Discover projects tailored to your expertise in security analysis on platforms like Upwork. Vollna enhances your search with advanced filters, real-time notifications, and comprehensive analytics, enabling you to bid smarter and win more.
Signup for free
to get access to all filter attributes and instant notifications when new jobs are posted.
Setup filter
Get access to over 30+ filter attributes, setup instant notifications, integrate with your CRM and marketing tools, and more.
URGENT: WordPress Malware and Server Security Expert Needed for Persistent Reinfection
Applied
not specified
4 hours ago
Client Rank
- Excellent
Payment method verified
$291 992 total spent
363 hires, 21 active
598 jobs posted
61% hire rate,
1 open job
5.39 /hr avg hourly rate paid
48 565 hours paid
4.95
of 298 reviews
Registered: Nov 13, 2009
United States
Irvine
16:26
5
We are looking for an experienced WordPress malware removal and server security specialist to investigate and permanently resolve a recurring malware issue affecting a WordPress environment.
This is not a basic malware cleanup. We need someone who can identify the root entry point, persistence mechanism, and source of reinfection, then secure the environment to prevent the issue from returning.
Issue Summary
A WordPress website was compromised with casino/iGaming spam and unauthorized administrative activity.
A fake cloudflare/recaptcha/ Clickfix showing on windows users
- 1. ClickFix JavaScript injection Source found: wp-content/mu-plugins/index.php
- 2. Casino/iGaming spam posts Source found: published WordPress posts
During the incident:
- Legitimate pages, including the homepage, were moved to the trash.
- Installing unwanted plugins.
- Adding zip file in media library
- Media files deleted
- Created hidden a admin account
- The WordPress front-page setting was changed to display the blog roll.
- Casino and iGaming spam posts were created and published.
- Some spam posts appeared to have been scheduled in advance.
- Activity was recorded under legitimate WordPress usernames, but the associated IP addresses were unfamiliar and changed between actions.
- Suspicious administrator accounts have previously been created through injected code.
- Malicious code has appeared in different locations during separate incidents.
- The activity returned within hours of an initial cleanup, password change, and WordPress salt reset.
Work Already Completed
Our internal team has already:
- Inspected and cleaned suspicious WordPress files.
- Removed identified injected code.
- Replaced the wp-admin and wp-includes directories with clean WordPress copies.
- Updated WordPress core, PHP, plugins, and available components.
- Reset WordPress salts to invalidate active sessions.
- Changed passwords for available WordPress accounts.
- Changed database username and password.
- Reviewed themes, plugins, cache folders, core files, and functions.php.
- Reviewed WordPress activity logs, usernames, and IP addresses.
- Ran Wordfence using high-sensitivity scan settings.
- Requested a server-level scan from the hosting provider.
- Wordfence and hosting support reported that no malware was detected after the cleanup. However, the unauthorized activity returned afterward, indicating that the persistence mechanism may not be detectable through standard malware scans.
What We Need Investigated
We need the selected specialist to investigate possible sources including:
- Hidden or obfuscated PHP backdoors.
- Rogue cron jobs or scheduled server processes.
- WordPress cron events and scheduled posts.
- Must-use plugins or hidden plugins.
- Malicious theme or plugin code.
- Modified WordPress core files.
- Database-level injections or unauthorized options.
- Hidden or automatically recreated administrator accounts.
- Compromised WordPress credentials.
- Stolen cookies or hijacked WordPress sessions.
- Compromised API keys, application passwords, or authentication tokens.
- Vulnerable, outdated, nulled, or abandoned plugins and themes.
- Compromised hosting, server, SFTP, SSH, control panel, or database credentials.
- Infected local devices or browser sessions used to access WordPress.
- Cross-site or cross-account contamination within the hosting environment.
- The specialist should not rely only on Wordfence or automated malware scans.
Required Deliverables
The project must include:
- A full WordPress and server-level security audit.
- Identification of the original entry point, where technically possible.
- Identification and removal of all persistence mechanisms.
- Review of server cron jobs, WordPress cron events, database records, users, plugins, themes, and core files.
- Review of authentication logs, access logs, IP activity, sessions, and account usage.
- Removal of malicious files, accounts, scripts, database entries, and scheduled processes.
- Credential and session security recommendations.
- Hardening of WordPress and the server environment.
