
Closed
Posted
Paid on delivery
Project Description Recently we completed an independent penetration test conducted by a professional cybersecurity firm. The assessment identified a number of security vulnerabilities that require remediation to strengthen the security of our applications and ensure compliance with industry best practices. We are looking for an experienced Application Security Consultant / Security Engineer to work closely with our in-house development team at our Mumbai office to address these findings. Our technology stack primarily includes .NET, ASP.NET, and React for the frontend. Scope of Work Review the penetration testing report and prioritise identified vulnerabilities based on risk. Guide and assist our development team in implementing secure coding practices and remediating the identified issues. Improve authentication, authorisation, session management and token-based security mechanisms where required. Strengthen data protection controls to ensure sensitive information is securely handled, stored and transmitted. Review API security, input validation, encryption, access controls and other application security measures. Ensure the application aligns with OWASP recommendations and recognised secure development practices. Work closely with the development team throughout the remediation process and provide technical guidance where necessary. Assist in validating that all identified vulnerabilities have been effectively addressed before the final security assessment. Project Outcome Once the remediation work has been completed, the application will undergo a repeat penetration test by the independent security firm to verify that the identified vulnerabilities have been successfully resolved and that the platform meets the required security standards. The consultant is expected to work onsite from our Mumbai office and collaborate directly with our technical team until the project is successfully completed.
Project ID: 40631686
14 proposals
Active 3 hours ago
Location: Mumbai, India
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
14 freelancers are bidding on average ₹108,286 INR for this job

Hi! I read that you need an Application Security Consultant to work onsite with your Mumbai team, prioritizing and remediating vulnerabilities from a recent penetration test across your .NET, ASP.NET, and React stack — covering authentication, session management, API security, and OWASP alignment. I have 8+ years of real-time IT experience with .NET Core, ASP.NET, and React, having built and maintained authentication systems, token-based security, and API layers across multi-tenant SaaS, healthcare, e-commerce, and hospital management platforms, so I'm well-versed in the areas your remediation work touches. I want to be upfront: my primary experience is as a full-stack developer implementing secure coding practices within applications, rather than as a dedicated Application Security Consultant leading formal vulnerability triage and OWASP-aligned remediation programs. I'm confident I can review the pentest findings and work hands-on with your team to fix authentication, authorization, and API security issues, but this is somewhat outside my core specialization, so I wanted to flag that clearly. I'm also based outside Mumbai, so I'd need to confirm feasibility of the onsite requirement before committing. Let's connect to discuss fit and scope. Akshay B
₹95,000 INR in 7 days
6.5
6.5

As a seasoned software engineer at SoftwareLinkers, I possess in-depth knowledge and extensive hands-on experience with .NET Core and ASP.NET. These skills, combined with my team's strong commitment to delivering secure and scalable systems, make us your ideal choice for this project. Having worked with clients in varying industries such as Education & eLearning, Insurance & Finance, Logistics & Operations, Corporate enterprises and Startups; we have encountered and dealt with diverse security challenges. This has enabled us to develop a keen understanding of the best security practices necessary to harden platforms against vulnerabilities revealed in penetration tests. My profile which includes a 4.9★ rating along with 100+ verified satisfied clients’ reviews attests to this. My approach is to collaborate closely with your in-house development team throughout the project, aligning our knowledge and expertise with your business goals- a service that has garnered us remarkable client retention over the years. With your .NET stack and JavaScript frontend using React.js technologies; I can effectively guide your team in implementing secure coding practices, address vulnerability concerns through authentication, authorisation, encryption and more until we validate OWASP recommendations and recognized secure development practices. Let’s partner together for a successful project completion that exceeds all security expectations!
₹130,000 INR in 28 days
3.9
3.9

As an experienced Security Consultant and Software Developer, I have spent a significant portion of my career addressing and strengthening applications against identified vulnerabilities. My expertise includes working precisely with technologies that your project is built on, including .NET, ASP.NET, and React. This comprehensive understanding allows me to provide valuable guidance and support in implementing secure coding practices tailored to your specific project needs. My focus is not just on fixing the immediate issues, but building robust security mechanisms that align with industry best practices, such as strengthening authentication, authorization, session management, and token-based security. I strive to ensure that every level of your application is fortified against a potential security breach. Drawing from my background in SaaS development on Azure, I will not only review data protection controls and API security but also optimize your application’s performance. Most importantly, my collaborative approach makes me an excellent fit for working closely with your in-house development team throughout the remediation process. I prioritize clear communication to ensure that all identified vulnerabilities are effectively addressed – resulting in a final assessment that confirms the successful resolution of the issues raised by the independent security firm. Hire me today for a 360-degree-assured cybersecurity transformation!
₹112,500 INR in 7 days
4.0
4.0

