Skip to content

Network Security Assessment

Review network architecture and protective controls to identify exposure, segmentation weaknesses, insecure configuration and monitoring gaps.

What we review

  • Network architecture
  • Security zones
  • Segmentation
  • Firewall configuration and rule sets
  • VPN and remote access
  • Wireless security
  • IDS/IPS
  • Administrative interfaces
  • Internet exposure
  • Cloud networking
  • Network access control
  • Device hardening
  • Logging and monitoring
  • Configuration and change management

Deliverables

  • Architecture observations
  • Network-security findings
  • Segmentation findings
  • Risk ratings
  • Remediation recommendations
  • Prioritized action plan

Frequently asked questions

Is this a penetration test?

No. A Network Security Assessment is not automatically a penetration test. Offensive testing or exploitation must be explicitly scoped, authorized and supported by appropriate capability and rules of engagement before it is offered or performed.

Do you review cloud networking as well as on-premises?

Yes. Cloud networking, network access control and internet exposure are part of the review areas, alongside traditional network architecture and segmentation.

Can you review segmentation used to reduce PCI DSS scope?

Segmentation findings are part of the deliverables. Where the objective is PCI DSS scope reduction, the work is usually combined with a PCI DSS Readiness Assessment.

What evidence do you need?

Typically architecture documentation, firewall rule sets and configurations, remote-access configuration, monitoring configuration and change-management records. The exact evidence request follows the agreed scope.

Discuss the scope of your assessment

Tell us what you need to assess, your target timeline and the environment involved. We will review the scope and identify the appropriate next step.

Page last reviewed 6 September 2026