- Verification that clean files come from trusted and official sources.
- A monitoring plan to confirm that the malware does not return.
A written report explaining:
What was found
- How the attacker likely gained access
- How persistence was maintained
- What was removed or changed
- What was done to close the entry point
- What preventive controls should be implemented
- We do not want a final report that only says the files were cleaned. We need a clear explanation of the root cause and how it was addressed.
Required Experience
Please apply only if you have proven experience with:
- Persistent or recurring WordPress malware.
- PHP malware analysis and deobfuscation.
- WordPress and Linux server security.
- Cron jobs and scheduled-task investigation.
- WordPress database security.
- Session hijacking and compromised account investigations.
- Hosting and web-server log analysis.
- WordPress hardening after a breach.
- Incidents where automated scanners reported a site as clean despite continued unauthorized activity.
- Experience with managed WordPress hosting, VPS environments, Cloudflare, Nginx, Apache, SSH, SFTP, WP-CLI, and MySQL is highly preferred.
Access and Confidentiality
- No credentials or confidential client information will be included in the public job post.
- The selected freelancer may be provided with restricted and temporary access to the relevant systems after appropriate confidentiality and access-control measures are agreed upon.
- All findings, client information, credentials, files, and security details must remain confidential.
Application Questions
Please answer the following when applying:
- Have you handled a WordPress infection that returned after a full cleanup?
- How do you investigate malware when Wordfence and hosting scans report the site as clean?
- How would you check for rogue cron jobs, hidden plugins, database persistence, and session hijacking?
- What logs and access would you require?
- How would you determine whether the issue originated from WordPress, the hosting environment, credentials, or a compromised device?
- Can you provide a written root-cause and remediation report?
Please share examples of similar investigations, without exposing confidential client information.
We are looking for someone who can begin with the investigation promptly and provide clear updates throughout the process.
Budget:
not specified
4 hours ago
IT & Networking, Information Security & Compliance
Program Engineer – Vulnerability & Asset Management is responsible for executing and continuously improving Continuous Threat Exposure Management (CTEM) operations by managing Network Discovery, Asset Discovery, and Vulnerability Assessment activities across the enterprise. This role ensures comprehensive visibility of IT, OT, IoT, cloud, and virtual assets while maintaining accurate asset inventories and validating cybersecurity risks through authenticated and unauthenticated vulnerability scanning.
Budget:
not specified
5 hours ago
IT & Networking, Information Security & Compliance
We need an EXPERT developer experienced in malware cleanup and vulnerability scanning, along with experience preventing SQL injection attacks. Lastly, expert in WordPress security issues. USA and Canada only.
Senior Network & Information Security Consultant
Applied
$5
8 hours ago
Client Rank
- Excellent
Payment method verified
Phone number verified
$18 785 total spent
814 hires, 8 active
947 jobs posted
86% hire rate,
28 open job
6.72 /hr avg hourly rate paid
222 hours paid
4.99
of 873 reviews
Industry: Education
Individual client
Registered: Jan 15, 2024
United States
Anchorage
20:26
5
We are seeking a Senior Network & Information Security Consultant to enhance our security posture. The role involves conducting penetration testing, security analysis, and network security assessments. The ideal candidate will have experience in information security and be able to provide strategic recommendations to improve our security infrastructure.
Fixed budget:
5 USD
8 hours ago
IT & Networking, Information Security & Compliance
We are seeking a security expert or experienced PHP developer to review our AI-assisted code. The ideal candidate will ensure the code is secure, functional, and optimized.
Responsibilities include identifying vulnerabilities and providing recommendations for enhancements. Experience with PHP and JavaScript is essential.
Client's questions:
Please list any certifications related to this project
Describe your recent experience with similar projects
Describe your approach to testing and improving QA
WordPress Malware Removal and Security Recovery
Applied
$15 - $25
/ hr
1 day ago
Client Rank
- Excellent
Payment method verified
$58 110 total spent
219 hires, 67 active
211 jobs posted
100% hire rate,
1 open job
7.33 /hr avg hourly rate paid
6 307 hours paid
4.80
of 300 reviews
Registered: Dec 3, 2013
United Arab Emirates
Ajman
23:26
5
I require an experienced WordPress malware-removal specialist to:
- Preserve a full backup of the current website and database before making changes.
