Skip to content
CISO Marketplace Services

Active Directory Security Assessment

Comprehensive security assessment of Active Directory infrastructure, focusing on privilege escalation, lateral movement, and domain compromise scenarios.

In scope

  • Domain security assessment
  • Trust relationship analysis
  • Privilege escalation testing
  • Password policy evaluation
  • Group policy security review

You receive

  • Domain security report
  • Attack path analysis
  • Privilege escalation findings
  • Security policy recommendations
  • Hardening guidelines

Tiers

Choose the depth.

Core AD Security Assessment

$40K

Assessment of 1 AD forest with 1 domain, up to 2,500 users: password and group policy review, privileged group analysis, and privilege-escalation testing from 1 standard-user starting point.

domains
1
Users
2500
  • 1 forest, 1 domain, up to 2,500 users
  • Password policy and GPO security review
  • Privileged group and delegation analysis
  • Privilege-escalation testing from 1 standard account
  • Hardening guidelines
  • — Trust relationship analysis
  • — Full attack-path mapping to domain compromise
  • — Cloud identity (hybrid) review
  • — Hardening implementation and retest
Scope Core AD Security Assessment

Advanced AD Security Program

$70K

Assessment of up to 5 domains in up to 2 forests, up to 10,000 users: full attack-path mapping to domain compromise, trust relationship analysis, lateral movement testing and review of every GPO.

domains
5
Users
10000
  • Up to 5 domains, up to 2 forests, up to 10,000 users
  • Attack-path mapping to domain compromise
  • Trust relationship analysis
  • Lateral movement testing
  • Review of all group policies
  • — Hardening implementation
  • — Retest after remediation
  • — Custom attack tooling
  • — Tiered administration redesign
Scope Advanced AD Security Program

Enterprise AD Security Solution

$110K

Multi-forest AD program; no fixed domain or user cap - scoped at kickoff. Adds custom attack tooling for your environment, tiered-administration design, hands-on hardening support and a full retest after remediation.

  • All forests and domains, scoped at kickoff
  • Custom attack tooling and scenarios
  • Tiered administration and hardening design
  • Hands-on hardening support
  • Full retest after remediation
  • — Ongoing AD monitoring
  • — Identity product licences
  • — Migration or domain consolidation work
Scope Enterprise AD Security Solution

Members: engagement coupons from the CISO Marketplace coupon book apply to services. There is no blanket discount.

What's inside this engagement

Phase by phase.

How a network & infrastructure testing engagement runs, what happens in each phase and what you see. Exact scope, tier and timeline are fixed in your proposal and SOW.

  1. 01Scoping & rules of engagement

    Ranges, hosts, windows, out-of-bounds systems and emergency contacts agreed in writing.

    You see · A signed ROE and a named contact.

  2. 02Reconnaissance & mapping

    External and internal attack surface enumerated: services, versions, trust relationships.

    You see · Nothing yet; this is quiet work.

  3. 03Vulnerability discovery

    Automated coverage plus manual verification. Scanner noise is filtered out before anything is reported.

    You see · Heads-up on any confirmed critical.

  4. 04Exploitation & chaining

    Confirmed weaknesses are exploited safely and chained to show real impact: lateral movement, privilege escalation, data access.

    You see · Evidence of what an attacker could reach.

  5. 05Reporting & debrief

    Executive summary, technical findings with reproduction steps, and a prioritized fix list.

    You see · The report and a walkthrough with your team.

  6. 06Retest

    Fixed findings are re-verified and the report reissued, where the tier includes it.

    You see · Proof the issues are closed.

Commercials

From first call to final report.

  1. 01

    Scoping call

    A practitioner, not a salesperson, walks through targets, constraints and what a good outcome looks like for you.

  2. 02

    Proposal & rules of engagement

    A fixed-scope proposal with tier, price and deliverables. Rules of engagement, contacts and out-of-bounds systems are agreed in writing.

  3. 03

    Sign, then start

    MSA and SOW are signed electronically and the deposit is paid. Only then does testing begin.

  4. 04

    Execution

    Testing runs to the agreed plan. Critical findings are escalated as they are found; you don't wait for the report.

  5. 05

    Report & debrief

    An executive summary plus technical findings with evidence, reproduction steps and fixes, walked through with your team.

  6. 06

    Retest

    Where the tier includes it, we verify your fixes and reissue the report, so auditors and customers see the issues closed.

Timelines are set per engagement in the SOW.

Related

Research

Latest from the blog

All posts on cisomarketplace.com →
Talk to an advisor
Advisor