My Introduction:
I am a CEH licensed Penetration tester with more than 5 years of experience as a professional pentester. I have contributed to more than 100 programs on Bug Crowd. My portfolio includes 50+ completed Pen testing projects as a lead pentester. I use custom methodology which resembles to LPT and NIST methodologies.
Offerings:
- Network Penetration testing.
- Web Penetration testing.
- Vulnerability assessment.
- Black-Box and White-Box penetration testing whichever fulfils the requirements.
- Automated and Manual testing.
- Social engineering.
- ISO/IEC 27001 Compliance testing.
Requirements:
Letter of engagement with following details
- Type of testing required (black box/white box/announced/unannounced/blind/double blind)
- Areas of infrastructure to test (network/application/cloud/DOS)
- Number of targets to test (IP addresses, network ranges, domain names, and devices)
Deliverables:
Detailed report including but not limited to
- Executive summary
- Details of discovered vulnerabilities
- Impact on the business
- Exploitation difficulty
- Remediation recommendations
- Strategic recommendations