- Inspect WordPress files, the database, users, plugins, themes, WP-Cron and server cron jobs.
- Identify and remove malware, backdoors, injected code, unauthorized users and spam content.
- Determine how the unauthorized posts are being created and stop the automated process.
- Replace WordPress core files and reinstall plugins and themes from clean, trusted sources where necessary.
- Review wp-config.php, .htaccess, advanced-cache.php, cache folders, upload folders and must-use plugins.
- Check whether other websites or directories within the same hosting account are affected.
- Coordinate with the hosting provider where access to server logs or account-wide scanning is required.
- Preserve all legitimate historical posts, pages, images and website functionality.
- Harden the website after cleanup, including password reset guidance, security salts, two-factor authentication, backups and monitoring.
- Provide a written report listing:
the malware and suspicious files found;
unauthorized database entries or accounts found;
files changed or replaced;
cron tasks removed;
probable entry point, if identifiable;
steps taken to prevent recurrence.
Client's questions:
Describe your recent experience with similar projects
Hourly rate:
15 - 25 USD
1 day ago
IT & Networking, Information Security & Compliance
I need a comprehensive audit of my mobile app, available on both iOS and Android platforms. The audit should cover:
- UI/UX Design: Evaluate the user interface and user experience for intuitiveness and engagement.
- Performance and Speed: Assess the app's responsiveness and loading times.
- Security Vulnerabilities: Identify any potential security risks.
Ideal skills and experience:
- Proven experience in mobile app auditing
- Strong background in UI/UX design principles
- Expertise in performance testing and security analysis
- Familiarity with both iOS and Android platforms
Please provide a detailed report with actionable recommendations. I need this done ASAP.
Skills: Mobile App Development, iPhone, Android, Usability Testing, UI / User Interface, User Experience Research, Mobile App Audit, Security Auditing
Fixed budget:
12,500 - 37,500 INR
1 day ago
Websites, IT & Software, Mobile Phones & Computing, Design, Media & Architecture, Business, Accounting, Human Resources & Legal, Usability Testing, UI / User Interface, Mobile App Development, iPhone, Android, User Experience Research, Mobile App Audit, Security Auditing
This is our start project. If you complete it successfully, we would like to continue working with you on future long-term projects.
We are looking for an experienced "Microsoft Purview Architect" to design a solution for applying externally generated classifications to files stored in **SharePoint Online and OneDrive**.
Our platform already generates classifications. We need an expert to define the architecture and configuration approach for mapping these classifications to **Microsoft Purview Sensitivity Labels**.
## Scope
* Design Purview Sensitivity Label architecture
* Define external classification - Purview label mapping
* Configure requirements for:
- Microsoft Entra ID App Registration
- Microsoft Graph API permissions
- OAuth authentication
- SharePoint/OneDrive integration
* Document labeling workflow and deployment approach
* Provide guidance on enterprise scale (50M+ files, batch processing, throttling, monitoring)
## Deliverables
* Solution architecture document
* Purview configuration guide
* Graph API / Entra ID requirements
* Label mapping and deployment workflow
## Required Experience
* Microsoft Purview Information Protection
* Sensitivity Labels
* Microsoft 365 E5 Security & Compliance
* SharePoint Online / OneDrive
* Microsoft Graph API
* Microsoft Entra ID
Deadline : End of 28th, July. EST
Start: Immediate
Looking for a Microsoft 365 security architect with real-world Purview deployment experience.
Cybersecurity Professional for Account Security
Applied
$60
1 day ago
Client Rank
- Risky
Payment method not verified
Phone number verified
1 jobs posted
1 open job
no reviews
Registered: Jul 25, 2026
United States
14:26
1
My app account was compromised, and messages were sent from it without my authorization. I need a cybersecurity professional to investigate and secure my account. The task involves tracking IP addresses to identify the source of the unauthorized activity and implementing measures to prevent future breaches.
Fixed budget:
60 USD
1 day ago
IT & Networking, Information Security & Compliance
I need a ReCAPTCHA configured on a WordPress site ASAP. Additionally, I require a WordPress security analysis and recommendations for improvements. The task is urgent and requires immediate attention.
