Back

Security Penetration Tester for Healthcare SaaS Platform

Worldwide Salaried Open

We're building a multi-tenant healthcare SaaS platform (B2B) for appointment scheduling with an AI-powered voice agent. We're looking for a penetration tester to validate our security posture before onboarding our first pilot clinic. Tech stack: Cloudflare, Supabase, Clerk, Railway, Twilio The engagement is split into 3 phases: Phase 1 (pre-launch, priority): External attack surface review. Validate that all publicly exposed endpoints are properly secured before going live. Phase 2: Internal platform security. Tenant isolation, RBAC enforcement, role escalation, API authorization. Phase 3: AI/voice agent security. Prompt injection, call flow manipulation, abuse scenarios. Deliverables per phase: Written report with findings ranked by severity Proof of concept for each finding Remediation recommendations Retest of critical/high findings after our fixes Budget: $1,500 - $2,200 for the full 3-phase engagement. We know this is a startup budget. We're looking for someone early in their career or willing to work with an early-stage product, with the understanding that this becomes an ongoing paid relationship as we scale (periodic reassessments, new feature reviews). Methodology: We expect testing aligned with OWASP Top 10 / OWASP ASVS. If you follow a different framework, let us know in your proposal. Timeline: We're ready to start Phase 1 within 2-3 weeks of signing an NDA. In your proposal, please mention: Which of the technologies in our stack you've pentested before, and which would be new A brief example of a similar engagement (SaaS, multi-tenant, or healthcare) Your estimated timeline per phase Your availability Full architecture details, staging access, and role credentials will be shared after NDA signing. Languages: English or Romanian. Apply tot his job Apply To this Job Apply tot his job Apply To this Job

More jobs

Penetration Tester — Web App + Supabase Backend (SaaS Recruiting Platform)

Worldwide Salaried

Sr. Threat Hunting Intelligence Analyst (Remote, West Coast)

Worldwide Salaried

Network & Infrastructure Security Analyst

Worldwide Salaried

Cyber Threat Intelligence Analyst job at Agile Defense in Arlington, VA

Worldwide Salaried

Associate Cybersecurity Threat Analyst- Operations (Remote)

Worldwide Salaried

Principal Threat Intelligence Analyst

Worldwide Salaried

Level 2 Cyber Security Analyst

Worldwide Salaried

Threat Analyst

Worldwide Salaried

QA Engineer, Web Games & AI Automation

Worldwide Salaried

QA Engineer, 8 Months (Fixed Term)

Worldwide Salaried

Part‑Time Data Entry & Analytics Engineer – Remote Role at arenaflex – $15‑$25/hr, Up to $75,000 Annualized, Flexible Hours

Worldwide Salaried

Experienced Data Entry Clerk – Commercial Real Estate Industry Remote Opportunity

Worldwide Salaried

Backend Staff Engineer

Worldwide Salaried

Entry-Level GIS Technician for Remote Data Enhancement and Maintenance with the US Census Bureau

Worldwide Salaried

Director Of Premium Sales and Service [Remote]

Worldwide Salaried

Customer Support Coordinator – Remote Patient & Provider Experience Specialist at arenaflex

Worldwide Salaried

Experienced Customer Service Representative – Evening & Weekend Shifts at arenaflex

Worldwide Salaried

Staff Accountant

Worldwide Salaried

Remote Entry-Level Customer Service Jobs at FedEx: Join Our Team Today!

Worldwide Salaried

ASSOCIATE REGULATORY AFFAIRS SPECIALIST – Cardiac Rhythm Management (remote) in Mounds View, MN

Worldwide Salaried