AWS Cloud Pentest - Extended

AWS Cloud Pentest - Extended

€8.095,00
Skip to product information
AWS Cloud Pentest - Extended

AWS Cloud Pentest - Extended

€8.095,00

Fixed price. Fixed scope. No sales call. A deeper AWS security review and penetration test for organisations with multiple accounts, container or serverless workloads, and a need to know what an attacker could do with a compromised low-privileged identity.

Scope included

  • Up to 3 AWS accounts, up to 2 regions
  • Read-only audit role (via our CloudFormation template) plus one low-privileged test role you provide
  • Estimated effort: 7 tester-days

What we test

  • Everything in Baseline, across all in-scope accounts, plus:
  • Privilege-escalation paths starting from a low-privileged role (assumed breach)
  • Containers and serverless: EKS/ECS configuration, Lambda permissions and secrets in environment variables
  • Cross-account access between the in-scope accounts

Deliverables

  • PDF report with executive summary and technical findings (CVSS-scored, with remediation advice)
  • 1 free retest within 45 days of the final report: we verify your fixes and issue an updated report
  • Letter of attestation you can share with auditors and customers
  • Critical findings reported to you immediately, not at the end of the test

Not included

  • AWS Organizations with more than 3 accounts (email us for a fixed price)
  • Azure and Google Cloud; application-level testing of workloads running on AWS (see Web Application Pentest)
  • Social engineering / phishing, denial-of-service

Testing follows the AWS penetration testing policy: no prior approval from AWS is required for the permitted services.

If we discover during kick-off that your environment is larger than this tier, you can upgrade for the price difference or get a full refund, your choice.

You may also like