Network mapping
Asset discovery, topology and port/service enumeration for an in-scope network.
- Owner
- Onboarding engineers, assessment leads.
- SLA
- 5 business days from kickoff.
What our team delivers, who runs it, and how to engage. Use this as the service-desk reference when a client or internal team asks "do we do that?" Operational procedures live in the Operations document.
Discovery, mapping, and evaluation of client network estates.
Asset discovery, topology and port/service enumeration for an in-scope network.
Segmentation review, firewall/ACL audit and traffic baselining.
Active site survey, rogue identification, encryption review.
Recursive resolver health, DHCP scope review, time drift.
Active scanning and testing across the attack surface.
Edge Scan + Nuclei + ZAP against public assets.
Nmap + Nuclei via a registered worker on the client network.
Authenticated + unauthenticated DAST with session injection.
Trivy-based scans of images and Terraform/K8s manifests.
AWS/Azure/GCP misconfig and IAM review.
Identity hygiene, MFA, and credential lifecycle.
Plan, pilot and enforce MFA across the client tenant.
Audit of effective roles vs least-privilege baseline.
Inventory, rotate, and document non-human identities.
Ongoing managed services delivered by the MSP team.
SOC-style monitoring of NSO findings and infra alerts.
Triage NSO findings, schedule remediation, verify fixes.
Backup integrity tests and tabletop DR exercises.
EDR deployment, policy tuning, response.
Pre-purchased IR hours with defined response SLAs.
Policy, audit prep, and education.
SOC 2 / ISO 27001 / HIPAA / PCI gap assessments and policy templates.
Facilitated IR/BCP scenarios with written readout.
Annual training + quarterly phishing simulations.
Bringing clients in and out cleanly.
Tenant provisioning, asset intake, scanner enrollment.
Help clients publish required TXT records and verify ownership.
Export findings, revoke access, return/destroy data.