I will perform ai security risk assessment and llm penetration testing

R
raduan_ahamed
R
raduan_ahamed
Raduan Ahamed

About this gig

Is your AI or LLM-powered app secure against prompt injection and data leakage?

Traditional penetration testing often misses the risks unique to AI systems. I help startups, SaaS companies, and development teams identify security weaknesses in AI and LLM-powered applications through structured, manual AI security assessments based on the OWASP Top 10 for LLM Applications.

My assessment focuses on the application layer (not the underlying model provider) and may include:

  • Direct & indirect prompt injection testing
  • System prompt exposure
  • Sensitive information disclosure
  • RAG (Retrieval-Augmented Generation) security
  • Unsafe output handling
  • Tool & agent permission review
  • Business logic analysis
  • AI threat modeling

Every engagement includes:

  • Validated findings with severity ratings
  • Proof-of-concept evidence (where appropriate)
  • Reproduction steps & business impact
  • Practical remediation guidance
  • Professional security report

Certifications: TryHackMe AI1, Certified LLM Security Professional (CLLMSP) plus ongoing hands-on research in authorized AI security labs.

Testing is performed only on systems you own or have written authorization to test.

Get to know Raduan Ahamed

Raduan Ahamed

Web Application Penetration Tester and AI Security Specialist

  • FromBangladesh
  • Member sinceJul 2026
  • Avg. response time1 hour
  • Languages

    Bengali, English, Hindi
I help startups and development teams identify security vulnerabilities in web applications, APIs, and AI-powered systems before they become real-world risks. I specialize in Web Application Penetration Testing, API Security (OWASP API Top 10), Authentication & Authorization testing, Business Logic testing, and AI/LLM security assessments. I provide manual testing, validated findings, risk ratings, proof-of-concept evidence, and practical remediation guidance. All testing is performed only with written authorization and an agreed scope.