Our agency will perform amazon sp API penetration testing

R
redseclabs

Vetted Pro

Pakistan

English

25 orders completed

CREST accredited security testing for high trust organisations

RedSecLabs is a UK CREST accredited, Swift, PCI QSA accredited cybersecurity firm delivering penetration testing, PCI DSS, SOC 2, ISO 27001 readiness, incident response and security advisory services....
Vetted by Fiverr Pro

REDSECLABS was selected by the Fiverr Pro team for their expertise.

Vetted for

  • Cybersecurity

About this Gig

Vetted Pro

RedSecLabs is a UK-based, CREST-accredited cybersecurity firm and PCI QSA company, delivering penetration testing, PCI DSS, SOC 2, ISO/IEC 27001 readiness, incident response, and security advisory services.


We perform Amazon Data Protection Policy (DPP) penetration testing and compliance assessments for Selling Partner API (SP-API) applications. These assessments are required annually for Restricted Role access and are reviewed by Amazon.


WHAT WE TEST


  • Login with Amazon (LWA) OAuth
  • Selling Partner API (SP-API) authentication and authorization
  • Restricted Data Tokens (RDT)
  • AWS IAM, STS, and least-privilege controls
  • Secrets management and credential security
  • API authorization and business logic
  • PII handling, encryption, and retention
  • Role-based access control (RBAC)
  • Multi-tenant SaaS isolation
  • Logging, monitoring, and audit trails
  • Incident response and DPP controls
  • Infrastructure vulnerability assessment
  • Manual penetration testing (OWASP) 


Expertise:

Audit

Gap analysis

Risk assessment

Technology:

Cloud - IaaS

Firewalls

Other

Clients We’ve worked with
Bykea

Bykea

Mobile App Development

Provided cyber security consulting for Bykea to strengthen their overall security posture. Developed a Cyber Security Framework specifically for developers, integrated DevSecOps practices, and significantly improved their Vulnerability Disclosure.

Feb 2023

Portfolio

Other Cybersecurity Services we Offer

Related tags