What is included
Domain enumeration and attack path mapping
Review of credential and Kerberos-related weaknesses
Privilege escalation and lateral movement testing
Misconfiguration review: delegation, ACLs and group policy
Domain compromise assessment within agreed limits
Hardening recommendations