← Back to TrainingTechnical

Offensive Security

Learn to think and operate like a world-class adversary

Our Offensive Security program prepares professionals to conduct comprehensive penetration tests, red team operations, and adversary simulations. Built on real world attack scenarios, this track transforms security practitioners into skilled adversaries who understand the full attack lifecycle.

Duration

5 Days or 10 Weeks

Level

Intermediate to Advanced

Format

In-Person or Virtual

Certifications

OSCP · CEH · GPEN

Learning Outcomes

Conduct comprehensive network and web application penetration tests

Identify and exploit vulnerabilities across diverse attack surfaces

Operate within a structured red team framework

Execute social engineering campaigns with measurable impact

Produce professional-grade penetration testing reports

Develop custom tooling and adapt to unique target environments

Course Modules

7 modules
Module 01

Reconnaissance and OSINT

Master intelligence gathering before any engagement begins.

  • Passive and active reconnaissance techniques
  • OSINT frameworks and automation tooling
  • Target footprinting and attack surface mapping
  • Social media and dark web intelligence gathering
Module 02

Network Penetration Testing

Exploit weaknesses across network infrastructure with methodical precision.

  • Port scanning, service enumeration, and banner grabbing
  • Exploitation of misconfigured network services
  • Man-in-the-middle attacks and traffic interception
  • Lateral movement, pivoting, and tunneling techniques
Module 03

Web Application Security

Systematically assess web applications against the OWASP Top 10 and beyond.

  • SQL injection and authentication bypass attacks
  • Cross-site scripting (XSS) and CSRF exploitation
  • Broken access control and insecure direct object references
  • API security testing and business logic vulnerability discovery
Module 04

Post-Exploitation and Persistence

Understand what skilled attackers do once initial access is achieved.

  • Privilege escalation on Windows and Linux systems
  • Credential harvesting, pass-the-hash, and token impersonation
  • Establishing and maintaining persistence mechanisms
  • Covering tracks and anti-forensics techniques
Module 05

Social Engineering

Simulate human-targeted attacks that bypass even the strongest technical controls.

  • Phishing campaign design, execution, and measurement
  • Vishing, pretexting, and impersonation techniques
  • Physical security assessment and tailgating scenarios
  • Psychological manipulation and influence frameworks
Module 06

Red Team Operations

Execute full-scope adversary simulations against mature security programs.

  • Command and control (C2) framework setup and operation
  • Antivirus and EDR evasion techniques
  • Living off the land (LoTL) attack methods
  • Full kill chain simulation from initial access to objective
Module 07

Reporting and Documentation

Communicate findings clearly to both technical and executive audiences.

  • Vulnerability risk rating using CVSS and DREAD
  • Professional penetration test report structure and writing
  • Executive summary and risk narrative development
  • Actionable remediation recommendation frameworks

Who Should Attend

01

Security analysts transitioning into offensive roles

02

Existing penetration testers seeking to advance their methodology

03

Security engineers who need to understand attacker thinking

04

Bug bounty hunters and CTF participants looking for structured depth

Certifications Covered

OSCP — Offensive Security Certified Professional

CEH — Certified Ethical Hacker

GPEN — GIAC Penetration Tester

eJPT — eLearnSecurity Junior Penetration Tester

Offensive Security

Learn to think and operate like a world-class adversary