Wi-Fi Security Assessment

Your wireless network is your perimeter. Let's test how secure it really is.

Comprehensive wireless security testing covering corporate and guest networks. We test encryption strength, identify rogue access points, assess network isolation, and evaluate captive portal security.
CREST Pathway UK Cyber Security Council member Cyber Essentials certified
Wi-Fi penetration testing and security assessment services

Who Needs This

Who needs a Wi-Fi security assessment?

Any organisation that relies on wireless networks for business operations has an attack surface that is accessible from outside the building perimeter. Wi-Fi security testing is particularly relevant for organisations where wireless is a primary access method.

Office-based organisations

Corporate wireless networks grant access to internal systems. Weak authentication, misconfigured encryption, or insufficient network segmentation can provide an attacker with a foothold in your internal environment.

Businesses with guest networks

Guest Wi-Fi networks must be properly isolated from corporate infrastructure. Segmentation failures between guest and corporate networks are a common finding with potentially significant impact.

Retail and hospitality environments

High-traffic environments with open or semi-open wireless networks require assessment of encryption standards, captive portal security, and isolation between customer and operational networks.

Organisations with BYOD policies

Networks that allow personal devices require robust access controls to prevent unauthorised access and ensure that compromised personal devices cannot pivot to sensitive resources.

What We Test

What does a Wi-Fi security assessment include?

Our wireless security testing covers the full range of corporate and guest wireless infrastructure, applying both passive monitoring and active testing techniques.

Encryption & Protocol Assessment

Assessment of WPA2 and WPA3 configuration, identification of weak cipher suites, and testing of legacy protocol support (WEP, TKIP) that may remain enabled for compatibility reasons.

Authentication Testing

PSK strength testing, WPA2-Enterprise authentication assessment, RADIUS configuration review, and testing for authentication bypass vulnerabilities.

Rogue Access Point Detection

Identification of rogue and evil twin access points in range of your premises that could be used to intercept traffic from users connecting to spoofed networks.

Network Segmentation

Testing whether guest, corporate, and IoT network segments are properly isolated, and whether an attacker with guest network access can reach internal resources or other guest clients.

Captive Portal Security

Assessment of captive portal authentication, bypass techniques, and whether the portal implementation exposes user data or allows access to restricted resources without authentication.

Connected Device Assessment

Review of wireless clients, their connection behaviour, and whether connected devices can be targeted by attacks from others on the same network segment.

Pricing

From £1,700

for Wi-Fi security assessment

Not sure where your deployment fits? A 30-minute scoping call is free and gets you a fixed written quote.

No obligation · Strictly confidential · Quote within one business day

Pricing Examples

Single location (1-3 access points)£1,700 - £2,000
Medium enterprise deployment£2,200 - £2,500
Multi-location assessment£3,000+

What's Included

  • Fixed-price proposal within one business day
  • Manual, consultant-led testing. Not automated scans
  • Report within 2 business days of testing completion
  • No obligation quote, all enquiries are fully confidential

Indicative ranges only. Your exact price is confirmed after a short scoping conversation - see full service pricing .

Key Deliverables

What's included in the assessment?

Every Wi-Fi security assessment is delivered as a defined set of outputs supporting both technical remediation and executive decision-making.

Executive Report

A non-technical summary of findings with risk ratings and recommendations suitable for facilities, IT management, and senior stakeholders.

Technical Report

Detailed findings with reproduction steps, severity scoring, and remediation guidance including specific configuration instructions where applicable.

Debrief Session

An offer of a debrief call to walk through findings, discuss remediation priorities, and answer questions from both technical and operational stakeholders.

Attack Surface Center Access

Complimentary access to our Attack Surface Center ASM platform for collaborative tracking and remediation management throughout and beyond the engagement.

Consultant-led Testing

All testing is consultant-led by in-house staff with specialist wireless testing equipment and experience. Nothing is outsourced or subcontracted.

Common Questions

Wi-Fi security assessment - frequently asked questions

Wi-Fi security testing (also called wireless penetration testing) assesses the security of your wireless networks to identify vulnerabilities that could allow unauthorised access, eavesdropping, or attacks against connected devices. We test authentication mechanisms, encryption protocols, access point configurations, and the security of devices connected to your wireless network.

Yes, Wi-Fi testing requires physical presence since wireless signals are location-dependent. We’ll visit your office or facilities with our specialised equipment. Most engagements require at least 1 day on-site. For multi-location organisations, we can coordinate testing across sites.

Most testing activities are passive or low-impact and won’t affect normal operations. However, certain tests such as deauthentication attacks may cause brief, localised disruptions.

We can perform this type of testing against a provided representative device for instances where business impact is a concern.

A Wi-Fi security assessment focuses specifically on your wireless infrastructure - the access points, protocols, authentication, and segmentation. An internal network penetration test covers the broader internal network environment, which may include wireless as one component. Many organisations commission both as complementary assessments.

Yes, enterprise wireless authentication using RADIUS, EAP-TLS, PEAP, and related protocols is assessed for configuration weaknesses, certificate validation issues, and authentication bypass vulnerabilities.

Ready to test your wireless security?

Get a fixed-price quote within 24 hours. Our team will scope your wireless assessment and provide a tailored proposal for your environment.