Course ID: #N/A

CompTIA PenTest+ (PT0-003)

Duration: 5 days Dates: 30 November 2026 1 March 2027 14 June 2027 30 August 2027

CompTIA PenTest+ demonstrates that you can identify and exploit vulnerabilities in systems and report on them. The course follows the five domains of the current PT0-003 exam version: Engagement Management, Reconnaissance and Enumeration, Vulnerability Discovery and Analysis, Attacks and Exploits, and Post-Exploitation and Lateral Movement – including attacks on cloud and AI systems. The course prepares you for the PT0-003 exam (certification «CompTIA PenTest+»).

Engagement Management

  • Planning and scoping: rules of engagement, test windows and selecting targets
  • Legal and ethical requirements: authorization letters, reporting obligations, regulatory compliance
  • Collaboration and communication: aligning with stakeholders, peer reviews, escalation paths, presenting risks clearly
  • Pentest reports: executive summary, findings and remediation recommendations

Reconnaissance and Enumeration

  • Active and passive reconnaissance: Open Source Intelligence (OSINT), network sniffing and protocol scans
  • Enumeration: DNS enumeration, service discovery, directory enumeration
  • Tools such as Nmap, Wireshark and Shodan for information gathering
  • Adapt scripts in Python, PowerShell and Bash for reconnaissance and enumeration

Vulnerability Discovery and Analysis

  • Vulnerability scans: authenticated and unauthenticated, Static and Dynamic Application Security Testing (SAST, DAST)
  • Analyse results: validate findings, check configurations, identify false positives
  • Tools such as Nessus, Nikto and OpenVAS

Attacks and Exploits

  • Network attacks: VLAN hopping, on-path attacks, exploiting services
  • Attacks on authentication: brute force, pass-the-hash, credential stuffing
  • Host-based attacks: privilege escalation, process injection, credential dumping
  • Attacks on web applications: SQL injection, cross-site scripting (XSS), directory traversal
  • Attacks in the cloud: container escapes, attacks on metadata services, misconfigured IAM
  • Attacks on AI systems: prompt injection and model manipulation

Post-Exploitation and Lateral Movement

  • Establish persistence, move laterally through the network and clean up artefacts
  • Documentation: describe the attack path clearly and give remediation recommendations
Learning Solution

Blended Learning, Firmenseminar, Individualcoaching, Klassenraumtraining, Online Live Webinar

Language

Deutsch, Englisch, Französisch, Italienisch

Dates

2026/11/30, 2027/03/01, 2027/06/14, 2027/08/30, flexibel, auf Anfrage

Penetration testers, security consultants, vulnerability analysts and IT security professionals who test systems specifically for vulnerabilities and recommend remediation measures.

You should have knowledge at CompTIA Network+ and Security+ level. CompTIA recommends three to four years of experience in a penetration tester role for the exam.

After the course you will be able to:

  • plan penetration tests on a sound legal basis and agree the scope with stakeholders
  • reconnoitre targets with OSINT, scans and enumeration, and adapt scripts for this purpose
  • find vulnerabilities with scanners and SAST/DAST and validate findings
  • attack networks, authentication, hosts, web applications and cloud environments
  • demonstrate persistence and lateral movement and clean up traces
  • present results in a pentest report with remediation recommendations

CHF4'280 excl. VAT

Clear

SIGN UP

Newsletter

Receive news about new courses, offers and promotions by email.

← Back

Thank you for your response. ✨

Email Subscription
Amazon
VMware and Virtualisation