Intermediate · 8 weeks
CompTIA PenTest+ Bootcamp + Voucher
Eight weeks of preparation for the CompTIA PenTest+ exam, built around a mock engagement.
- Live online, from anywhere
- 8 weeks
- A 2-hour live class every Monday
- 4 hours a week
- Next cohort: 15 January 2027
Who it’s for
- Aspiring pentesters. You have Security+ or similar and want to specialise in offensive security.
- Security analysts. You’re on the blue team and want to see how attackers work.
- Consultants. You’re moving into security consulting and want an offensive certification.
Who it isn’t for
- You’re new to security: start with Security+ or Introduction to Cybersecurity.
- You want the deepest hands-on route: Ethical Hacking goes further in labs.
Before you start: Security+ level knowledge, or equivalent experience. Comfortable on the command line.
What you’ll build
A documented mock engagement report, from scoping to findings, that you can show an employer.
Curriculum
8 modules, 8 weeks
PenTest+ covers the whole engagement: planning, scoping, attacks and reporting. This track pairs exam preparation with lab work, ending in a mock engagement you write up yourself.
01Planning and scoping
- Rules of engagement
- Statements of work
- Compliance-based scoping
- Threat modelling
02Information gathering and vulnerability identification
- Passive and active recon
- OSINT
- Scanning with Nessus and OpenVAS
- Reading scanner output
03Attacks and exploits
- Network attacks
- Wireless attacks
- Application attacks: SQLi, XSS, IDOR
- Social engineering
04Reporting and communication
- Executive and technical reports
- CVSS scoring
- Remediation guidance
- Re-testing
05Tools and code
- Bash, Python and PowerShell
- Reading exploit code
- Choosing the right tool
- Simple custom tooling
06Lab: internal network
- Active Directory enumeration
- Kerberoasting and AS-REP roasting
- Lateral movement
- Privilege escalation
07Lab: external and web
- External recon to initial access
- Web application exploitation
- Pivoting
- Recording evidence
08Capstone: mock engagement
- An end-to-end test in our lab
- Live report writing
- A client debrief
- Feedback
Get the full syllabus
Every module, lab and tool as a one-page PDF. Enter your email and it downloads straight away.
How you learn
A week on the track
Live classes
A 2-hour live class every Monday. The time is confirmed when you enrol.
Mentor hours
Small-group office hours with a practising security engineer, every week
Labs
A hands-on lab every week
Tools
Nmap, Nessus, OpenVAS, Metasploit, Burp Suite, Hashcat
Two kinds of lab: guided labs in our cloud environment, with nothing to install, and some virtual-machine work on your own laptop. We help you set the virtual machines up.
- MonLive class2-hour instructor-led session with real-world examples
- TueGuided labHands-on lab in our cloud environment
- WedMentor hoursSmall-group office hours with a practising security engineer
- ThuSolo challengeA timed challenge to lock in the week’s concepts
- FriCTF FridayTeam capture-the-flag with a leaderboard

$ nmap -sV -Pn 10.10.20.0/24Nmap scan report for dc01.lab.learncyber (10.10.20.10)88/tcp open kerberos-sec Microsoft Windows Kerberos389/tcp open ldap Microsoft Windows AD LDAP445/tcp open microsoft-ds$ GetUserSPNs.py lab.learncyber/analyst -request[*] 3 service accounts with SPNs found$ hashcat -m 13100 tickets.txt wordlist.txtsvc_backup: cracked (weak password)
Exam and certificate
Prepares you for: CompTIA PenTest+ (PT0-003)
If you don’t pass the CompTIA exam first time, you get a free post-exam coaching session with our lead instructor to review weak areas, plus a discounted re-sit voucher.
CompTIA sets, runs and certifies the exam. We prepare you to sit it; we don’t award the certification.
Certificate, not certification
You receive a LearnCyber certificate of completion. It proves you completed the track, and employers can check it online. A certification is awarded by an exam body such as CompTIA.
What you’ll need
- Laptop
- A laptop with at least 8 GB of RAM and a stable internet connection
- Internet
- A connection that can hold a video call; every class is recorded if yours drops
- Time
- 4 hours a week, including the 2-hour live class
Who teaches
Taught by Hackrowd Technology’s working penetration testers, the team that does this work for clients.
Offensive security
Penetration tests of web apps, APIs, networks and Active Directory for client organisations.
Security operations
SOC work: monitoring, detection and incident response.
Governance and audit
GRC programmes and ISO 27001 audits.
After the track
- Step 1
Train
Live classes, labs and your capstone.
- Step 2
Internship
A three-month internship after the training.
- Step 3
Certificate and letter
A certificate of completion employers can verify, and a recommendation letter.
Admissions
Three steps to your seat
- Step 1Join a free webinar
Meet an instructor and ask anything first.
- Step 2Apply
A short questionnaire, not a test, so we can recommend the right track.
- Step 3Reserve your seat
Pay in full or in instalments. Your place is confirmed when the payment clears.
Questions
Is there a job guarantee?
No. No reputable school can guarantee you a job, and we won’t pretend to. What you do get: hands-on labs, a portfolio piece you can show an employer, and CV and interview coaching.
Which exam does this prepare me for?
CompTIA PenTest+ PT0-003, the current version (launched December 2024).
Do I need Security+ first?
It’s recommended, not required. We revisit the Security+ basics in week one.
Can I show the capstone report to employers?
Yes. It’s designed as a portfolio piece, with nothing sensitive in it.
What if I fail the exam?
You get a free post-exam coaching session with our lead instructor to review weak areas, plus a discounted re-sit voucher.
Ready to start CompTIA PenTest+ Bootcamp + Voucher?