ipfour
Network infrastructure with servers and cables in a data centre environment with security monitoring screens
CybersecurityPenetration TestingNetwork and Infrastructure Testing
Network and Infrastructure Testing

Network security. Tested from every angle.

Your network is the backbone of your business. Our certified testers assess your internal and external network infrastructure to identify the paths attackers would use to gain access, move laterally, and reach your most critical systems.

Internal and External Testing
Active Directory Assessment
Free Retest Included
UK-Wide Service
What We Test

Your entire network. Inside and out.

From your internet-facing perimeter to your internal Active Directory, we test every layer of your network infrastructure.

External Perimeter Testing

Assessment of your internet-facing attack surface including exposed services, open ports, misconfigured firewalls, and publicly accessible management interfaces.

External Attack SurfaceOpen PortsFirewall Review

Internal Network Assessment

Simulated insider threat or post-breach scenario testing. We map your internal network, identify lateral movement paths, and test for privilege escalation opportunities.

Lateral MovementPrivilege EscalationActive Directory

Active Directory and Identity Testing

In-depth testing of Active Directory configurations including Kerberoasting, Pass-the-Hash, DCSync attacks, and misconfigured group policies.

KerberoastingPass-the-HashGPO Abuse

Network Device Assessment

Security review of routers, switches, firewalls, and VPN concentrators. We test for default credentials, firmware vulnerabilities, and insecure configurations.

Router SecuritySwitch SecurityVPN Testing

Segmentation and Firewall Testing

Validation of network segmentation controls, VLAN configurations, and firewall rule sets to confirm that critical systems are properly isolated.

VLAN TestingFirewall RulesSegmentation Validation

Cloud Network Assessment

Assessment of cloud network configurations including security groups, network ACLs, VPC peering, and exposed cloud management interfaces.

AWS Security GroupsAzure NSGsCloud Perimeter
How It Works

A structured methodology. Real-world results.

Every network assessment follows a rigorous process. You know exactly what we are doing, when we are doing it, and what you will receive at the end.

01

Scoping and Asset Discovery

We define the IP ranges, domains, and systems in scope. A signed rules of engagement document is agreed before any testing begins.

02

Reconnaissance and Enumeration

Passive and active reconnaissance to map your network topology, identify live hosts, enumerate services, and understand your attack surface.

03

Vulnerability Identification

Automated scanning combined with manual analysis to identify vulnerabilities across network devices, servers, and services.

04

Exploitation and Lateral Movement

Controlled exploitation of confirmed vulnerabilities to demonstrate real-world impact, including lateral movement and domain compromise scenarios.

05

Reporting and Risk Rating

A clear report with executive summary, network topology findings, CVSS risk ratings, and prioritised remediation guidance.

06

Remediation Support and Retest

We remain available during your remediation window and provide a free retest of all critical and high findings once fixes are in place.

Real Results

How we have helped UK businesses stay secure.

Manufacturing Business

A UK manufacturer needed an internal network assessment after a ransomware incident to understand how attackers had moved laterally across their environment.

Lateral movement paths identified and closed. Active Directory hardening completed. No repeat incident in 18 months.

Professional Services Firm

A 200-person law firm needed an external perimeter test to satisfy their cyber insurance renewal requirements.

Clean external perimeter report delivered. Cyber insurance renewed at favourable terms.

Healthcare Organisation

A private healthcare provider needed network segmentation testing to confirm that clinical systems were properly isolated from administrative networks.

Two segmentation failures identified and resolved. NHS Digital DSPT compliance maintained.

Ready to Test Your Network?

Get a scoped network pen test quote in 24 hours.

Tell us about your environment and we will come back with a fixed-price quote, a proposed timeline, and a clear scope document. No obligation.