Home/Training/CompTIA PenTest+

Programme Detail

CompTIA PenTest+

This programme develops authorized penetration-testing skills covering planning, reconnaissance, vulnerability assessment, exploitation, reporting, remediation, and...

Penetration TestingRegistration Open

Programme overview

This programme develops authorized penetration-testing skills covering planning, reconnaissance, vulnerability assessment, exploitation, reporting, remediation, and post-engagement activities. Learners progress from core concepts to practical application through guided examples, scenarios, exercises, and structured review aligned with the Trainocate course curriculum.

Programmes can be delivered via

HRD Corp Claimable
Yayasan Peneraju aligned
CompTIA

At a glance

Course code
C-012
Provider
CompTIA
Category
Penetration Testing
Status
Registration Open
Duration
5 days
Price
RM 4,500

What participants should gain

  • Plan and conduct structured technical assessments within an authorized scope
  • Use appropriate tools and methods to identify and validate weaknesses
  • Analyze technical results and business impact
  • Communicate findings and recommend practical remediation
  • Prepare for the corresponding CompTIA certification objectives

Participant readiness

  • Working knowledge of networking, operating systems, and cybersecurity fundamentals is recommended
  • Practical IT or security experience will help learners complete the technical exercises

Who this course is for

  • Penetration testers and vulnerability assessors
  • Security consultants, analysts, and engineers
  • Learners preparing for CompTIA PenTest+

How the course is delivered

This programme will be conducted through interactive lectures, demonstrations, guided hands-on labs in controlled environments, scenario analysis, technical exercises, group discussions, practice questions, and a final review. All security activities must be performed only within formally authorized environments.

This programme will be conducted through interactive lectures, demonstrations, guided hands-on labs in controlled environments, scenario analysis, technical exercises, group discussions, practice questions, and a final review | By enquiry

Course outline

Module and topic breakdown

Module 1: Scoping Organizational and Customer Requirements

Penetration-testing objectives, scope, standards, and methodologies

Module 2: Defining Rules of Engagement

Testing windows, targets, exclusions, communications, and stop conditions

Module 3: Footprinting and Gathering Intelligence

Target discovery, passive reconnaissance, and open-source intelligence

Module 4: Evaluating Human and Physical Vulnerabilities

Human behavior, pretexting, phishing, and social engineering

Module 5: Preparing the Vulnerability Scan

Scan planning, credentials, scope, safety, and timing

Module 6: Scanning Logical Vulnerabilities

Network, host, service, application, and cloud scanning

Module 7: Analyzing Scanning Results

False positives, severity, exploitability, and business impact

Module 8: Avoiding Detection and Covering Tracks

Evasion concepts, traffic shaping, obfuscation, and operational security

Module 9: Exploiting the LAN and Cloud

Network services, credentials, misconfigurations, and lateral movement

Module 10: Testing Wireless Networks

Wireless discovery, encryption, authentication, and rogue devices

Module 11: Targeting Mobile Devices

Mobile platforms, applications, communications, and device management

Module 12: Attacking Specialized and Fragile Systems

IoT, OT, embedded, legacy, and sensitive systems

Module 13: Web Application-based Attacks

Authentication, sessions, input handling, injection, and access control

Module 14: Performing System Hacking

Exploitation, credential attacks, persistence, and privilege escalation

Module 15: Scripting and Software Development

Automation with common scripting languages

Module 16: Leveraging the Attack and Escalating Privileges

Pivoting, tunneling, credential reuse, and lateral movement

Module 17: Communicating During the PenTest

Status updates, critical findings, escalation, and client coordination

Module 18: Summarizing Report Components

Executive summary, scope, methods, findings, evidence, and risk

Module 19: Recommending Remediation

Root cause, compensating controls, prioritization, and verification

Module 20: Performing Post-engagement Activities

Cleanup, data return or destruction, debrief, and lessons learned

Assessment and completion

  • Continuous knowledge checks and facilitator feedback throughout the programme
  • Completion of guided exercises, scenarios, labs, or case-study activities applicable to the course
  • Final review or practical activity to confirm understanding of the stated course objectives
  • Official CompTIA examination and certification requirements depend on the selected training package and current exam version

Availability

This programme has a public intake path. Use the enquiry form below to confirm the next available session or a private cohort.

Programme enquiry

Discuss pricing, delivery, or corporate customisation

Use this form to confirm availability, request pricing clarification, or discuss a private cohort for your organisation.