PEN / PEN-06
Wireless security testing
Assessment of wireless networks, authentication and separation to reduce unauthorised access near company premises.

WHEN IT HELPS
A focused response
to a defined need.
Network manager; guest Wi-Fi, warehouses, shared offices or access-point replacement.
SCOPE & OUTCOMES
What the engagement covers.
Scope
- Explicitly authorised networks
- guest-to-internal separation
- authentication, administrative access and access-point settings
Deliverables
- Map of tested networks
- separation gaps
- configuration and access-management recommendations
Acceptance evidence
Expected and prohibited access is checked from agreed test profiles without affecting neighbouring networks.
DELIVERY
How the work is structured.
Approach
Obtain authorisation and rules of engagement; prepare accounts and backups; perform controlled tests; debrief, clean up and arrange retesting.
Prerequisites & responsibilities
Customer: written authorisation, asset ownership, third-party permission, stop contacts and scope. Provider: bounded testing, minimal evidence and critical-finding notification.
Scope factors
Applications, roles, APIs, networks, business complexity, supplied access, depth and authorised windows. Black/grey/white box and retesting affect effort; price after scoping.
Questions to clarify
Which sites and SSIDs? Are premises shared with other organisations? Are radio disruptions prohibited?
IMPORTANT BOUNDARIES
Nearby wireless networks are not automatically authorised targets; jamming and personal-traffic collection are excluded by default.
No denial of service, destruction, real exfiltration or social engineering without explicit authorisation. Third parties are not tested merely at a customer’s request. Untested scope remains unassessed.
IN PRACTICE
Illustrative situations.
These examples describe possible engagements and target outcomes. They are not customer references or achieved results.
Scenario 01
Shared offices have guest Wi-Fi that reaches an internal printer. Project: test authorised network separation. Target outcome: isolated guest access and narrow exceptions, validated from a visitor device.
Scenario 02
A warehouse relies on older Wi-Fi terminals. Project: configuration review and non-disruptive testing. Target outcome: stronger access controls or compensating measures; disruptive tests require a dedicated window.
Technology and reference context
Existing wireless controllers and NAC; approved wireless testing tools.
The final technology set is agreed during scoping, based on interoperability, licensing, access rights and operating requirements.
CONNECTED SERVICES
Build the next step.
These services can complement the engagement. They are not automatically included.
START A CONVERSATION
Make the scope clear.
We will clarify the objective, dependencies and responsibilities of this service before proposing delivery.
