Infrastructure Penetration Testing
Cognisys · Cybersecurity & IT
Certification per AWS Marketplace.
Evidence tier Source Confirmed · 4 captures on record
What the publisher says
As described on AWS Marketplace.
Comprehensive, manually-led security assessment of network infrastructure to identify exploitable vulnerabilities, misconfigurations, and weaknesses. All testing conducted by CREST-certified consultants using a combination of manual techniques and industry-standard tooling.
Scope may include any combination of: external penetration testing of internet-facing infrastructure including perimeter devices, firewalls, VPN gateways, web servers, mail servers, DNS, and publicly accessible services; internal network penetration testing simulating an attacker with network access including lateral movement, privilege escalation, and domain compromise paths; cloud infrastructure security assessment covering AWS, Azure, and GCP environments including IAM, storage, network security groups, logging, and cloud-native services; Active Directory security assessment including domain enumeration, Kerberoasting, AS-REP roasting, DCSync attack paths, trust relationships, and privilege escalation vectors; wireless network penetration testing including rogue AP detection, WPA/WPA2/WPA3 assessment, evil twin attacks, and segmentation validation; firewall rule review and network segmentation testing; build and configuration reviews against CIS Benchmarks; VPN, VLAN, and VOIP assessments; Google Workspace and Microsoft 365 security configuration reviews; backup and recovery procedures review; endpoint payload assessment; password audit; attack path management; and network segregation assessment.
Show the rest of the publisher’s description (1 more line)
Deliverables: executive summary with risk-rated findings; detailed technical report with evidence, reproduction steps, and remediation guidance prioritised by exploitability and business impact; optional remediation verification retest.
Highlights
Highlighted by the publisher on AWS Marketplace.
All assessments are manually led by CREST-certified consultants, combining advanced human intelligence with industry-standard tooling to uncover deep, complex misconfigurations that automated scanners miss.
You form part of the pen testing team from day one; with dedicated Slack channel setup and real-time updates, you are alerted to critical issues immediately so you can patch vulnerabilities at pace and with total confidence.
Our structured, 6-phase experience concludes with a prioritized, risk-rated technical report and a formal wash-up call, giving your team the exact evidence and reproduction steps needed to neutralize threats.
Agent build and provenance
See the full provenance
The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.
Sources
Linked repositories
Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.
Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.

