Network Penetration Testing Expert
Budget: $15 – $25 AUD
I need a seasoned penetration tester to perform a thorough black-box assessment of my company’s internal and outward-facing network infrastructure. The sole objective is to uncover, document, and help me understand every exploitable vulnerability that an external attacker could leverage.
Scope of work
• Reconnaissance, enumeration, and exploitation attempts against servers, routers, firewalls, VPN gateways, and any exposed services or ports.
• No web or mobile apps are in scope—this engagement is strictly network-layer.
• All testing must respect production uptime; schedule scans or intrusive steps during the maintenance window we agree upon.
Deliverables
1. Executive summary written in plain language for leadership.
2. Detailed technical report: methodology, tools, step-by-step findings, screenshots, CVSS scores, and reproducible PoC commands.
3. Prioritized remediation roadmap mapped to each finding.
4. A follow-up verification test once fixes are applied (light retest of previously discovered issues).
Acceptance criteria
• Every publicly reachable IP range I provide is assessed.
• At least one authenticated scan against our VPN segment is included.
• Final report passes an internal peer review for clarity and evidence.
Tools you prefer are up to you—Nmap, Nessus, Metasploit, Burp Suite, or custom scripts are all welcome—as long as results are reliable and clearly documented. Clear communication and strict confidentiality are essential throughout the engagement.
Scope of work
• Reconnaissance, enumeration, and exploitation attempts against servers, routers, firewalls, VPN gateways, and any exposed services or ports.
• No web or mobile apps are in scope—this engagement is strictly network-layer.
• All testing must respect production uptime; schedule scans or intrusive steps during the maintenance window we agree upon.
Deliverables
1. Executive summary written in plain language for leadership.
2. Detailed technical report: methodology, tools, step-by-step findings, screenshots, CVSS scores, and reproducible PoC commands.
3. Prioritized remediation roadmap mapped to each finding.
4. A follow-up verification test once fixes are applied (light retest of previously discovered issues).
Acceptance criteria
• Every publicly reachable IP range I provide is assessed.
• At least one authenticated scan against our VPN segment is included.
• Final report passes an internal peer review for clarity and evidence.
Tools you prefer are up to you—Nmap, Nessus, Metasploit, Burp Suite, or custom scripts are all welcome—as long as results are reliable and clearly documented. Clear communication and strict confidentiality are essential throughout the engagement.