Skip to content
Penetration testing
  • External network penetration testing
  • Internal network penetration testing
  • Web application penetration testing
  • API penetration testing
  • Mobile application penetration testing
  • Wireless penetration testing
  • Cloud security assessment
  • Social engineering and phishing simulation
Security assurance
  • Essential Eight assessment
  • Configuration review and benchmarking
  • Remediation support and retesting
Managed security
  • Vulnerability management
  • Continuous application scanning
  • SIEM monitoring
  • EDR monitoring
All services on one page
Industries How we work About Blog
1300 AURIAN Contact
Menu
Penetration testing
  • Penetration testing services
  • External network penetration testing
  • Internal network penetration testing
  • Web application penetration testing
  • API penetration testing
  • Mobile application penetration testing
  • Wireless penetration testing
  • Cloud security assessment
  • Social engineering and phishing simulation
Security assurance
  • Security assurance and compliance services
  • Essential Eight assessment
  • Configuration review and benchmarking
  • Remediation support and retesting
Managed security
  • Managed security services
  • Vulnerability management
  • Continuous application scanning
  • SIEM monitoring
  • EDR monitoring
  • All services
  • Industries
  • How we work
  • About
  • Blog
Call 1300 AURIAN Contact
InternetMail gatewayPerimeter firewallRemote access VPNWeb applicationAPI gatewaySupplier accessCloud tenancyIdentity (AD, Entra ID)Office networkApplication serverWorkstationWorkstationWirelessFinance systemDomain controllerFile serverDatabaseBackupsCustomer dataexposed VPNweak credentiallocal admin reuseAD CS misconfigdomain adminreportopen portIDORmass assignmentSSRFreused DB passwordreportphishing emailmacro runsKerberoastDCSyncbackups deletedevil twinno isolationLLMNR poisoninggroup misusereportno MFAlegacy authrole escalationbackups reachedshared accountunpatched servicedomain adminexposed VPNweak credentiallocal admin reuseAD CS misconfigdomain adminreport
  1. Services
  2. Penetration testing

Offensive, 8 services

Penetration testing services

Manual, senior-led penetration testing aligned to PTES, OWASP and NIST SP 800-115, reported so your own engineers can close every finding. Eight services, one method, one point of contact from scoping to retest.

Scope a test Call 1300 AURIAN

Services

The eight services

External network penetration testing

External penetration testing of your internet-facing perimeter: exposed services, VPN, mail and DNS, tested by hand by a senior consultant.

You receive Findings for every exposed service, each with evidence and a fix, and a debrief call on the priorities

Internal network penetration testing

Internal penetration testing from a foothold on your network: Active Directory attack paths, credential hygiene and segmentation, tested to domain admin.

You receive The attack path drawn out from foothold to domain admin, step by step, with a fix for each link

Web application penetration testing

Web application penetration testing against the OWASP Testing Guide: authentication, access control, injection and business logic, tested by hand.

You receive Findings with evidence and reproduction steps, and a debrief with your development team

API penetration testing

API penetration testing for REST, GraphQL and SOAP against the OWASP API Security Top 10: authorisation, rate limiting and undocumented endpoints.

You receive An inventory of every endpoint tested, undocumented ones included, with the request that reproduces each finding

Mobile application penetration testing

Mobile application penetration testing for iOS and Android against OWASP MASVS: local storage, transport security, reverse engineering and the API.

You receive One report covering the app and the API it depends on, with evidence from the device

Wireless penetration testing

Wireless penetration testing of corporate and guest Wi-Fi: WPA2 and WPA3-Enterprise, rogue access points, guest isolation and signal leakage.

You receive A signal survey of where your networks reach beyond your walls, with findings ranked by risk

Cloud security assessment

Cloud security assessment for AWS, Azure, Microsoft 365 and Google Cloud: CIS Benchmark review and attack-path testing of identity, exposure and logging.

You receive The identity attack paths drawn out, from ordinary account to tenancy control, mapped to the CIS Benchmark

Social engineering and phishing simulation

Phishing simulation and social engineering assessment: measured, consented email and voice campaigns that show your awareness baseline and process gaps.

You receive Aggregate results, the reporting rate above all, and the process gaps behind them. Nothing that names individuals

The Aurian engagement lifecycle

How a test runs

Every penetration test follows the same four phases, so you know what happens next before we start.

  1. 01 Scope

    We agree what is in and out, the test windows, the credentials and contacts, and the rules of engagement, in writing.

  2. 02 Test

    A senior consultant tests by hand, using automated tooling for coverage. You hear about serious findings the day we confirm them.

  3. 03 Report

    An executive summary for the board and the insurer, and technical findings with evidence and a fix your engineers can apply.

  4. 04 Retest

    Once you have remediated, we retest and update the report so the record shows what was found and what was closed.

