Comprehensive Website Email Security Audit

via Freelancer ·

Budget / SalaryHourly project
TypeFreelance project
LocationRemote
Posted1 hour ago
I want absolute confidence that every email address, contact form and outbound message linked to my website is under my sole control. The task is a focused security audit, zeroing in on email security: verifying that no hidden aliases, spoof-prone DNS records or back-door contact points exist, and confirming that inbound and outbound mail flows cannot be hijacked.

What I expect you to cover
• Inspect server configuration, SMTP settings, SPF, DKIM and DMARC records
• Scan the codebase and any plugins or third-party integrations for hard-coded or dynamically injected email addresses
• Test contact forms and subscription modules against spoofing, relay or data-leak vectors
• Review access logs for suspicious activity tied to mail functions
• Deliver a concise report that lists every issue found, its risk level and clear remediation steps

Your proposal
I’m looking for a detailed project plan explaining your audit methodology, the tools you will use (e.g. OWASP ZAP, Burp Suite, MailTester, custom scripts), an estimated timeline and the format of your final report. Feel free to mention how you might extend the audit later to areas like firewall hardening or malware scanning, but the immediate priority is email security.

I will give you temporary, limited credentials once we agree on scope and timeline. Let’s make sure every contact point on my site belongs to me—and only me.
php linux web security dns internet security smtp risk assessment security auditing
Apply on Freelancer →

Project sourced from Freelancer.com. Applications happen directly on the original platform — we never collect your data.