
Suljettu
Julkaistu
Maksettu toimituksen yhteydessä
I need a seasoned application-security professional to run a full security assessment of our customer-facing mobile apps—both iOS and Android—and to dive deep into our SAP landscape to validate that authentication, authorization, and every exposed API follow best practice. Here is what the engagement covers: • Static and dynamic testing (SAST / DAST) of the two mobile codebases, aiming to uncover weaknesses referenced in OWASP MASVS and common CVE trends. • A hands-on review of SAP roles, privileges, tokens, and endpoint integrations to be sure that identity flows are tight and least-privilege is enforced. • Network and configuration hardening checks against current security standards, including encryption in transit, certificate pinning, logging, and container settings. • Clear, audience-specific reporting: one document for management with risk summaries and another for our developers that lists findings, risk ratings, PoC screenshots, and precise remediation steps. • Iterative follow-up with our SOC, DevOps, and internal audit teams so that open items are retested and formally closed. Success will be measured by the depth and accuracy of the findings, the practicality of the remediation guidance, and a final re-test that shows all critical and high-risk issues resolved. When you reply, briefly outline recent experience performing mobile SAST/DAST and SAP security assessments of similar complexity. I will share source code access, test credentials, and architectural diagrams once we agree on scope and timeline.
Projektin tunnus (ID): 40184852
9 ehdotukset
Etäprojekti
Aktiivinen 12 päivää sitten
Aseta budjettisi ja aikataulu
Saa maksu työstäsi
Kuvaile ehdotustasi
Rekisteröinti ja töihin tarjoaminen on ilmaista
9 freelancerit tarjoavat keskimäärin $516 USD tätä projektia

Having spent over a decade in the information technology and services industry, my skillset aligns perfectly with your requirement. I have a clear understanding of network security and have worked with various renowned vendors. My expertise extends to areas like wireless, VOIP, virtualization, cloud computing, and system administration which give me a comprehensive understanding of how different systems interact within an infrastructure. In the realm of security, I am well-versed with platform-specific assessments as well as network shielding. Mobile security assessments encompassing static and dynamic testing (SAST/DAST) are not new to me. In fact, I have analytically dissected mobile codebases for weaknesses mentioned in OWASP MASVS standards. Considering these facts,I believe that my solid expertise in network security aligned with my commitment for seamless project delivery,great communication skills,coupled with my experience conducting similar types of assessments qualifies me to provide you the level of service you're seeking.I am keen on starting this project soon to ensure top-notch security measures for your organisation's applications. Looking forward to discussing the scope and timeline with you. Let's get in touch!
$500 USD 7 päivässä
5,1
5,1

Hi, I have heard you are looking for seasoned application-security professional. I’m an application-security specialist with hands-on experience securing customer-facing mobile apps (iOS & Android) and complex enterprise backends, including SAP landscapes. Recently, I’ve led end-to-end mobile SAST/DAST engagements aligned with OWASP MASVS, uncovering issues such as insecure data storage, weak auth flows, token misuse, improper API authorization, and certificate-pinning gaps. My approach combines source-code review, runtime testing, API abuse scenarios, and real-world CVE mapping—not just checklist scanning. On the SAP side, I’ve performed deep reviews of roles, authorizations, RFC/API exposure, OAuth/SAML flows, and integration security, focusing on least-privilege enforcement, privilege escalation paths, and misconfigured trust relationships. I’m comfortable working across SAP, mobile, and middleware layers to validate end-to-end identity and access flows. You’ll receive two clear deliverables: an executive-level risk summary for leadership and a developer-focused report with reproducible PoCs, severity ratings, and actionable remediation guidance. I also actively collaborate with SOC, DevOps, and audit teams to retest fixes and formally close findings—no loose ends. Once scope, access, and timelines are confirmed, I can start immediately and drive this engagement to a clean, verifiable re-test with all critical and high-risk issues resolved.
$300 USD 7 päivässä
0,2
0,2

Hello, I’m confident in delivering a comprehensive security assessment for your mobile apps and SAP landscape as outlined. With many years of experience in mobile SAST/DAST and SAP security evaluations, I’ve conducted thorough reviews aligned with OWASP MASVS, CVE trends, and SAP best practices, delivering actionable findings and risk mitigation strategies. Clear and audience-specific reporting, including management summaries and developer-focused remediation guidance, has been a key aspect of my work. I can start immediately and ensure precise, high-quality results tailored to your objectives.
$750 USD 2 päivässä
0,0
0,0

