesses, ensuring clean, professional, and user-friendly solutions. We have 75+ 5-star reviews on similar projects and rank in the top 1% among 75 million users! We will help enhance your cybersecurity measures, ensuring a seamless, integrated, and automated security assessment process. How soon are you looking to kick off this project? Regards, Hamza
₹6,250 INR in 7 days
0.0
0.0

As an expert in cybersecurity and with my experience in performing a comprehensive security assessment, I am confident I would be the best fit for your project. My firm, Ayush Tech, is well-versed in delivering high-performance services at friendly prices, without compromising on quality. We understand the immense importance of safeguarding your Python-based web application and infrastructure from any potential threats. One of our core competencies is providing deep security assessments by conducting vulnerability assessments and penetration tests that would thoroughly evaluate your infrastructure. My proficiency extends to reviewing the OWASP Top 10, analyzing authentication protocols for any weaknesses, identifying API vulnerabilities and potential attack vectors. Furthermore, I'm also adept in assessing common vulnerabilities like SQL injection, XSS, CSRF, SSRF, IDOR, file upload intricately which would be crucial for your project's success. Finally, I understand that the real value of a thorough security assessment lies not only in identifying potential threats but also in working closely with the development team to validate and verify remediation measures. Rest assured that we will deliver a detailed report of findings with risk levels and recommended fixes as well as any proof of concepts where applicable. Choose us for a service that exceeds your expectations and secures your SaaS infrastructure basis all industry best practices!
₹1,500 INR in 7 days
0.0
0.0

Hello, I am a cybersecurity professional with hands-on experience in security operations, incident response, vulnerability analysis, log investigation, SIEM monitoring, malware analysis, and security reporting. I can perform a structured security assessment of your Python-based web application and supporting infrastructure, covering the web application, APIs, authentication, authorization, session handling, database interactions, Linux server configuration, and cloud components where applicable. The assessment will be aligned with the OWASP Top 10 and common API security risks. I will evaluate vulnerabilities such as SQL injection, XSS, CSRF, SSRF, IDOR, insecure file uploads, broken access control, weak input validation, authentication flaws, exposed services, and server misconfigurations. I can also review relevant source code and configuration files to identify insecure coding practices and potential attack paths. You will receive a detailed report containing an executive summary, technical findings, risk ratings, affected components, supporting evidence or proof of concept where appropriate, and prioritized remediation recommendations. I will also work with your development team to validate fixes and perform retesting of the identified vulnerabilities. All testing will be performed within the agreed scope and authorization, with clear communication throughout the project.
₹7,000 INR in 7 days
0.0
0.0

Hi, I can perform a complete security assessment of your web application and APIs within **5–7 days**. The engagement will include: * Source code review to identify security flaws and insecure coding practices * Black-box penetration testing from an attacker's perspective * OWASP Top 10 web application testing * API security testing (authentication, authorization, input validation, rate limiting, business logic, etc.) * Manual vulnerability verification to eliminate false positives * Risk-based findings with proof of concept where applicable * A detailed remediation report with recommendations for your developers * Retesting after fixes (if required) The assessment will follow industry best practices and focus on identifying real-world exploitable vulnerabilities rather than relying only on automated scans. I'd be happy to discuss your application architecture and testing scope before we begin. Looking forward to working with you.
₹5,000 INR in 5 days
0.0
0.0

Hello, Your Python web application needs a security assessment that goes beyond a checklist and delivers a clear, actionable remediation path. I can run that end-to-end review grounded in real Linux server hardening and production incident experience. I'm Carlos Porter, a Site Reliability Engineer with 15 years of Linux administration and 7 years of cloud support across Azure, AWS, and multiple VPS providers. I have hardened AlmaLinux, RHEL, SLES, and Ubuntu servers for security audits, applied OWASP-aware configuration reviews, and recovered compromised hosting environments. My database work covers MySQL, MariaDB, and PostgreSQL, so I can assess SQL injection risks and review query surfaces directly. I will start by mapping the application architecture, API boundaries, and server configuration. From there, I will run a structured OWASP Top 10 review, test authentication and session management flows, and assess input validation, file upload handling, and API attack surfaces. I will review the Linux server hardening posture, cloud security configuration if applicable, and source code security patterns. The deliverable will be a detailed report with risk levels, proof-of-concept steps where relevant, and prioritized remediation guidance, followed by validation support with your development team. I can begin with a short walkthrough of your stack and deliver the initial assessment plan. Carlos Porter Site Reliability Engineer
₹21,000 INR in 7 days
0.0
0.0

Rajkot, India
Member since Aug 15, 2013
$750-1500 SGD
$100-300 USD
₹12500-37500 INR
$250-400 USD
$10-30 USD
$30-250 USD
₹1500-12500 INR
$250-750 USD
$30-250 USD
$250-750 USD
$250-750 USD
$10-30 USD
$30-250 USD
₹75000-150000 INR
$5000-10000 USD
₹1500-12500 INR
₹12500-37500 INR
$250-750 USD
min ₹2500 INR / hour
$30-250 USD
$30-250 AUD
₹12500-37500 INR
$10-30 AUD
$10-30 AUD
$30-250 USD