Since you already have an independent penetration-test report, I’d start by turning each finding into a prioritized remediation plan mapped to risk, affected modules, root cause, owner, and validation criteria before changing code. I can work closely with your .NET, ASP.NET, and React team on authentication, authorization, session/token handling, API security, input validation, encryption, access controls, and secure data handling. My focus would be clean implementation and maintainability, so fixes address the underlying weakness without introducing regressions and remain easier for your team to support after the retest. I’m a full-stack developer and technical lead, so I’m comfortable working directly with developers, reviewing application flows, translating security findings into practical code changes, and validating remediation against OWASP-aligned practices before the independent security firm performs its repeat assessment. A relevant project is eSimFox, where we implemented authentication, role-based access, secure payment flows, real-time integrations, and protected admin operations across a multi-tenant application.
₹112,500 INR in 7 days
3.6
3.6

With my extensive background in software development and security, I am confident that I can address the vulnerabilities identified in your recent penetration test. My adept understanding of .NET Core, ASP.NET, and React – your technology stack – will enable me to implement secure coding practices and fortify critical areas such as authentication, authorisation, session management, and token-based security. You can rest assured that your sensitive information will be entrusted with me as I strengthen data protection controls for secure handling, storage, and transmission. My solid experience in software engineering paired with my compliance proficiency ensures that your application will align perfectly with OWASP recommendations and all recognized secure development practices. Collaborating directly with your Mumbai-based team is not an obstacle but rather an opportunity for strong problem-solving skills that I possess to be put to good use. Moreover, I have a commitment to continuous learning which ensures that I stay updated with new security trends and standards. Previous clients commend my work for delivering high-quality code within budgetary constraints without compromising on time. Let's discuss your project needs further; I am excited about the potential of building something amazing together!
₹112,500 INR in 7 days
3.3
3.3

With over 8 years of experience in Full-Stack Web Application Development, I bring a robust skillset and an eye for detail that will be perfect for your project. I am well-versed in all the technologies your project requires - .NET Core, ASP.NET, and React, but more importantly, you can count on me to ensure the highest level of security by implementing stringent coding practices and addressing vulnerabilities highlighted in the recent penetration test. My expertise in secure authentication like JWT and Microsoft Technologies including C#, .NET Core, MVC Architecture, Web API Development, will enable me to improve authentication, authorization, session management in your application. As an advocate of OWASP recommendations and secure development practices, I make it a point to align all my work with industry best practices. My portfolios are a testament to my capability to integrate cross-platform mobile applications and AI solutions. Most importantly, I understand the significance of effective communication within a technical team during such projects. As an experienced professional with profound communication skills, I assure you successful collaboration between your Mumbai office and your development team until the project is finished to our mutual satisfaction.
₹75,000 INR in 7 days
3.0
3.0

As a seasoned software developer boasting over a decade of experience, I am well-versed in exactly the kind of skills your team requires. My expertise in .NET Core, ASP.NET, and Microsoft SQL Server will play a pivotal role in addressing your recent cybersecurity vulnerabilities while adhering to industry standards. Having built numerous E-commerce platforms, I understand the importance of robust security measures, particularly in the handling and transmission of sensitive information. My portfolio showcases my proficiency in strengthening authentication, authorization, session management as well as implementing token-based security mechanisms - precisely what you need. Furthermore, my track record reaches beyond skillset alone; I excel at collaborating with diverse teams to deliver seamless solutions. By working on-site from your Mumbai office, I can closely mentor your developers and ensure OWASP-based secure development practices are implemented across your stack thoroughly. Given the critical nature of your project, my priority is not only to remediate the vulnerabilities but to do it meticulously and effectively. Choose me to ensure the future stability and reliability of your E-commerce platform.
₹90,000 INR in 22 days
1.4
1.4

Mumbai, India
Payment method verified
Member since Aug 7, 2026
$30-250 USD
$30-250 AUD
₹37500-75000 INR
£750-1500 GBP
₹600-1500 INR
€8-40 EUR
$250-750 USD
₹500000-1000000 INR
₹1500-12500 INR
$1500-3000 USD
$15-25 USD / hour
₹12500-37500 INR
$250-750 USD
£18-36 GBP / hour
₹150000-250000 INR
₹1500-12500 INR
£750-1500 GBP
$30-250 USD
₹12500-37500 INR
₹12500-37500 INR