Read how a penetration test with Aurian works

Coverage

One map, eight tests

Each penetration testing service covers part of a typical organisation. Together they cover the whole path an attacker would take, from the internet to your customer data. Hover or tab to a system to see which services test it.

Internet Web application API Perimeter Cloud tenancy Email Office network Workstation Identity Wireless Crown jewels Servers INTERNET: COVERED BY External network penetration testing WEB APPLICATION: COVERED BY Web application penetration testing API: COVERED BY API penetration testing Mobile application penetration testing PERIMETER: COVERED BY External network penetration testing CLOUD TENANCY: COVERED BY Cloud security assessment EMAIL: COVERED BY External network penetration testing Social engineering and phishing simulation OFFICE NETWORK: COVERED BY Internal network penetration testing Wireless penetration testing WORKSTATION: COVERED BY Internal network penetration testing Social engineering and phishing simulation IDENTITY: COVERED BY Internal network penetration testing Cloud security assessment Social engineering and phishing simulation WIRELESS: COVERED BY Wireless penetration testing CROWN JEWELS: COVERED BY Internal network penetration testing Web application penetration testing API penetration testing SERVERS: COVERED BY Internal network penetration testing Internet Web application Perimeter API Email Cloud tenancy Office network Workstation Wireless Identity Crown jewels Servers INTERNET: COVERED BY External network penetration testing WEB APPLICATION: COVERED BY Web application penetration testing PERIMETER: COVERED BY External network penetration testing API: COVERED BY API penetration testing Mobile application penetration testing EMAIL: COVERED BY External network penetration testing Social engineering and phishing simulation CLOUD TENANCY: COVERED BY Cloud security assessment OFFICE NETWORK: COVERED BY Internal network penetration testing Wireless penetration testing WORKSTATION: COVERED BY Internal network penetration testing Social engineering and phishing simulation WIRELESS: COVERED BY Wireless penetration testing IDENTITY: COVERED BY Internal network penetration testing Cloud security assessment Social engineering and phishing simulation CROWN JEWELS: COVERED BY Internal network penetration testing Web application penetration testing API penetration testing SERVERS: COVERED BY Internal network penetration testing

Frequently asked questions

What is a penetration test?

A penetration test is an authorised, manual attempt to break into a defined set of systems the way an attacker would, followed by a report that shows what was reached, how, and what to change. Aurian's consultants use automated tools for coverage, but the test is the consultant's work: chaining weaknesses together, testing logic, and judging what matters in your environment.

How is a penetration test different from a vulnerability scan?

A vulnerability scan is automated. It lists known weaknesses by signature and stops there. A penetration test starts where the scan stops: a consultant confirms what is real, chains weaknesses into a path, and shows what an attacker could actually reach. Aurian offers both; scanning sits inside our managed vulnerability management service, and testing is the work described on these pages.

How often should we test?

At least once a year, and after significant change: a new customer-facing application, a migration to the cloud, a merger, or a new remote-access arrangement. An annual test with continuous scanning in between is a common arrangement, and cyber insurers increasingly expect it.

What does a penetration test cost?

Each engagement is priced from its scope: the number of hosts, applications or users in play and the depth of testing required. Every engagement is a fixed price agreed after scoping, so the cost is known before any testing starts.

Will testing disrupt production?

Testing is planned with you before it starts: what is in scope, when we test, and who to call. Denial-of-service testing is out of scope unless you ask for it. When a test could affect a production system, we agree a window and a rollback plan in writing, and we test the fragile parts when you say so.

Do you need credentials?

It depends on the test. External network tests start without any. Web application, API and internal tests find more when they include an authenticated phase, because that is where most real attacks operate. We ask for test accounts at scoping and tell you exactly what each one will be used for.

Also from Aurian: security assurance and compliance services, and managed security services.

Scope a test with a senior consultant

Tell us what you need to know about your environment. We reply within one business day.

Scope a test Call 1300 AURIAN

Aurian Security is an Australian penetration testing and security assurance firm. Senior consultants perform every engagement, for clients across the country.

Penetration testing

  • External network penetration testing
  • Internal network penetration testing
  • Web application penetration testing
  • API penetration testing
  • Mobile application penetration testing
  • Wireless penetration testing
  • Cloud security assessment
  • Social engineering and phishing simulation

Assurance and managed

  • Security assurance
  • Essential Eight assessment
  • Configuration review and benchmarking
  • Remediation support and retesting
  • Managed security
  • Vulnerability management
  • Continuous application scanning
  • SIEM monitoring
  • EDR monitoring

Company

  • About Aurian
  • How we work
  • Industries
  • Blog
  • Contact
  • Privacy policy
526/368 Sussex St, Sydney NSW 2000 1300 AURIAN (1300 287 426) sales@aurian.com.au

© 2026 Aurian Security Pty Ltd. ACN 639 930 528.

This site is static, loads no third-party trackers, and publishes a security.txt.