Privileged Access Review
How easily can an attacker go from one compromised account to controlling your entire network? The Privileged Access Review is the focused variant of the AD assessment — sharply focused on privileged access and the shortest paths to Domain Admin. Read-only, as an independent third party with no vendor interests.
The Privileged Access Review is an independent analysis of privileged access in your Active Directory: Tier 0, delegations, service accounts and the shortest paths to Domain Admin — for organisations that want to know their most critical attack paths. You get a report with prioritised findings and recommendations that reduce privilege-escalation risk. Read-only, faster than the full AD assessment, at a fixed price after a free pre-analysis.
What the review covers
- Domain/Enterprise Admins, Tier-0 accounts and protected users
- Privileged group memberships — incl. nested and stale accounts
- Unconstrained/constrained delegation, RBCD, AdminSDHolder and dangerous ACLs
- Service accounts with SPNs (Kerberoasting) and accounts without Kerberos pre-auth (AS-REP roasting)
- Password, lockout and Kerberos policies
- Overall assessment of the shortest paths to Domain Admin
What you get
- Written report with prioritised findings
- Recommendations targeting reduced privilege-escalation risk
Out of scope
- Not a full AD assessment — GPOs, infrastructure and replication are not covered
- No active exploitation — the review is read-only
- The offline password penetration test is part of the full AD assessment — not this variant, unless separately agreed
- Unilite
- Cadpeople
- Kunde & Co
- Bitcoin Suisse
- Mercantec
- Dagrofa
- Laursens Realskole
- Zug Kommune
- Altid Vikar
- Adeo Datacenter
- A&O Kreston
- Numarics
- Geelmuyden Kiese
The assessment we received deserves a 10 out of 10 without hesitation.
80+ certifications — CISSP, CISM, CISA, ISO 27001 · More about Martin →
How it works
Free pre-analysis
We assess the scope and give you a fixed price. No obligation, no surprises.
Read-only data collection
Automated extracts via PowerShell and Graph — zero operational disruption.
Analysis & assessment
Manual specialist review with risk prioritisation and business context.
Report & plan
An executive summary for leadership, technical depth for your team — ready to act on.
Practicalities
Free and without obligation — we are given read access and assess the scope so that we can give you a fixed price.
Typically a kick-off meeting of about an hour plus setting up read access. We do the rest.
Read-only data collection — no changes to your systems and no operational disruption.
A written report with prioritised recommendations, data extracts in Excel where relevant — and a walkthrough of the results at both management and engineering level.
Frequently asked questions
What is Tier 0 — and why focus there?
Tier 0 is the set of accounts and systems that effectively own your Active Directory: Domain Admins, domain controllers and anything that can control them. If a single Tier 0 element is compromised, the entire environment is effectively lost — so that is where prioritisation starts.
How does it differ from the full AD assessment?
The Privileged Access Review goes deep on privileged access and attack paths only — faster and more focused. The full AD assessment covers the entire environment, including GPOs, infrastructure and the offline password test.
What does a Privileged Access Review cost — and why isn't the price listed here?
Because no two companies — or system landscapes — are alike, and a fixed price list would be either too high for some or too vague for all. Instead, we always start with a free, no-obligation pre-analysis. After that you usually get a fixed price with no surprises — and where a fixed price isn’t possible, an estimate we stand behind and keep.
Ready to have your security verified by an independent third party?
A free, no-obligation pre-analysis. A fixed price. A concrete plan you can act on right away.
Get a free pre-analysis