
Closed
Posted
Paid on delivery
I need an experienced security specialist to carry out a thorough review of our bank system’s defences, with the spotlight on the core database and the overall security architecture that surrounds it. This is not a simple camera-or-alarm health check; instead, I want the underlying structure, data flows, and access logic examined for weaknesses that could compromise customer information or interrupt critical services. Scope of work • Map the current database design, supporting servers, and connected services. • Perform vulnerability assessments and penetration tests against these elements, documenting every finding with clear evidence. • Evaluate encryption, key management, privileged-user policies, and change-management procedures to be sure they align with modern banking standards (PCI-DSS, ISO 27001, NIST CSF as appropriate). • Deliver a concise report that prioritises risks, explains potential impact in plain language, and offers actionable remediation steps ranked by severity. Tool familiarity I expect you to bring your own toolkit—whether that is Nessus, OpenVAS, Burp Suite, Metasploit, or equivalent—as long as you can justify your choice and share methodology in the report. Acceptance criteria • A written executive summary plus detailed technical appendix. • Re-test confirmation for any critical issues fixed during the engagement. • Final debrief call to walk my internal IT team through the results and next steps. If you have a proven track record hardening banking or similarly regulated environments, I’m ready to move quickly.
Project ID: 40368465
12 proposals
Remote project
Active 24 secs ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
12 freelancers are bidding on average €886 EUR for this job

As an industry professional with a decade of experience, I understand the immense responsibility that comes with securing sensitive data for financial institutions like yours. My extensive knowledge in network administration, system security, and most notably my experience hardening systems within similar regulated environments will be invaluable for completing your project. Furthermore, my tool familiarity aligns closely with your expectations: Nessus, OpenVAS, Burp Suite and Metasploit. These tools enable me to run thorough vulnerability assessments and penetration tests which I will utilize extensively for your bank systems - leaving no stone unturned. The final deliverable will include not just an executive summary but also a detailed technical appendix for granular analysis. I pledge to approach this task with utmost diligence making sure every finding is clearly documented with enough evidence and potential impact fully articulated. Additionally my quick response policy, 24/7 availability and a 100% project delivery track record will ensure efficient progress on your project. Lastly, I look forward to utilizing my proven defences-hardening methods from previous banking assignments during the post-engagement phase. Target-oriented + customer-sensitive - I promise the kind of collaborative approach that would want you to "move quickly" with me as your choice of partner for this crucial project.
€750 EUR in 7 days
5.9
5.9

Hi, Banking security assessments have zero tolerance for ambiguity. I have worked in regulated financial environments and understand what that means in practice. I start by mapping your database architecture, connected services, and data flows before touching anything. From there I run vulnerability assessments and manual penetration testing using Nessus, Burp Suite, and Metasploit, with every finding documented with evidence and mapped to PCI-DSS, ISO 27001, or NIST CSF. You will receive a clean executive summary your leadership can act on and a detailed technical appendix your IT team can work from. Critical findings get re-tested after remediation and the final debrief call is built into my process. Available to start immediately. Sahil.D CISA | Penetration Testing | Banking Security | 16+ Years
€1,100 EUR in 7 days
5.3
5.3

Hi there, I will perform a bank-grade security audit focused on the core database, surrounding servers and data flows , my background in secure infrastructure, PCI/ISO-aligned hardening and penetration testing makes me well suited for regulated environments. - Map DB schema, supporting servers, integrations and data flow diagrams with trust boundaries. - Run authenticated vulnerability assessment + targeted penetration tests (Nessus/OpenVAS + Burp/Metasploit) and capture evidence for each finding. - Review encryption, key management, privileged-user policies, change-management against PCI-DSS/ISO27001/NIST and provide prioritized remediation. - Re-test critical fixes, provide executive summary + detailed technical appendix, and deliver a final debrief call. Skills: ✅ Encryption ✅ Penetration Testing (Burp Suite, Metasploit) ✅ Vulnerability assessment workflow & evidence capture ✅ Deployment/hosting review (DB servers, network segmentation) ✅ Privileged access & key-management hardening ✅ Risk ranking & remediation planning Certificates: ✅ Microsoft® Certified: MCSA | MCSE | MCT ✅ cPanel® & WHM Certified CWSA-2 I’m available to start quickly. Which database platform(s) and versions are in-scope (e.g., Oracle, MS SQL, PostgreSQL), and will I receive privileged read-only DB access plus an isolated test window for intrusive testing? Best regards,
€1,200 EUR in 7 days
5.1
5.1

I’ll pressure-test the security architecture around your core banking database—not just scan it—so you get a clear view of where customer data, privileged access, and service continuity are truly exposed. I’m a security specialist with hands-on experience assessing regulated environments, including database-centric architectures, web/application attack paths, and control frameworks aligned to PCI-DSS, ISO 27001, and NIST CSF. For this project, I’ll focus on the exact areas that matter most: data flow trust boundaries, access logic, encryption/key handling, and change-control weaknesses that can become real incidents. Key strengths I bring: • Targeted vulnerability assessment and penetration testing with evidence-backed findings • Risk-ranked reporting written for both technical teams and management • Practical remediation guidance, plus re-test validation for critical fixes My approach: first I’ll map the database, supporting servers, and connected services; then validate attack surface and privilege paths using the right mix of tools (e.g., Nessus/OpenVAS, Burp Suite, Metasploit where appropriate); next I’ll document every issue with impact, proof, and severity; finally I’ll deliver an executive summary, technical appendix, and a debrief call to walk your IT team through next steps. If you want a focused, banking-grade review that is actionable—not just a scan report—I’m ready to discuss scope and timing.
€604 EUR in 7 days
2.5
2.5

Hello! I can deliver this engagement end-to-end with a structured, audit-driven approach tailored for banking environments. I will start with architecture mapping of your core database, supporting infrastructure, and data flows to establish a clear security baseline. Then, I will perform targeted vulnerability assessments and controlled penetration testing using industry tools (e.g., Nessus, Burp Suite, Metasploit), ensuring full evidence capture and reproducibility. Beyond technical testing, I will assess encryption practices, key management, privileged access controls, and change management against ISO 27001, NIST Cybersecurity Framework, and PCI DSS requirements—focusing on real control effectiveness, not just documentation. Deliverables will include: Executive-level report with clear risk prioritisation and business impact Technical appendix with validated findings and proof of exploitation Actionable remediation roadmap ranked by severity Re-testing of critical fixes and final debrief with your IT team With 10+ years in IT audit and banking security, and certifications including CISA, CRISC, and ISO/IEC 27001:2022 Lead Auditor, I bring both offensive testing perspective and governance-level assurance—ensuring findings are not just identified, but actually fixed.
€1,200 EUR in 15 days
2.0
2.0

Barcelona, Spain
Payment method verified
Member since Apr 13, 2026
$250-750 USD
$15-25 USD / hour
€8-30 EUR
$15-25 USD / hour
₹600-1500 INR
$2-8 USD / hour
₹150000-250000 INR
$250-750 USD
₹750-1250 INR / hour
₹750-1250 INR / hour
€250-750 EUR
$250-750 USD
$250-750 USD
₹100-400 INR / hour
₹1500-12500 INR
$250-750 USD
₹1500-12500 INR
$15-25 USD / hour
$10-30 USD
$250-750 USD