Your perimeter is the first thing tested in a real attack. It should be the first thing you test too.
External penetration testing covers exactly what's exposed to the internet: your firewalls, VPNs, remote-access gateways, mail and DNS infrastructure, and public-facing applications. It's the most common starting point for a real intrusion, and the most well-defined, repeatable scope to test — which is why it's the fastest thing to get started here, self-serve, without a procurement cycle.