Website Security and Maintenance Specialist
Applied
$20 - $50
/ hr
2 days ago
Client Rank
- Risky
Payment method not verified
Phone number verified
1 open job
Singapore
03:26
1
We are seeking a developer with experience in website security to ensure our hosting, WordPress, and Search Console are secure and cleaned up. The ideal candidate will have a strong background in security analysis and web development, with a focus on network and internet security. This role requires an intermediate level of proficiency and involves part-time engagement for 1 to 3 months.
Hourly rate:
20 - 50 USD
2 days ago
IT & Networking, Information Security & Compliance
Compliance Officer for IDI Data & TLO Approval - Must Be US Based
Applied
not specified
2 days ago
Client Rank
- Risky
Payment method not verified
Phone number verified
1 jobs posted
1 open job
no reviews
Registered: Jul 25, 2026
India
00:56
1
Description:
We have a US LLC in NM and need a US-based Compliance Officer to help us pass IDI Data / LexisNexis and TLO credentialing.
This is a REAL officer appointment, not name rental. You will be appointed as Compliance Officer in our Operating Agreement and listed on our applications.
Work:
- Review and become officer of record for IDI Data application
- Oversee GLBA / DPPA compliance
- Take compliance interview call (15-20 mins)
- Monthly compliance oversight 2-3 hrs/month
Requirements:
- MUST be US Citizen / Resident living in US
- MUST have experience passing IDI Data, TLO, or TransUnion reseller credentialing before
- JD or Compliance background preferred
- Willing to provide ID and be added to company docs
Budget:
Hourly for setup + Monthly retainer after approval. Tell me your retainer.
To apply start your proposal with "IDI COMPLIANCE" and tell me:
1. How many IDI/TLO approvals you have passed?
2. Are you okay to be added as Officer in Operating Agreement?
3. Monthly retainer amount?
Do not apply if you are outside US or have no IDI Data experience.
Budget:
not specified
2 days ago
IT & Networking, Information Security & Compliance
I urgently need help recovering access to an Instagram account. This account has blocked an account affiliated with my account, and I’m concerned they may use this account or information to blackmail or harass me. I need to regain access as soon as possible so I can secure the account and protect myself. All i ask from you is to log into this account and remove the block.
Budget:
not specified
2 days ago
IT & Networking, Information Security & Compliance
I am looking to obtain the CISSP cert in the next 2-6 weeks and I am looking for someone to partner with to help prep for the exam. I am not new to IT or security I just want to make sure I pass on the first try because the exam is expensive.
-- Review and discuss the different domain concepts of the exam
-- Review specific domains and deep dive into them.
Client's questions:
what is your availability to work with me on this?
Do you have your CISSP or are you currently working towards it?
what domain do you believe is the most difficult domain for you?
Describe your recent experience with similar projects
Budget:
not specified
3 days ago
IT & Networking, Information Security & Compliance
I am looking for someone who can be a pen-testing tutor for me.
I am not new to IT or security but I am looking to expand my knowledge into pen-testing and security research.
-- work on different projects to help cement the knowledge that I am learning from different courses and previous knowledge.
-- provide recommendations and explain complex
-- perform a mock pentest engagement together
Client's questions:
what is your availability to work with me on this project?
what is your knowledge and level in security and security penetration testing?
how long have you been in the industry and do you have any certifications?
where do you recommend we start first?
Describe your recent experience with similar projects
Budget:
not specified
3 days ago
IT & Networking, Information Security & Compliance
We are seeking an experienced freelancer to conduct a comprehensive audit of our Microsoft 365 environment. The focus will be on security and user setup, ensuring compliance with best practices and identifying potential vulnerabilities. The ideal candidate will have a strong background in Microsoft 365 and security auditing, with the ability to provide detailed recommendations for improvements.
Client's questions:
Describe your recent experience with similar projects
Please list any certifications related to this project
Website Audit for Organic SEO and Security
Applied
$10 - $20
/ hr
3 days ago
Client Rank
- Excellent
Payment method verified
$3 789 total spent
36 hires, 3 active
69 jobs posted
52% hire rate,
2 open job
11.33 /hr avg hourly rate paid
141 hours paid
4.91
of 34 reviews
Industry: Retail & Consumer Goods
Company size: 2
Registered: Aug 12, 2016
United States
LORTON
15:26
5
We are seeking a skilled professional to conduct a comprehensive audit of our website. The audit should focus on performance and SEO, identifying any vulnerabilities and providing recommendations on organic Traffic improvements. The ideal candidate will have experience in organic SEO Audit and major and minor reasons to affect google rankings. .
