Penetration Testing mailing list archives

Re: Pen-test pricing


From: Faisal Khan <faisal () netxs com pk>
Date: Fri, 04 Feb 2005 18:41:22 +0500



Andre,

That's a question with many answers. We do it on a per server basis, as well as a per "network" basis (multiple servers). Per server basis is averages US$ 10,000 and per network is dependent on how complex the network is, how many servers, number of IPs, etc. Can range from US$ 15,000 to US$ 100,000.

In our case we've partnered up with a US company to perform pen-tests. We our selves just do the ground work, reconnaissance type work. In case you want to know our referral fees is about 25% of what's quoted (which is inclusive of the ground/reconnaissance work we do).

Per hour based pricing model is also very popular amongst consultants (isn't it always! :) )

Hope that helps.

Faisal

At 07:21 PM 2/3/2005, Andre Derek Protas wrote:
Does anyone have any good figures on pricing for pen-tests? Is charging done per server, location, or hour? Any help would be appreciated.

::andre::

_________________________________________________________________
Express yourself instantly with MSN Messenger! Download today - it's FREE! http://messenger.msn.click-url.com/go/onm00200471ave/direct/01/



Faisal Khan,  CEO
Net Access Communication
Systems (Private) Limited
________________________________

Network Security - Secure Web Hosting
Managed Internet Services - Secure Email
Dedicated Servers - Reseller Hosting

Visit www.netxs.com.pk for more information.



Current thread: