CompTIA PenTest+

€495.00
| /

________________________________________________________________

Do you want to take this course remotely or in person?

Contact us by email: info@nanforiberica.com , phone: +34 91 031 66 78, WhatsApp: +34 685 60 05 91 , or contact Our Offices

________________________________________________________________

CompTIA PenTest+ (Exam: PT0-003)

The CompTIA PenTest+ course prepares the student to execute comprehensive penetration tests following professional and ethical methodologies. The training covers everything from planning, reconnaissance, and enumeration to vulnerability exploitation, post-exploitation, and creating the final report for the client.

Through practical labs in controlled environments, the student will learn to work with the tools and techniques used by real pentesters in scenarios involving networks, web applications, infrastructure, hybrid environments, and the cloud.

The course develops skills that allow for both starting a professional career in the world of ethical hacking and improving skills for advanced roles in cybersecurity, auditing, incident response, and red teaming.

🧪 This course includes official practical labs

🔹Scan systems and networks to identify vulnerabilities🔹Execute controlled attacks using professional pentesting tools🔹Exploit vulnerabilities and validate their real impact🔹Analyze results and document technical findings

 

Training objectives

  • Understand the complete lifecycle of a professional penetration test.
  • Identify, scan, and enumerate vulnerabilities in real environments.
  • Apply exploitation and post-exploitation techniques ethically and safely.
  • Use advanced pentesting tools for networks, applications, and systems.
  • Perform basic forensic analysis and document findings.
  • Prepare technical and executive reports with mitigation recommendations.

CompTIA PenTest+ course content

Module 1: Scoping and planning a penetration test

Domain covered:

  • Engagement management

Specific domain objectives:

  • Summarize pre-engagement activities

Lessons

  • Defining the scope
  • Types of agreements
  • Goal selection
  • Types of evaluation
  • Shared responsibility model
  • Legal and ethical considerations

Module 2: Frameworks, methodologies, and communication

Domain covered:

  • Engagement management

Specific domain objectives:

  • Explain collaboration and communication activities.
  • Compare and contrast testing frameworks and methodologies
  • Explain the components of a penetration test report
  • Given a scenario, analyze findings and recommend the appropriate solution within a report.

Lessons

  • Collaboration and communication
  • Testing frameworks and methodologies
  • Threat modeling frameworks
  • Penetration test report components
  • Remediation recommendations

Module 3: Reconnaissance fundamentals

Domain covered:

  • Reconnaissance and enumeration

Specific domain objectives:

  • Given a scenario, apply information gathering techniques
  • Given a scenario, use the appropriate tools for reconnaissance and enumeration.

Lessons

  • Information gathering
  • Reconnaissance tools 

Module 4: Enumeration and reconnaissance scripting

Domain covered:

  • Reconnaissance and enumeration

Specific domain objectives:

  • Given a scenario, apply enumeration techniques
  • Given a scenario, modify scripts for reconnaissance and enumeration

Lessons

  • Enumeration techniques
  • Reconnaissance scripting

Module 5: Vulnerability scanning and discovery

Domain covered:

  • Vulnerability discovery and analysis

Specific domain objectives:

  • Given a scenario, perform vulnerability discovery using various techniques
  • Given a scenario, analyze the results of the reconnaissance, scanning, and enumeration phases
  • Explain physical security concepts

Lessons

  • Scanning techniques
  • Industrial Control Systems (ICS) vulnerability assessment tools
  • Scan output analysis
  • Physical security concepts 

Module 6: Attack planning and prioritization

Domain covered:

  • Attacks and exploits 4.0

Specific domain objectives:

  • Given a scenario, analyze the result to prioritize and prepare attacks.

Lessons

  • Target prioritization
  • Capability selection

Module 7: Network, host, and application exploits

Domain covered:

  • Attacks and exploits 4.0

Specific domain objectives:

  • Given a scenario, perform network attacks using the appropriate tools
  • Given a scenario, perform authentication attacks using the appropriate tools
  • Given a scenario, perform host-based attacks using the appropriate tools
  • Given a scenario, perform web application attacks using the appropriate tools
  • Given a scenario, perform cloud-based attacks using the appropriate tools

Lessons

  • Network attacks
  • Authentication attacks
  • Host-based attacks
  • Web application attacks
  • Cloud attacks 

Module 8: Wireless, social engineering, and specialized attacks

Domain covered:

  • Attacks and exploits 4.0

Specific domain objectives:

  • Given a scenario, perform wireless attacks using the appropriate tools
  • Given a scenario, perform social engineering attacks using the appropriate tools
  • Explain common attacks against specialized systems
  • Given a scenario, use scripts to automate attacks

Lessons

  • Wireless attacks
  • Social engineering attacks
  • Attacks on specialized systems
  • Attack automation

Module 9: Post-exploitation, lateral movement, and cleanup

Domain covered:

  • Post-exploitation and lateral movement

Specific domain objectives:

  • Given a scenario, perform tasks to establish and maintain persistence
  • Given a scenario, perform tasks to move laterally through the environment.
  • Summarize concepts related to staging and exfiltration.
  • Explain cleanup and restoration activities

Lessons

  • Establishing and maintaining persistence
  • Lateral movement
  • Staging and exfiltration
  • Cleanup and restoration

CompTIA PenTest+ Lab

This lab provides a comprehensive practical experience in the fundamental methodologies and skills required for professional penetration testing. Students will develop expertise across the entire penetration testing lifecycle, from defining test parameters and gathering intelligence to exploiting vulnerabilities, establishing persistence, and performing post-exploitation activities. The curriculum emphasizes both technical proficiency with industry-standard tools and the crucial importance of professional documentation, ethical considerations, and effective communication of findings to various stakeholders. This lab prepares students for the PT0-003 exam.

Prerequisites

  • Basic knowledge of networking (TCP/IP, ports, protocols).
  • Familiarity with Windows and Linux systems.
  • General cybersecurity knowledge (fundamentals, threats, vulnerabilities).
  • Previous completion of CompTIA Security+ is recommended (not mandatory, but ideal).
  • Ability to use command-line tools.

Language

  • Course: English
  • Labs: English 

Frequently asked questions about CompTIA PenTest+

What is CompTIA PenTest+?

CompTIA PenTest+ is an international certification that validates the skills necessary to perform penetration testing, identify vulnerabilities, assess the security of systems and networks, and provide recommendations to strengthen an organization's cybersecurity posture.

What will I learn during the CompTIA PenTest+ course?

You will learn how to plan and execute penetration tests, gather information about targets, identify vulnerabilities, perform controlled exploitation tests, evaluate results, and produce technical and executive reports with mitigation recommendations.

Does the course include official practical labs?

Yes. The course includes official practical labs that allow you to apply the knowledge acquired in real-world pentesting and security assessment scenarios. Participants will work with reconnaissance techniques, vulnerability analysis, controlled exploitation, finding validation, and professional reporting.

Is official course material included?

Yes. The training includes the official course material along with the official practical labs, providing a complete learning experience oriented toward CompTIA PenTest+ certification preparation.

Do I need prior experience to take this course?

It is recommended to have knowledge of networks, operating systems, infrastructure administration, and cybersecurity fundamentals. It is also beneficial to have knowledge equivalent to CompTIA Network+ and CompTIA Security+ or practical experience in computer security.

Does this course prepare me for the CompTIA PenTest+ certification?

Yes. The course content is aligned with the official CompTIA PenTest+ certification objectives, providing the knowledge and skills necessary to understand and apply the techniques evaluated in the official exam.

In what language are the materials and labs provided?

The official materials and practical labs are available in English. It is recommended to have technical reading proficiency in this language to fully leverage the documentation, tools, and exercises included.

What professional profiles is CompTIA PenTest+ aimed at?

This training is aimed at cybersecurity analysts, system administrators, network administrators, SOC specialists, security consultants, ethical hackers, and professionals who wish to specialize in penetration testing and vulnerability assessment.

Can the training be subsidized through FUNDAE?

Yes. Companies with training credit can subsidize this course through FUNDAE, provided they meet the requirements established by current regulations. Nanfor can advise on the management and processing of the subsidy.

What professional benefits does obtaining the CompTIA PenTest+ certification provide?

CompTIA PenTest+ is an internationally recognized certification that accredits skills in penetration testing, vulnerability assessment, and security finding management. It can help you advance your professional career in areas such as offensive cybersecurity, ethical hacking, security auditing, and specialized consulting.

Information related to training

Soporte siempre a tu lado

Training support: Always by your side

Always by your side

Modalidades Formativas

Do you need another training modality?

Self Learning - Virtual - In-person - Telepresence

bonificaciones

Bonuses for companies

For companies