Client's questions:
Describe your recent experience with similar projects
Please list any certifications related to this project
How do you use metrics to inform your strategy?
How do you approach difficult conversations with customers?
We are seeking an experienced Penetration Tester to support a cyber security advisory team on a flexible, drawdown basis. The role will involve conducting targeted security assessments and producing clear technical findings and remediation advice.
Responsibilities
Perform network, infrastructure, cloud and application penetration testing
Identify vulnerabilities and assess associated risks
Produce concise, client-facing technical reports
Provide remediation recommendations
Support wider cyber risk and security assessment activities
Required Experience
5+ years' penetration testing or offensive security experience
Demonstrable experience conducting client-facing security assessments
Strong technical reporting skills
Experience across network, cloud and web application testing
Desirable
CREST, CHECK, OSCP, CEH or equivalent certification
Experience working in regulated industries
Knowledge of ISO 27001 and NIST frameworks
Hourly rate:
20 - 50 USD
4 days ago
IT & Networking, Information Security & Compliance
We are seeking an experienced Cyber Security GRC Specialist to support a long-term advisory engagement.
The role will focus on information security governance, ISO 27001 alignment, risk management and regulatory compliance activities.
Responsibilities
Conduct ISO 27001 gap assessments and control reviews
Develop and maintain information security policies and standards
Support risk assessments and risk register management
Assist with audit preparation and compliance activities
Contribute to governance and security reporting
Provide guidance on security best practice and regulatory obligations
Required Experience
5+ years' experience in Cyber Security GRC, Risk or Compliance
Strong ISO 27001 implementation or audit experience
Experience producing policies, standards and governance documentation
Experience working within regulated environments
Excellent stakeholder engagement and reporting skills
Desirable
ISO 27001 Lead Auditor or Lead Implementer
NIS2 experience
Public sector experience
Hourly rate:
20 - 50 USD
4 days ago
IT & Networking, Information Security & Compliance
I own Taylored Security Consulting, a security consulting and installation business serving Conyers, Rockdale County, Covington, and Metro Atlanta. I am looking for a freelancer to design a professional website that effectively communicates our services and enhances our online presence. The ideal candidate will have experience in web design and a strong understanding of security consulting to ensure the website aligns with our brand and industry standards.
Fixed budget:
200 USD
4 days ago
IT & Networking, Information Security & Compliance
Network Management and Security Specialist
Applied
$8 - $40
/ hr
4 days ago
Client Rank
- Excellent
Payment method verified
$8 847 total spent
46 hires
78 jobs posted
59% hire rate,
1 open job
13.07 /hr avg hourly rate paid
79 hours paid
4.89
of 36 reviews
Industry: Tech & IT
Company size: 10
Registered: Apr 28, 2012
United Arab Emirates
Dubai
23:26
5
I need someone in Dubai to locally assist with managing and configuring a small work network using 3 PCs with a firewall and VPN. The timings are flexible, and the ideal candidate should have experience in network management and security. Apply only if you are available locally in Dubai.
Hourly rate:
8 - 40 USD
4 days ago
IT & Networking, Information Security & Compliance
Web Application Penetration Tester — SOC 2 Compliance
Applied
$40 - $80
/ hr
4 days ago
Client Rank
- Medium
Payment method verified
Phone number verified
1 open job
no reviews
Registered: Apr 27, 2026
United States
14:26
3
We are looking for an experienced penetration tester to perform a web application pentest for SOC 2 compliance purposes.
What we need:
Web application penetration test (OWASP Top 10).
Written report with findings, severity ratings, and remediation recommendations suitable for SOC 2 audit submission.
Report delivered within 5-7 business days.
Requirements:
Proven web app pentesting experience
Experience writing SOC 2 audit-ready reports
Must sign NDA and Rules of Engagement prior to testing
Engagement:
Initial contract with opportunity for 2 additional follow-on tests based on performance. Please include your rate and a sample redacted report with your proposal.
Hourly rate:
40 - 80 USD
4 days ago
IT & Networking, Information Security & Compliance
We're looking for an experienced Fractional Application Security Lead to oversee the security of our platform. This is an ongoing, part-time role requiring approximately 10–20 hours per week and reports directly to the CEO.
