Skip to content
CISO Marketplace Services

Penetration Testing

Comprehensive penetration testing service including network, application, and infrastructure security assessment. Includes detailed reporting and remediation guidance.

In scope

  • Scoping, rules of engagement and testing windows
  • External network testing of internet-facing systems
  • Web application testing (authenticated, by user role)
  • Internal network testing (Standard and Premium tiers)
  • Staff-targeted and on-site testing (Premium tier)
  • Retest of remediated findings

You receive

  • Penetration test report with reproducible findings and risk ratings
  • Executive summary
  • Remediation guidance per finding
  • Findings walkthrough with your technical team
  • Retest results and attestation letter

Tiers

Choose the depth.

Basic (External only)

$8K

External testing only: up to 25 internet-facing IPs and 1 web application with up to 2 user roles. Report, one retest and an attestation letter.

external ips
25
web apps
1
Sites
1
  • External network testing
  • One web application
  • Report and findings walkthrough
  • One retest
  • — Internal network testing
  • — Staff-targeted and on-site testing
  • — More than one application
Scope Basic (External only)

External Plus (External only)

$12.5K

External testing only, for a larger perimeter: up to 100 internet-facing IPs and 1 web application with up to 2 user roles. Report, one retest and an attestation letter.

external ips
100
web apps
1
Sites
1
  • External network testing of up to 100 IPs
  • One web application
  • Report and findings walkthrough
  • One retest
  • — Internal network testing
  • — Staff-targeted and on-site testing
  • — More than one application
Scope External Plus (External only)

Standard (External + Internal)

$15K

External and internal testing: up to 50 internet-facing IPs, up to 2 web applications and an internal network of up to 250 hosts at one site.

external ips
50
web apps
2
internal hosts
250
Sites
1
  • External network testing
  • Internal network testing at one site
  • Up to two web applications
  • Report, walkthrough and one retest
  • — Staff-targeted and on-site testing
  • — More than one site
Scope Standard (External + Internal)

Premium (Full scope + Social Engineering)

$25K

External, internal, staff-targeted and on-site testing: up to 100 internet-facing IPs, 3 web applications, 500 internal hosts and 2 sites.

external ips
100
web apps
3
internal hosts
500
Sites
2
  • External and internal network testing
  • Up to three web applications
  • One staff-targeted email exercise
  • On-site testing at up to two sites
  • — Objective-based adversary simulation — see Red Team Assessment
  • — Environments above 500 hosts — scoped separately
Scope Premium (Full scope + Social Engineering)

Members: engagement coupons from the CISO Marketplace coupon book apply to services. There is no blanket discount.

What's inside this engagement

Phase by phase.

How a network & infrastructure testing engagement runs, what happens in each phase and what you see. Exact scope, tier and timeline are fixed in your proposal and SOW.

  1. 01Scoping & rules of engagement

    Ranges, hosts, windows, out-of-bounds systems and emergency contacts agreed in writing.

    You see · A signed ROE and a named contact.

  2. 02Reconnaissance & mapping

    External and internal attack surface enumerated: services, versions, trust relationships.

    You see · Nothing yet; this is quiet work.

  3. 03Vulnerability discovery

    Automated coverage plus manual verification. Scanner noise is filtered out before anything is reported.

    You see · Heads-up on any confirmed critical.

  4. 04Exploitation & chaining

    Confirmed weaknesses are exploited safely and chained to show real impact: lateral movement, privilege escalation, data access.

    You see · Evidence of what an attacker could reach.

  5. 05Reporting & debrief

    Executive summary, technical findings with reproduction steps, and a prioritized fix list.

    You see · The report and a walkthrough with your team.

  6. 06Retest

    Fixed findings are re-verified and the report reissued, where the tier includes it.

    You see · Proof the issues are closed.

Commercials

From first call to final report.

  1. 01

    Scoping call

    A practitioner, not a salesperson, walks through targets, constraints and what a good outcome looks like for you.

  2. 02

    Proposal & rules of engagement

    A fixed-scope proposal with tier, price and deliverables. Rules of engagement, contacts and out-of-bounds systems are agreed in writing.

  3. 03

    Sign, then start

    MSA and SOW are signed electronically and the deposit is paid. Only then does testing begin.

  4. 04

    Execution

    Testing runs to the agreed plan. Critical findings are escalated as they are found; you don't wait for the report.

  5. 05

    Report & debrief

    An executive summary plus technical findings with evidence, reproduction steps and fixes, walked through with your team.

  6. 06

    Retest

    Where the tier includes it, we verify your fixes and reissue the report, so auditors and customers see the issues closed.

Timelines are set per engagement in the SOW.

Related

Research

Latest from the blog

All posts on cisomarketplace.com →
Talk to an advisor
Advisor