I will perform a website vulnerability assessment and security report
Coursera Certified Web App Pentester and Security Auditor
About this Gig
Most small business websites have never been checked for security holes until it's too late. I help you find out where you're exposed, before an attacker does.
I'm Shoaib, a certified cybersecurity professional with hands-on development experience which means I don't just run a scanner and hand you a PDF. I understand the code side too, so my findings come with context: what the risk actually means for YOUR business, and
what to fix first.
WHAT I CHECK (OWASP Top 10 aligned):
- Input validation issues (SQLi, XSS exposure)
- Authentication & session weaknesses
- Security misconfigurations
- Sensitive data exposure
- Outdated components/dependencies
WHAT YOU RECEIVE:
- Clear vulnerability report (severity-rated: Critical/High/Medium/Low)
- Plain-English explanation of each risk (no unnecessary jargon)
- Prioritized, practical fix recommendations
- A 15-min call/chat to walk through findings (Standard/Premium)
Full transparency, always:
I only test what you authorize, and I'll never claim to have found something I haven't. If your site is already solid, I'll tell you that too my job is honesty, not manufactured urgency.
Testing application:
Web application
Development technology:
.NET
•
Angular
•
C/C++
•
C#
•
React
Device:
PC
•
Linux
•
Android mobile phone
My Portfolio
FAQ
Will you fix the vulnerabilities too?
I can either as part of a custom quote, or you can use my Development gig for the fixes once you have the report.
Is this the same as penetration testing?
No this is a broader security health-check. Pentesting (see my other gig) is a deeper, exploit-focused test. Assessment first is usually the smarter, cheaper starting point.
Do you need my written permission to test?
Yes always. I only test sites you own or have explicit written authorization to assess. This is non-negotiable, for your protection and mine.

