On-Site Security Assessments
& Physical Walkthroughs
Hands-on security assessments conducted on-premises across the Greater Toronto Area (GTA) and Calgary. We inspect physical boundaries, rogue network drops, wireless RF bleed, and access controls before malicious actors or compliance auditors find them.
What We Assess During an On-Site Walkthrough
We systematically evaluate your physical defenses, network access controls, server room containment, and employee procedural adherence.
Physical Perimeter & Access Controls
Testing the resilience of building turnstiles, electronic keycard readers, mantraps, and secondary egress doors against unauthorized entry.
- RFID / HID badge frequency analysis, cloning & replay feasibility
- Tailgating vulnerability testing during morning rushes and lunch peaks
- Under-door tool, latch slip, and Request-to-Exit (REX) sensor bypass
- Visitor registration protocol validation and escort compliance checks
Server Room & Comms Closet Audits (IDF/MDF)
Ensuring critical telecommunications closets and on-premise server enclosures meet physical isolation and compliance mandates.
- Drop-ceiling and raised-floor ingress route inspections
- Master key lock security, wafer tumbler bypass, and key control logs
- CCTV coverage blindspot analysis and badge access audit trails
- Environmental and shared-tenant physical segregation checks
Network Drops & Rogue Device Sweeps
Plugging directly into physical RJ-45 jacks throughout lobbies, conference rooms, print stations, and unmonitored cubicles.
- 802.1X Network Access Control (NAC) and MAC spoofing tests
- Direct VLAN segregation testing (Guest vs. Corporate vs. IoT)
- Covert hardware drop-box placement simulation (Raspberry Pi / LAN Turtle)
- Unauthenticated network printer and IP phone exploitation
Wireless Perimeter & RF Bleed Analysis
Auditing how far your corporate Wi-Fi signals radiate beyond your physical premises into public sidewalks, parking lots, or adjacent tenant suites.
- Exterior signal bleed mapping and rogue AP detection
- WPA2/WPA3-Enterprise configuration review & RADIUS certificate checks
- Evil Twin / Wi-Fi phishing susceptibility testing
- Bluetooth / BLE and IoT peripheral broadcast exposure review
Satisfying Canadian & International Standards
Modern frameworks require rigorous verification of physical security boundaries. Our deliverables provide the exact control evidence your auditors expect.
SOC 2 Type II Controls
Provides conclusive evidence for Common Criteria CC6.4 (physical access restrictions to facilities) and CC6.5 (prevention of unauthorized device attachment to internal assets).
OSFI Guideline B-13 & E-21
Meets the operational resilience and physical security governance expectations set by the Office of the Superintendent of Financial Institutions for Toronto financial entities.
ISO/IEC 27001:2022
Validates controls under Annex A.7 (Physical Controls): Physical security perimeter (7.1), physical entry (7.2), securing offices, rooms and facilities (7.3), and clear desk/screen policy (7.7).
How Our On-Site Walkthrough Works
Executed with zero operational disruption to your daily business operations.
Scoping & Rules of Engagement (RoE)
We review floor plans, building management protocols, tenant lease boundaries, and establish formal authorization letters with executive sponsor contacts and emergency abort procedures.
Exterior Reconnaissance & Perimeter Sweep
Our assessors survey building entry points, loading bays, exterior camera sightlines, and measure RF signal propagation from public streets or parking structures.
In-Person Walkthrough & Technical Testing
Our team arrives on-site to inspect badge readers, test physical door hardware, plug into vacant network drops, audit comms rooms, and evaluate clean desk compliance.
Immediate On-Site Hotwash Debrief
Before leaving your premises, our lead assessor conducts a high-level verbal debrief with your designated security or IT contact to flag any urgent, high-risk physical exposures.
Audit Report, Remediation Roadmap & Retesting
We deliver a comprehensive report with photo evidence, step-by-step remediation guidance, a signed Auditor Attestation Letter, and 48-hour retesting verification.
On-Site Security Assessment FAQs
Your laptops, Wi-Fi access points, IP cameras, and executive conference rooms are all on-site. An unauthenticated Ethernet port or rogue Wi-Fi access point provides attackers direct access inside your internal corporate domain, completely bypassing perimeter firewalls.
We work closely with your team to establish precise boundary definitions between your leased private floors and common landlord areas (lobbies, elevators, shared loading docks), guaranteeing full legal compliance under Ontario commercial tenancy laws.
Standard single-facility corporate walkthroughs start at $6,500 CAD flat-rate. Final pricing depends on square footage, number of IDF closets, and whether social engineering / badge cloning exercises are included. Zero travel fees across the GTA or Calgary metropolitan areas.
Yes. In fact, most clients bundle on-site walkthroughs with an Internal Network Penetration Test. Our assessors physically connect on-premises to execute Active Directory privilege escalation and lateral movement tests simultaneously.
Book an On-Site Security Walkthrough in Toronto or Calgary
Protect your physical facilities, server rooms, and local networks. Schedule an introductory scoping call with our Canadian technical security team.