Network Penetration Test Engagement
Budget: $10 – $30 USD
I need a comprehensive penetration test that zeroes in on our network infrastructure. The goal is to uncover vulnerabilities across routers, switches, firewalls, VPN endpoints, and any exposed services, then document clear, actionable remediation steps.
Scope
• External and internal network testing (no social-engineering or physical tasks at this stage).
• Exploitation is allowed where safe, with proof-of-concept screenshots or logs.
• All testing must respect our agreed maintenance windows so production traffic is never disrupted.
Deliverables
1. Technical report detailing each finding, CVSS score, and step-by-step reproduction.
2. Executive summary written for leadership.
3. Debrief call to walk through results and mitigation priorities.
Acceptance criteria
• Every high- and critical-risk issue is accompanied by at least one viable fix.
• False positives are removed or clearly tagged with evidence.
• All raw scan data and tool outputs are handed over at project close.
Please include a detailed project proposal outlining your methodology (e.g., OWASP, NIST, PTES), tools you plan to use (such as Nmap, Nessus, Metasploit, Burp Suite, or similar), estimated timeline, and any prerequisites you need from our side.
Scope
• External and internal network testing (no social-engineering or physical tasks at this stage).
• Exploitation is allowed where safe, with proof-of-concept screenshots or logs.
• All testing must respect our agreed maintenance windows so production traffic is never disrupted.
Deliverables
1. Technical report detailing each finding, CVSS score, and step-by-step reproduction.
2. Executive summary written for leadership.
3. Debrief call to walk through results and mitigation priorities.
Acceptance criteria
• Every high- and critical-risk issue is accompanied by at least one viable fix.
• False positives are removed or clearly tagged with evidence.
• All raw scan data and tool outputs are handed over at project close.
Please include a detailed project proposal outlining your methodology (e.g., OWASP, NIST, PTES), tools you plan to use (such as Nmap, Nessus, Metasploit, Burp Suite, or similar), estimated timeline, and any prerequisites you need from our side.