Responsibilities:
- Review every pull request before production
- Review system architecture
- Perform threat modeling for every new feature
- Audit authentication and authorization
- Review wallet and payment flows
- Ensure secrets are stored correctly
- Review AWS/cloud infrastructure
- Review Firebase/Supabase (if used)
- Review APIs
- Review database permissions
- Verify encryption
- Ensure compliance with fintech best practices
If you're interested, please include a brief summary of your relevant experience, examples of similar work, your availability, and your hourly rate.
Screening Questions:
1. Please describe your experience securing fintech, financial services, banking, or payment platforms.
2. Describe your experience reviewing pull requests, system architecture, and cloud infrastructure from a security perspective.
3. Tell us about a significant security vulnerability you identified before it reached production. What was the issue, and how did you address it?
4. What experience do you have with authentication and authorization, API security, encryption, secrets management, and database permissions?
5. Why are you a good fit for this role, and what relevant experience would you bring to our team?
Budget:
not specified
5 days ago
IT & Networking, Information Security & Compliance
External HIPAA Compliance Audit and Attestation for Behavioral Health Organization
**Project Overview**
We are a California-based behavioral health organization seeking an experienced and independent HIPAA compliance professional or firm to conduct a comprehensive external HIPAA audit.
The audit is required under one of our county contracts and must assess our compliance with the HIPAA Privacy, Security, and Breach Notification Rules. At the completion of the engagement, we need a detailed audit report, corrective-action recommendations, and a signed letter or attestation documenting the results of the external evaluation.
Our operations include outpatient behavioral health services, clinical and administrative systems, cloud-based technology, and digital health applications. Additional organizational and system details will be provided after execution of appropriate confidentiality agreements.
**Scope of Work**
The selected auditor will be expected to:
1. Conduct an independent technical and nontechnical HIPAA compliance evaluation.
2. Review compliance with the HIPAA Privacy, Security, and Breach Notification Rules.
3. Complete or validate an enterprise-wide HIPAA Security Risk Analysis.
4. Evaluate administrative, physical, and technical safeguards.
5. Review relevant policies and procedures, including:
* Privacy and security policies
* Access controls and user termination procedures
* Workforce HIPAA training
* Business Associate Agreements
* Vendor and third-party risk management
* Incident response and breach-notification procedures
* Device, media, and data-disposal controls
* Backup, disaster recovery, and contingency planning
* Risk-management and corrective-action processes
6. Review the protection of electronic protected health information across applicable clinical, administrative, cloud, and digital health systems.
7. Interview designated leadership, compliance, IT, and operational staff as needed.
8. Identify deficiencies and classify findings by risk and priority.
9. Provide practical remediation recommendations.
10. Conduct a final review meeting with executive leadership.
This engagement is primarily a compliance audit and risk assessment. A formal penetration test is not required unless separately proposed as an optional service.
**Required Deliverables**
The final deliverables must include:
* Executive summary for organizational leadership
* Completed HIPAA compliance assessment
* Updated or validated HIPAA Security Risk Analysis
* Detailed findings and supporting observations
* Risk-ranked gap analysis
* Corrective-action and remediation plan
* List of policies or documents requiring revision
* Final external audit report
* Signed auditor attestation or compliance-evaluation letter suitable for submission to a county contracting agency
* Follow-up meeting to review findings and answer questions
The final report should clearly distinguish between:
* Compliant areas
* Partial compliance or opportunities for improvement
* Material deficiencies requiring corrective action
* Recommended timelines for remediation
**Confidentiality and Data Protection**
The selected contractor must be prepared to sign a nondisclosure agreement. A Business Associate Agreement may also be required if the work involves access to protected health information.
No patient information or protected health information will be shared through Upwork.
**Preferred Qualifications**
Applicants should have:
* Demonstrated experience conducting external HIPAA audits for healthcare organizations
* Experience with behavioral health, medical practices, or healthcare technology organizations
* Strong knowledge of the HIPAA Privacy, Security, and Breach Notification Rules
* Experience evaluating cloud-based healthcare systems and third-party vendors
* Relevant credentials such as CHPC, CHPS, HCISPP, CISA, CISSP, or comparable qualifications
* Professional liability and cyber liability insurance
* Ability to provide a clear, independent, and defensible final report
* Experience preparing audit documentation for government or county healthcare contracts
**Project Timeline**
We would like the engagement completed within approximately four to six weeks of project initiation.
