# Internal Network Penetration Test

# Scoping questions

Here are some data points we will need to scope your internal network penetration test:

  • Approximate number of IPs/subnets in scope?
  • Any IPs/subnets that will be out of scope?
  • Any timing restrictions for when we can and can not test?
  • Do you have custom goals in mind for the test (i.e. "try to compromise user X's account, try to get to sensitive database Y or get admin access on system Z")?