When I pivoted to focus on web application security, here's exactly
what I did:
Step 1: Demand Research
Searched "web application security" on Upwork. Found 15-20 jobs
per week with budgets ranging from $1,000-$10,000+. Strong
demand β
Step 2: Competitor Analysis
Analyzed 12 Top Rated security specialists. Average rate:
$85/hr. Most had 50+ jobs completed. Their profiles emphasized
certifications and penetration testing experience.
Step 3: Pricing
Started at $65/hr (75% of average) with 0 reviews. After 10
jobs, raised to $85/hr. After Top Rated status, raised to
$110/hr.
Step 4: Differentiation
Specialized in PHP and Node.js security (more specific than
"web security"). Created case studies showing vulnerability
fixes. Positioned as "developer who understands security" vs
"security expert who doesn't code."
Result:
Reached $100K+ in earnings, 100% JSS, Top Rated status. The
research phase took 2 weeks but saved me months of trial and
error.