Find Jobs
Hire Freelancers

Security Audit/Threat Assessment using STRIDE model

$30-250 AUD

Closed
Posted over 4 years ago

$30-250 AUD

Paid on delivery
Hi, we have a small website consists of 6 pages build using react and nodeJS. We want a security audit of the website and threat assessment based off a threat model called STRIDE. We just want to understand what areas we have tested and what areas don't need improvement and what areas do need improvement and what those improvements are. - You need to write up what you found into a document for us. - And write not just the things that can be improved but also the things that are okay. For our understanding we want to know what the possible areas of attack are and what we have done to prevent it. We will probably use this in the ISO 27001 audit that we are doing soon. To show documentation of our procedures. Please start your bid with "Security Audit" so we can know you have read the requirements. Thanks
Project ID: 21273156

About the project

10 proposals
Remote project
Active 5 yrs ago

Looking to make some money?

Benefits of bidding on Freelancer

Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
10 freelancers are bidding on average $194 AUD for this job
User Avatar
Hi there! May Peace Be Upon You !! I am a Certified Ethical Hacker and Pen Tester. I just love hacking and breaking the rules, but don’t get me wrong as I said I am an ethical hacker. @Certified at Windows Security & Forensics @Certified at Ethical Hacking @Certified at WEB APP SECURITY FUNDAMENTALS @Certified at Website Hacking / Penetration Testing Main Skills: Penetration Testing, Web Application Security. Social Engineering, Red team assessment, Ethical Hacking & Countermeasures, Malware Analysis My core competency lies in performing black and gray box testing, on the live web applications/networks or in lab environments.I am familiar with all common attack vectors and mitigation techniques, as well as finding unknown to public exploits known as 0days in web applications. Even though most of my work is confidential I can share vulnerability assessment sample. I have experience in vulnerability assessment for PCI & HIPAA Compliance. Service Description 1)Web Application Penetration Testing based on OWASP TOP 10 2)Network Penetration Testing 3)Vulnerability Assessment 4)Security Hardening See you online and have a great day! Warm regards, Shofiur
$350 AUD in 7 days
5.0 (30 reviews)
6.4
6.4
User Avatar
I work as a junior web penetration tester. VAPT is my field. I do use automatic tools such as nessus,burp acunetix but the manual penetration is the most important part where you can find sqli,xss, privillege escalation. I usually do black box testing and some grey box testing(where i have 2 test users one normal user and 2nd admin user to try different priv. escalation methods) At the end i will present a full report with vulnerabilities found classifiend and with my recomandations on how to mittigate threats. For more details feel free to contact me.
$100 AUD in 7 days
5.0 (9 reviews)
3.8
3.8
User Avatar
Security Audit. I am an experienced ethical hacker with over 8+ years experience in Cyber Security field. I have helped secure a number of Applications and thus i would like to work for you. I have a clear understanding of threat modelling and risk assessment and thus i find myself suitable for the task. Please consider
$200 AUD in 2 days
5.0 (1 review)
1.7
1.7
User Avatar
Greetings,  It is my understanding that you are looking for an information security professional who can perform deep pentest/black box penetration test on your web application. Being an Information security professional I will perform deep security test to secure your website for further attacks and let you know how you can secure your website efficiently. I am a cyber security professional having over 7+ years of experience in Information Security, Vulnerability Management, Penetration Testing, Security Operation Center (SOC), Investigations, web application testing, Audits & Trainings. My skillset includes: Threat and Vulnerability Assessment, Penetration Testing, Web Application Pentesting and Mobile Applications. My first priority is always start from manual testing then on Automated Web Penetration Testing: Burp-Suite, Nexpose, W3af, OpenVas, Nessus, Metasploit, Armitage etc. Looking forward to hear back from you for detailed discussion over your requirement.  Thanks !
$230 AUD in 5 days
5.0 (1 review)
0.4
0.4
User Avatar
For our understanding we want to know what the possible areas of attack are and what we have done to prevent it. - I'm a certified ethical hacker and certified security analyst and can do a complete look at the site. We will probably use this in the ISO 27001 audit that we are doing soon. - I can get you prepared for the ISO certification.
$140 AUD in 7 days
0.0 (0 reviews)
0.0
0.0
User Avatar
Please share a detail with us we are audit your security parameters and share a vulnerability because now a day's data breaches is most vulnerability
$266 AUD in 3 days
0.0 (0 reviews)
0.0
0.0
User Avatar
Hello, I hope you are Doing Well. We just read your short project description and understand that you are looking for Web Application/Penetration Tester of your site from the first point. Based on the understanding We would like to take this discussion further to explain better about our understanding as well get to know your thoughts that would help us make a great protected site.
$200 AUD in 7 days
0.0 (0 reviews)
0.0
0.0
User Avatar
19 years of rich experienced with a demonstrated history of working in Cyber Security, Information Security, Systems Audit, Data Center Audits, RBI Cyber Security Framework Implementer, Governance, Risk & Compliance, Global Compliance & Standards like - ISO 27001, PCI DSS, PA DSS, GDPR, SOC Type 1, 2 (SSAE 16/18, SAS 70), HIPAA/HiTRUST, FISMA, BCP/DR (ISO 22301), Web Application Security (OWASP Top 10 Risk) and Vulnerability Assessment & Penetration Testing
$175 AUD in 7 days
0.0 (0 reviews)
0.0
0.0

About the client

Flag of INDIA
Una, India
0.0
0
Member since Jul 29, 2016

Client Verification

Thanks! We’ve emailed you a link to claim your free credit.
Something went wrong while sending your email. Please try again.
Registered Users Total Jobs Posted
Freelancer ® is a registered Trademark of Freelancer Technology Pty Limited (ACN 142 189 759)
Copyright © 2024 Freelancer Technology Pty Limited (ACN 142 189 759)
Loading preview
Permission granted for Geolocation.
Your login session has expired and you have been logged out. Please log in again.