I will perform a l cybersecurity audit and vulnerability assessment
About this Gig
Is your network truly secure? Most small businesses don't know what's exposed until it's too late.
I'm a certified cybersecurity professional (eJPT certified, OSCP in progress) specializing in network security audits. I'll identify weaknesses, misconfigurations, and real-world attack paths that malicious actors could exploit before they do.
What I'll Audit:
Network topology & exposed services
Open ports and running services (Nmap deep scans)
SMB, RDP, and authentication weaknesses
Firewall rule review (pfSense and similar)
Active Directory misconfigurations (if applicable)
Patch level & outdated software detection
Password policy & credential hygiene
My Methodology:
I run engagements using the same professional workflow used in OSCP-style assessments enumeration, vulnerability identification, risk scoring (CVSS), and actionable remediation. All testing is conducted safely, ethically, and within your authorized scope.
What You Get:
A clean, executive-ready report including:
Executive summary (non-technical)
Technical findings with evidence
Risk ratings (Critical Low)
Step-by-step remediation guidance
Retest recommendations
Device:
Desktop
•
Laptop
•
Server
Operating system:
Windows
•
Linux
•
IOS
FAQ
Is this legal?
This is a defensive audit, not an attack. I identify vulnerabilities safely using industry-standard tools (Nmap, vulnerability scanners, manual review). You'll sign a scope authorization form before I begin — this protects both of us and ensures the engagement is 100% legal and ethical.
What do you need from me to start?
I'll need: (1) signed authorization, (2) target IP ranges or hostnames, (3) scope boundaries (what's in/out), and (4) preferred testing window. For internal audits, VPN access or an on-site agent may be required. I'll guide you through setup.
Will your scan disrupt my network or services?
No. I use non-intrusive, safe scanning profiles by default. I avoid DoS-style checks, brute force, and exploitation unless explicitly authorized. Production-safe testing is the standard approach.