Most work may be completed remotely. Please identify whether an onsite review is recommended and whether it is included in your proposed fee.
**Budget**
We prefer a fixed-price proposal. Our anticipated budget is up to $5,000, depending on the auditor’s qualifications, methodology, scope, and deliverables.
Please clearly identify any services that would require additional fees.
**Information to Include in Your Proposal**
Please provide:
1. A brief description of your HIPAA audit experience.
2. Examples of similar healthcare or behavioral health audits you have completed.
3. Your professional credentials.
4. Your proposed audit methodology.
5. A list of documents and system information you will require.
6. Your estimated timeline.
7. Your fixed project fee.
8. A sample or redacted example of a prior audit report, risk assessment, or attestation letter.
9. Confirmation that you can provide a signed external audit report and attestation suitable for a county contracting requirement.
10. Confirmation that you are independent and have no financial relationship with our technology vendors.
Generic HIPAA consulting or training proposals will not be considered. We are specifically seeking an experienced professional who can complete and document an independent external compliance evaluation.
Budget:
not specified
5 days ago
IT & Networking, Information Security & Compliance
Cybersecurity Specialist Needed for IT Infrastructure Security & Threat Analysis
Applied
$5
5 days ago
Client Rank
- Excellent
Payment method verified
Phone number verified
$10 485 total spent
444 hires, 17 active
535 jobs posted
83% hire rate,
99 open job
6.70 /hr avg hourly rate paid
148 hours paid
4.97
of 429 reviews
Industry: Energy & Utilities
Individual client
Registered: Aug 6, 2025
United States
Greenwood
19:26
5
We are seeking a skilled Cybersecurity Specialist to enhance our IT infrastructure security and conduct thorough threat analyses. The ideal candidate will have experience in security analysis, network security, and information security. Responsibilities include identifying vulnerabilities, implementing security measures, and ensuring compliance with security standards. If you have a strong understanding of cybersecurity principles and a passion for protecting IT systems, we would love to hear from you.
Fixed budget:
5 USD
5 days ago
IT & Networking, Information Security & Compliance
Mobile Application Security & Penetration Testing Trainer (Android & iOS)
Experience
6–10+ Years
Location
Virtual (Training Assignment)
Role Summary
We are looking for an experienced Mobile Application Security Trainer to deliver advanced technical training on iOS and Android Application Security Analysis and Penetration Testing. The trainer should possess strong hands-on expertise in mobile application security, vulnerability assessment, reverse engineering, and penetration testing, with the ability to conduct practical, lab-based training sessions.
Mandatory Skills
Android & iOS Application Security Testing
Mobile Application Penetration Testing
OWASP Mobile Top 10, MASVS & MSTG
Static & Dynamic Application Analysis
Reverse Engineering
Burp Suite, MobSF, Frida, Objection
APKTool, JADX, ADB
SSL Pinning & Root/Jailbreak Detection Bypass
Mobile API Security Testing
Hands-on experience delivering technical training or workshops
Preferred Certifications
GIAC GMOB
eMAPT
OSCP
OSWE
GPEN
GWAPT
BSCP
Build a Professional Website, Logo, SEO & Digital Marketing for California Security Guard Company
Applied
$500
5 days ago
Client Rank
- Risky
Payment method not verified
Phone number verified
1 open job
United States
14:26
1
I am looking for an experienced freelancer or agency to become our long-term marketing, business development, and growth partner for Blue Falcon Security, a California security guard company.
This is NOT just a website project.
Our goal is to build one of the most trusted and successful security companies in California.
We are looking for someone who can help us build, market, grow, and continuously expand our business.
The project includes:
• Design and develop a premium, modern, mobile-friendly WordPress website.
• Design a professional company logo and complete branding.
• Write high-quality professional English content for all website pages.
• Complete On-Page SEO and Local SEO optimization.
• Create and optimize our Google Business Profile.
• Set up Google Analytics and Google Search Console.
• Create and manage Google Ads campaigns.
• Create social media marketing strategies.
• Create email marketing campaigns.
• Build a complete lead generation system.
• Create high-converting landing pages.
