I will professional web vulnerability scan and security assessment for your website

F
faisal_mahmudx
F
faisal_mahmudx
Faisal Mahmud

About this gig

Your website is your digital identity; a single vulnerability can lead to data breaches, downtime, and loss of customer trust.


I provide a professional Web Vulnerability Scan & Security Assessment, combining automated scanning with manual verification to uncover real vulnerabilities, misconfigurations, and security gaps before attackers find them.


What You Get:

  • Automated scan for SQL Injection, XSS, CSRF, LFI/RFI, outdated plugins & missing security headers
  • Vulnerability Assessment: open ports, service versions, SSL/TLS check & CVE detection
  • Manual verification to eliminate false positives
  • Developer-friendly report with risk-rated findings (Critical/High/Medium/Low) and step-by-step remediation guidance


Tools I Use: Burp Suite, Nuclei, Nikto, WPScan, Nmap, OWASP ZAP, Subfinder, ffuf, OpenVAS


Why Choose Me:

Professional approach, safe & non-destructive testing, actionable insights, clear guidance for your dev team, and fast, reliable delivery every time.


Have questions? Message me before ordering; happy to discuss and scope your project together!

Respect third-party rights

Please be aware that it is against Fiverr's policies for sellers to include themes, templates, or any other elements that infringe third-party rights or applicable laws in the delivered work. Read more about in our Guide to Responsible Digital Creation.

Get to know Faisal Mahmud

Faisal Mahmud

CyberSecurity Specialist, Penetration Tester, Vulnerability Researcher!

  • FromBangladesh
  • Member sinceOct 2025
  • Avg. response time1 hour
  • Languages

    Bengali, English, Urdu
I'm Faisal Mahmud, a penetration tester who thinks like an attacker, so you don't have to worry like one. I specialize in Web App, API, & Network Security Testing using OWASP Top 10, ASVS & PTES methodologies — combining automation with deep manual testing to catch critical flaws that scanners (SQLi, IDOR, SSRF, broken auth) miss. You get evidence-backed reports with CVSS ratings, PoC screenshots, and dev-friendly remediation steps. NDA-friendly, fast turnaround, clear communication. Let's secure your product before someone else finds the gap.

My Portfolio