Applied
Engineering
Results
samuel-torres.com
You can't fix what you haven't measured. I run OWASP ZAP audits with professional reports: vulnerabilities classified by risk, a concrete remediation plan and hardened configurations.
OWASP ZAP audit with a technical report, risk-based vulnerability classification, full Apache hardening, TLS 1.3 + HSTS + CSP + X-Frame-Options headers, and Perfect Forward Secrecy with ECDHE.
Yes — Esentia Energy: a bilingual site audited by the client's InfoSec Security Coordinator and hardened to an A+ rating, with full OWASP headers (HSTS, CSP, X-Frame-Options), TLS 1.3 and ECDHE. Every vulnerability found was mitigated. View the case study.
HSTS, Content-Security-Policy, X-Frame-Options, TLS 1.3 and Perfect Forward Secrecy via ECDHE, on top of full Apache hardening.
[TO CONFIRM] — depends on the scope of the site/system; there is no published time range for this specific service yet.
No surprises. The price reflects the real scope of the project.
I work with clients in Mexico (MXN) and international projects (USD).
OWASP ZAP audit with technical report, vulnerability classification and remediation plan.