Skip to product information
AWS Cloud Pentest - Extended
€8.095,00
Fixed price. Fixed scope. No sales call. A deeper AWS security review and penetration test for organisations with multiple accounts, container or serverless workloads, and a need to know what an attacker could do with a compromised low-privileged identity.
Scope included
- Up to 3 AWS accounts, up to 2 regions
- Read-only audit role (via our CloudFormation template) plus one low-privileged test role you provide
- Estimated effort: 7 tester-days
What we test
- Everything in Baseline, across all in-scope accounts, plus:
- Privilege-escalation paths starting from a low-privileged role (assumed breach)
- Containers and serverless: EKS/ECS configuration, Lambda permissions and secrets in environment variables
- Cross-account access between the in-scope accounts
Deliverables
- PDF report with executive summary and technical findings (CVSS-scored, with remediation advice)
- 1 free retest within 45 days of the final report: we verify your fixes and issue an updated report
- Letter of attestation you can share with auditors and customers
- Critical findings reported to you immediately, not at the end of the test
Not included
- AWS Organizations with more than 3 accounts (email us for a fixed price)
- Azure and Google Cloud; application-level testing of workloads running on AWS (see Web Application Pentest)
- Social engineering / phishing, denial-of-service
Testing follows the AWS penetration testing policy: no prior approval from AWS is required for the permitted services.
If we discover during kick-off that your environment is larger than this tier, you can upgrade for the price difference or get a full refund, your choice.