• Design professional proposal templates, brochures, capability statements, presentations, and marketing materials.
• Improve website speed, security, and user experience.
• Train us on how to manage and update the website.
Our target clients include:
• Construction companies
• Warehouses
• Distribution centers
• Homeowners Associations (HOAs)
• Commercial buildings
• Medical facilities
• Hospitals
• Schools
• Apartment communities
• Manufacturing facilities
• Shopping centers
• Industrial facilities
• Hotels
• Private businesses
• Government agencies
• Property management companies
• Facility management companies
• Businesses throughout California
One of the MOST IMPORTANT goals of this project is helping us consistently generate new business opportunities.
We need your professional recommendations and assistance in finding, selecting, subscribing to, and using the best paid platforms that help security companies find:
• Security contracts
• Construction projects
• RFPs
• Bid opportunities
• Government contracts
• Commercial contracts
• HOA opportunities
• Property management opportunities
• Facility management opportunities
• Private security opportunities
Please recommend the best paid subscription websites, explain which platforms are worth paying for, help us create and optimize our accounts, and teach us how to use these platforms to consistently generate new clients and security contracts.
In addition, we need your assistance in developing a long-term recruiting strategy to attract qualified:
• Security Guards
• Patrol Officers
• Armed Guards
• Supervisors
• Operations Managers
• Dispatchers
• Administrative Staff
• Office Employees
• Recruiters
• Sales Representatives
• Business Development Representatives
• Account Managers
• Drivers
• Field Supervisors
• Executive Management personnel
Our objective is not simply to launch a website.
Our objective is to build a complete business system that continuously generates new clients, new contracts, qualified employees, and long-term growth.
Please include the following in your proposal:
• Examples of security company websites you have built.
• Examples of local service business websites.
• SEO results you have achieved.
• Google Business Profile projects you have completed.
• Google Ads experience.
• Lead generation experience.
• Experience helping companies win contracts.
• Experience using paid lead generation and bidding platforms.
• Estimated timeline.
• Complete fixed price for the entire project.
• Monthly pricing for ongoing SEO, digital marketing, website maintenance, lead generation, recruiting support, and business growth.
Preference will be given to freelancers or agencies with proven experience helping security companies grow, generate qualified leads, win contracts, recruit employees, and increase revenue.
We are looking for a long-term strategic business partner who is committed to helping Blue Falcon Security become one of the leading security companies in California by generating new clients, winning security contracts, recruiting qualified employees, and supporting our long-term business growth.
I am seeking a skilled freelancer to develop an online noncommissioned security training course for sale in Texas. The course should cover essential security topics and be engaging for learners. The ideal candidate will have experience in creating websites and educational content. The course should be comprehensive and easy to follow, with clear objectives and able to generate a completion certificate for the user once the course has been complete with a final quiz. Please mention how long you have been building websites and an estimate for how long this project may take in your response.
Hourly rate:
15 - 50 USD
5 days ago
Accounting & Consulting, Recruiting & Human Resources
I'm building a Real-World Asset tokenization platform with confidentiality requirements similar to the Zama Protocol. I need an experienced FHE engineer to design and implement confidential smart contract logic on an EVM-compatible chain - encrypting sensitive on-chain state (ownership records, valuations, compliance flags) using Fully Homomorphic Encryption, while preserving public verifiability and composability with standard (non-confidential) contracts.
Scope of Work
Implement confidential smart contracts using an FHEVM-compatible Solidity library (encrypted data types: euint, ebool, etc., and encrypted arithmetic/comparison operations)
Integrate with the coprocessor/gateway architecture for off-chain encrypted computation, input verification, and ciphertext bridging
Design access control lists (ACLs) for encrypted state and implement threshold decryption flows via the KMS
Handle encrypted input validation and re-encryption for authorized read access (view functions returning ciphertext handles)
Bridge confidential contract logic with existing non-confidential contracts (e.g., ERC-3643 compliance layer) so encrypted and plaintext state can interoperate
Optimize gas costs and computation batching given current FHE throughput constraints on EVM
Write tests covering encrypted state transitions and access control edge cases
Document architecture, trust assumptions (coprocessor/KMS trust model), and key management design
Hourly rate:
80 - 120 USD
6 days ago
Web, Mobile & Software Dev, Other - Software Development