Could you give a quick soup-to-nuts on perimeter tests? How long it should take, how much it should cost and different areas a perimeter team will try to attack through?

It really depends on what is included with the tests. If all that is being done is a simple vulnerability scan, it probably won't take more than a few hours or so. If there are real penetration tests being done, it could run days or weeks. Costs vary widely, as do the skill levels of those doing the tests. It would not be unusual to see costs of over $200.00 per hour per analyst.

Your best way of estimating costs would be to get quotes from multiple companies performing similar services. Then check out the qualifications of each. Be sure to get what you pay for. A simple vulnerability scan won't do you any good if you don't understand the report, or know how to fix the problems identified. If you need help with the fixes, be sure to hire someone who can do that as well.

