Ethical Hacking
Advanced Hybrid
Available now
PenTest+
Accredited by the National Cyber Security Center — click for details
Accredited by the Accreditation and Quality Assurance Commission — click for details
CompTIAInternationally recognized accreditation body
🏅
Internationally accreditedBy global bodies
📝
International examOfficially recognized certificate
🎯
Job-market readyIn-demand skills
About the certification
🛡️ Start your professional penetration testing career with CompTIA PenTest+ (V3) certification
CompTIA PenTest+ is an advanced certification in the field of penetration testing, focused on performing realistic security assessments that cover the entire attack cycle: from planning and information gathering to exploitation, post-exploitation, and professional reporting.
Certification content & modules
🧭EngagementManagement — 13%
- Determine the scope of penetration testing (Rules of Engagement)
- Determine testing times and scopes
- Compliance with legal and ethical laws and permits
- Communicate with stakeholders and manage risks
- Preparing professional test reports including results and recommendations
🔍Reconnaissance & Enumeration — 21%
- Collect information using OSINT
- Implement active and passive network exploration
- Protocol analysis and service discovery
- DNS Enumeration and Directory Enumeration
- Use tools such as Nmap, Wireshark, and Shodan
- Modified Python, PowerShell, and Bash scripts to support surveying
📊Vulnerability Discovery & Analysis — 17%
- Implementing vulnerability scans (Authenticated / Unauthenticated)
- Analyzing and validating the results of screening tools
- Use tools such as Nessus, OpenVAS and Nikto
- Distinguish between real results and false positives
🕹️Attacks & Exploits — 35%
- Carrying out network attacks (VLAN hopping / On-path attacks)
- Authentication attacks (Brute Force / Pass-the-Hash / Credential Stuffing)
- Local escalation of powers (Privilege Escalation)
- Web application attacks (SQLi / XSS / Directory Traversal)
- Exploiting cloud environments (IAM Misconfiguration / Container Escape)
- Understanding the basics of attacks on artificial intelligence systems (Prompt Injection)
🧩Post-Exploitation & Lateral Movement — 14%
- Installing access within systems (Persistence)
- Movement within networks (Lateral Movement)
- Collecting sensitive data after a hack
- Artifact Cleanup
- Document the attack scenario professionally
📝Reporting & Documentation — within test administration
- Create professional reports that include Executive Summary
- Documenting the results in a technical and administrative manner
- Provide recommendations to address gaps
- Complete Narrative construction of the attack
👨💻Who is this certificate for?
- Penetration Testers
- Cybersecurity Analysts
- SOC Analysts
- Network & Security Engineers
- Red Team Beginners & Professionals
- Anyone who wants to enter the field of penetration testing professionally
What you'll learn
- Test scope planning
- Exploiting vulnerabilities
- Testing applications and networks
- Preparing reports
Quick details
Exam codePT0-003
Duration40 hours
LevelAdvanced
Delivery MethodHybrid
Official certificate information
⏱️
Exam duration
165 minutes
🎟️
Voucher validity
12 months from date of purchase (standard CompTIA billing policy via Pearson VUE)
🔁
Exam retake
There is no waiting time between the first and second attempts after failing; From the third attempt onwards, you must wait at least 14 calendar days from the date of the last attempt. No free replay (fee paid each time)
📅
Certificate validity
3 years (renewable through the continuing education program with a total of 60 CEUs + renewal fees)