Hi There, I have 6 plus years of experience in application security across mobile, web, and enterprise platforms. I lead full scope security assessments to identify real world vulnerabilities, validate existing controls, and measure actual risk. My work aligns with OWASP MASVS, OWASP Top 10, NIST SP 800 115, and current CVE trends. For this engagement, I will conduct static and dynamic testing of both mobile codebases and perform a deep technical review of your SAP landscape. This includes SAP roles and authorizations, token handling, exposed APIs, and identity integrations to confirm least privilege and correct trust boundaries. I will also review network and configuration controls such as encryption in transit, logging coverage, container and runtime settings, and integration points between mobile apps and SAP services. Testing combines manual validation with targeted automation to focus on exploitable impact. You will receive two clear reports. One for management with risk summaries and business impact. One for developers with detailed findings, severity ratings, PoC evidence, and precise remediation steps. I work closely with SOC, DevOps, and audit teams during remediation and re testing to ensure critical and high risk issues are fully closed. I am comfortable working with shared source code, test credentials, and architecture diagrams once scope and timeline are confirmed. Thanks, Venkatesan
$400 USD 7 päivässä
0,0
0,0

Hello, We have experienced Application Security professionals with strong expertise in mobile app SAST/DAST for iOS and Android and SAP security assessments. We have conducted in-depth testing aligned with OWASP MASVS, OWASP Top 10, and CVE trends, covering authentication, authorization, APIs, encryption, and secure configurations. Our SAP reviews include roles, authorizations, tokens, integrations, and least-privilege validation, along with network and configuration hardening checks. We provide clear executive and technical reports, PoC screenshots, remediation guidance, and perform re-testing to ensure closure of all critical and high-risk issues. We are comfortable working with source code, test credentials, and architecture diagrams, and collaborating with SOC and DevOps teams. Looking forward to discussing scope and timelines. Best regards, Petdaot Team
$500 USD 7 päivässä
0,0
0,0

Having spent significant time in the software development and testing space, I believe my skill set aligns perfectly with your unique requirements. With a core proficiency in both functional and automation testing of web and mobile applications, I am well-versed in the demands of security assessments like the one you need to conduct. Moreover, my extensive experience in test planning, execution suite creation, and issue analysis has honed my ability to dive deep into complex systems like your SAP landscape and authentically assess them for weaknesses. My work is thorough and meticulous, ensuring no stone is left unturned when it comes to identifying risk points or potential security lapses. A noteworthy feather in my cap is my proficiency with OWASP MASVS and understanding of common CVE trends which will allow me to effectively apply static and dynamic testing techniques to your two mobile codebases. Communication being another strength of mine, I can craft audience-specific reports that will be clear yet comprehensive; precise enough for developers to understand all findings clearly and remove them meticulously yet strategic enough for higher management to grasp the essence. In addition to this, I am comfortable working collaboratively with various teams such as SOC, DevOps, and internal audit for iterative follow up and final resolution of issues.
$456 USD 7 päivässä
0,0
0,0

I am a senior SAP ABAP Developer specializing in OData services, and I have hands-on experience building Android mobile applications that integrate directly with SAP landscapes. This unique combination allows me to provide a security review that goes much deeper than standard penetration testing. How I will add value to your project: SAP Deep-Dive: I will perform a professional review of your SAP roles, authorization objects, and OData service security. I can identify if your backend logic (ABAP) correctly enforces the principle of least privilege. End-to-End API Security: Having built Mobile-to-SAP integrations, I know exactly where the "leaks" usually happen in authentication tokens and endpoint integrations. Mobile Assessment: I will conduct SAST/DAST on your Android/iOS apps, ensuring compliance with OWASP MASVS and checking for common vulnerabilities like insecure data storage or lack of certificate pinning. Actionable Reporting: You will receive a technical report with PoC screenshots and, more importantly, precise remediation steps that your ABAP and Mobile developers can implement immediately. I have worked extensively with SAP Gateway and Mobile security protocols. I am ready to start this remote engagement and help you harden your entire ecosystem
$500 USD 7 päivässä
0,0
0,0

Islamabad, Pakistan
Maksutapa vahvistettu
Liittynyt maalisk. 14, 2017
$250-750 USD
₹400-750 INR/ tunnissa
$250-750 USD
€30-250 EUR
$2000-6000 HKD
₹1500-12500 INR
$45-50 USD
$30-250 USD
₹1500-12500 INR
$750-1500 USD
$8-15 USD/ tunnissa
₹100-400 INR/ tunnissa
₹12500-37500 INR
$10-30 USD
$250-750 USD
₹1500-12500 INR
$12-30 SGD
$15-25 USD/ tunnissa
$30-250 SGD
$15-25 USD/ tunnissa