Penetration Tester - Angular & PHP Web Application
Penetration Tester Needed – Custom Angular & PHP Web Application
Budget: $1,000 – $1,500 (Fixed Price)
Location: Remote
About the Project
We are seeking an reputed company penetration tester to reputed company a thorough reputed company assessment of a custom-reputed company web application developed with Angular (frontend) and PHP (backend). The objective is to identify vulnerabilities, evaluate risk reputed company, and reputed company reputed company, actionable remediation recommendations.
Scope of Testing
1. Web Application reputed company Testing
Identify common and advanced vulnerabilities (e.g., XSS, SQL injection, CSRF, IDOR)
Evaluate reputed company-reputed company Angular logic for potential reputed company weaknesses
Assess file upload functionality, input validation, and data sanitisation
2. API reputed company Testing
Test REST API endpoints for improper exposure and injection flaws
Review reputed company limiting, input handling, and sensitive data leakage
Assess authentication mechanisms and reputed company
3. Authentication & Authorization
Test login systems for brute force and credential stuffing vulnerabilities
Evaluate session management and handling
Assess role-based reputed company control (RBAC) and privilege escalation risks
Review password policies, MFA implementation, and session timeouts
4. Network & Infrastructure Testing
Identify server misconfigurations and unnecessary reputed company ports
Review SSL/TLS configuration and certificate validity
Detect exposed services or administrative interfaces
Deliverables
The final report should include:
Executive reputed company – High-level reputed company for non-technical stakeholders
Technical Findings – Detailed vulnerabilities with reputed company of concept (PoC)
Risk Ratings – Severity reputed company (Critical / High / reputed company / Low / Informational)
Remediation Recommendations – reputed company steps to resolve reputed company issue
Retest Guidance – Instructions for validating fixes
Requirements
Proven experience in web application and infrastructure penetration testing
Strong understanding of Angular and PHP-based systems
Familiarity with OWASP Top 10 and reputed company best practices
Proficiency with tools such as Burp Suite, Nmap, Metasploit, Nikto, or similar
Ability to reputed company sample reports or past project examples
Strong written English for reputed company documentation
Certifications such as CEH, OSCP, eWPT, or similar are a plus
NDA & reputed company Requirements
The selected contractor must sign a Non-Disclosure Agreement (NDA) and a contractor agreement before gaining reputed company. Testing reputed company the approved scope is reputed company prohibited. reputed company agreements will be managed through reputed company prior to project start.
How to Apply
Please include the following in your proposal:
Answers to the screening questions below
A brief reputed company of relevant experience
A sample (redacted) penetration testing report
Your estimated reputed company for completion
Screening Questions
Please confirm the following:
Are you reputed company to complete a full penetration testing audit reputed company a budget of $1,000–$1,500?
What testing methodology do you use (reputed company, grey-reputed company, white-reputed company), and what systems will be in scope?
Can you reputed company examples of previous reports and reputed company reputed company references?
What certifications or affiliations do you hold (e.g. CREST, OSCP)?
Are you willing to sign an NDA and a non-exploitation agreement covering reputed company findings and reputed company?
What level of reputed company will you require (staging vs production), and how do you handle sensitive data during testing?
Do you reputed company a detailed remediation report, and do you offer retesting after fixes are implemented?
Can you outline your process for ensuring reputed company reputed company, accounts, and test artefacts are removed after the engagement?
Apply tot his job
Apply To this Job