ColdFusion Engineer – Security Upgrade & Version Migration (CFML / API Hardening)

Posted last month

Worldwide

Summary

About this contract We're a B2B SaaS platform serving enterprise and public-sector clients in compliance and reporting. Our backend API runs on a legacy ColdFusion version with a known security vulnerability. A client's security team has flagged it and paused rollout — we need to resolve this fast. We're hiring an experienced ColdFusion developer for a two-phase engagement: first to diagnose and plan, then (contingent on findings) to execute the upgrade and harden the API. This is a great fit if you've done ColdFusion upgrades, CFML security audits, or legacy modernisation work before. Phase 1 — Security Audit & Upgrade Plan (fixed scope, immediate start) Audit current ColdFusion version, server config, and exposed API surface Identify and document the specific CVE / vulnerability flagged by the customer Deliver a written upgrade plan covering: target CF version, breaking changes, estimated effort, and risk assessment Deliverable: a clear technical writeup suitable for internal sign-off Phase 2 — Upgrade Execution & API Hardening (contingent on Phase 1) Execute the upgrade from legacy to target ColdFusion version Resolve breaking changes and regression issues Apply API-layer hardening and security configuration best practices Hand off to our internal engineering team with clean documentation Required skills & experience ColdFusion / CFML development — multiple versions including modern CF releases (CF 2018, CF 2021, CF 2023) ColdFusion version migration — hands-on experience upgrading from older or EOL releases API vulnerability diagnosis — ability to identify and articulate security exposure at the API layer Clear written communication — Phase 1 ends in a document, not just a conversation Bonus points for: CVE triage and security patch experience Adobe ColdFusion security hardening (lockdown guide, server settings) Lucee / OpenBD familiarity Handing off upgrade work to internal teams Engagement 100% remote, async-friendly (we're timezone-flexible) Open to hourly or fixed-price — tell us what suits Phase 1 Estimated Phase 1 duration: a few days to one week depending on codebase complexity Codebase access provided via our handoff engineer after contract is signed To apply — please answer these four questions: Which ColdFusion versions have you worked across? (include oldest and most recent) Describe the most recent CF upgrade you led — what version, what broke, how you resolved it, and how long it took Your hourly rate, and a rough fixed-price estimate for Phase 1 Your earliest available start date Proposals that don't address these four points will not be reviewed.

  • More than 30 hrs/week
    Hourly
  • 6+ months
    Duration
  • Intermediate
    Experience Level
  • Remote Job
  • Complex project
    Project Type

Contract-to-hire opportunity

This lets talent know that this job could become full time.
Learn more
Skills and Expertise
Mandatory skills
Adobe ColdFusion
CFML
CVE
Activity on this job
  • Proposals:15 to 20
  • Last viewed by client:4 weeks ago
  • Interviewing:
    10
  • Invites sent:
    0
  • Unanswered invites:
    0
About the client
Member since Mar 26, 2024
  • United Arab Emirates
    2:52 AM
  • $2.3K total spent
    7 hires, 1 active
  • 37 hours
  • Mid-sized company (10-99 people)

Explore similar jobs on Upwork

Software DeveloperHourly‐ Posted 7 months ago
ASP.NET MVC
Django
Python
AngularJS
JavaScript
jQuery
WordPress
Google Chrome Extension
React
CRM Development
Microsoft Dynamics 365
Microsoft Dynamics CRM
Microsoft Dynamics Development
Microsoft PowerApps
Single Sign-On
Build Marketplace on TokopediaHourly‐ Posted 4 weeks ago
PHP
HTML5
JavaScript
Web Development

How it works

  • Post a job icon
    Create your free profile
    Highlight your skills and experience, show your portfolio, and set your ideal pay rate.
  • Talent comes to you icon
    Work the way you want
    Apply for jobs, create easy-to-by projects, or access exclusive opportunities that come to you.
  • Payment simplified icon
    Get paid securely
    From contract to payment, we help you work safely and get paid securely.
Want to get started? Create a profile

About Upwork

  • Rating is 4.9 out of 5.
    4.9/5
    (Average rating of clients by professionals)
  • G2 2021
    #1 freelance platform
  • 49,000+
    Signed contract every week
  • $2.3B
    Freelancers earned on Upwork in 2020

Find the best freelance jobs

Growing your career is as easy as creating a free profile and finding work like this that fits your skills.

Trusted by

  • Microsoft Logo
  • Airbnb Logo
  • Bissell Logo
  • GoDaddy Logo