a) Network Penetration Testing
- Internal and external network infrastructure
- Firewalls, routers, switches, and wireless networks
- VPN configurations and remote access points
b) Web Application Testing
Public-facing and internal web applicationsAPIs and web servicesAuthentication, session management, and input validationc) System and Server Testing
Operating systems (Windows, Linux, etc.)Database servers, file servers, and application serversPatch management and configuration reviewd) Cloud Security Assessment
Cloud-hosted services (e.g., Azure, AWS)Identity and access management in the cloudData storage and encryption practicese) Social Engineering (Optional)
Phishing simulationsEmployee awareness testingf) Wireless Network Testing
Detection of rogue access pointsEncryption and authentication mechanism