Ethical Hacking
Advanced Hybrid
Available now
PenTest+
Accredited by the National Cyber Security Center — click for details
Accredited by the Accreditation and Quality Assurance Commission — click for details
CompTIAInternationally recognized accreditation body
🏅
Internationally accreditedBy global bodies
📝
International examOfficially recognized certificate
🎯
Job-market readyIn-demand skills
About the certification
🛡️ Start your professional penetration testing career with CompTIA PenTest+ (V3) certification
CompTIA PenTest+ is an advanced certification in the field of penetration testing, focused on performing realistic security assessments that cover the entire attack cycle: from planning and information gathering to exploitation, post-exploitation, and professional reporting.
Certification content & modules
🧭EngagementManagement — 13%
- Determine the scope of penetration testing (Rules of Engagement)
- Determine testing times and scopes
- Compliance with legal and ethical laws and permits
- Communicate with stakeholders and manage risks
- Preparing professional test reports including results and recommendations
🔍Reconnaissance & Enumeration — 21%
- Collect information using OSINT
- Implement active and passive network exploration
- Protocol analysis and service discovery
- DNS Enumeration and Directory Enumeration
- Use tools such as Nmap, Wireshark, and Shodan
- Modified Python, PowerShell, and Bash scripts to support surveying
📊Vulnerability Discovery & Analysis — 17%
- Implementing vulnerability scans (Authenticated / Unauthenticated)
- Analyzing and validating the results of screening tools
- Use tools such as Nessus, OpenVAS and Nikto
- Distinguish between real results and false positives
🕹️Attacks & Exploits — 35%
- Carrying out network attacks (VLAN hopping / On-path attacks)
- Authentication attacks (Brute Force / Pass-the-Hash / Credential Stuffing)
- Local escalation of powers (Privilege Escalation)
- Web application attacks (SQLi / XSS / Directory Traversal)
- Exploiting cloud environments (IAM Misconfiguration / Container Escape)
- Understanding the basics of attacks on artificial intelligence systems (Prompt Injection)
🧩Post-Exploitation & Lateral Movement — 14%
- Installing access within systems (Persistence)
- Movement within networks (Lateral Movement)
- Collecting sensitive data after a hack
- Artifact Cleanup
- Document the attack scenario professionally
📝Reporting & Documentation — within test administration
- Create professional reports that include Executive Summary
- Documenting the results in a technical and administrative manner
- Provide recommendations to address gaps
- Complete Narrative construction of the attack
👨💻Who is this certificate for?
- Penetration Testers
- Cybersecurity Analysts
- SOC Analysts
- Network & Security Engineers
- Red Team Beginners & Professionals
- Anyone who wants to enter the field of penetration testing professionally
What you'll learn
- Test scope planning
- Exploiting vulnerabilities
- Testing applications and networks
- Preparing reports
Quick details
Exam codePT0-003
Duration40 hours
LevelAdvanced
Delivery MethodHybrid
Official certificate information
Exam duration
165 minutes
Voucher validity
12 months from date of purchase (standard CompTIA billing policy via Pearson VUE)
Exam retake
There is no waiting time between the first and second attempts after failing; From the third attempt onwards, you must wait at least 14 calendar days from the date of the last attempt. No free replay (fee paid each time)
Certificate validity
3 years (renewable through the continuing education program with a total of 60 CEUs + renewal fees)