Course Information

  • Sessions 5 days
  • Duration 37.5 hrs
  • Level Beginner
  • Assessment NA

Venue

12 Woodlands Square #07-85/86/87 Woods Square Tower 1, Singapore 737715. 5 mins walk from Woodlands (NS9) MRT station.

The venue is disabled-friendly.

Course Brochure

Certification

  • Certificate of Achievement from Tertiary Infotech Academy Pte Ltd - Upon meeting at least 75% attendance and passing the assessment(s), participants will receive a Certificate of Achievement from Tertiary Infotech Academy Pte Ltd.

CompTIA PenTest+ Training

Course Code: C1136
Share

What's This Course About

Our CompTIA PenTest+ Exam Prep Course is designed for cybersecurity professionals seeking to master penetration testing skills and earn the CompTIA PenTest+ certification. This comprehensive course covers all aspects of the PenTest+ exam objectives, including planning and scoping, information gathering, vulnerability identification, attacks and exploits, and reporting and communication. Through expert instruction and hands-on practice, participants will learn advanced techniques in ethical hacking and security testing, essential for identifying and addressing system vulnerabilities.

The course also emphasizes the ethical considerations and compliance standards in penetration testing, ensuring participants are not only technically proficient but also professionally responsible. With a focus on real-world scenarios and practical applications, our training prepares you for success in the CompTIA PenTest+ exam and equips you with the skills to contribute significantly to your organization's cybersecurity efforts.

Bonus: Free Practice Exams

Get exam-ready on our Practice Exam Portal — train in realistic Practice Mode and timed Exam Mode, then retake them as many times as you like before the real exam.

Start Practising →

CompTIA Authorised Delivery Partner

We are an Authorised CompTIA Delivery Partner. To get the official CompTIA certification, please register your certification exam at a Pearson VUE test center.

Funding Options

No funding is available for this course

For WSQ funding, please checkout the details at WSQ - CompTIA PenTest+ Training

Course Fee

$1,500.00 (GST-exclusive)
$1,635.00 (GST-inclusive)

Course Date

Course Time

* Required Fields

Additional Note

Please bring your own laptop for hands-on training. If you don't have laptop, we can provide spare laptop for training use.

Post-Course Support

  • We provide free consultation related to the subject matter after the course.
  • Please email your queries to enquiry@tertiaryinfotech.com and we will forward your queries to the subject matter experts.

Cancellation & Reschedule Policy

  • You can register your interest without upfront payment. There is no penalty for withdrawal of the course before the class commences.
  • We reserve the right to cancel or re-schedule the course due to unforeseen circumstances. If the course is cancelled, we will refund 100% for any paid amount.
  • Note the venue of the training is subject to changes due to availability of the classroom.

Course Details

Course Details

What You'll Learn

This course prepares you for the PT0-003 certification exam, covering all official exam domains and their approximate weightings:

Domain 1 Engagement Management (13%)

  • Summarize pre-engagement activities: scope definition, rules of engagement, agreement types (NDA, MSA, SOW, ToS), target selection, shared responsibility model, legal/ethical considerations
  • Explain collaboration and communication activities: peer review, stakeholder alignment, escalation path, goal reprioritization, business impact analysis
  • Compare and contrast testing frameworks and methodologies (OSSTMM, CREST, PTES, MITRE ATT&CK, OWASP Top 10/MASVS, threat modeling frameworks DREAD/STRIDE/OCTAVE)
  • Explain the components of a penetration test report: executive summary, methodology, detailed findings, attack narrative, recommendations/remediation guidance
  • Given a scenario, analyze findings and recommend appropriate remediation (technical, administrative, operational, physical controls)

Domain 2 Reconnaissance and Enumeration (21%)

  • Given a scenario, apply information gathering techniques: active/passive reconnaissance, OSINT, DNS lookups, certificate transparency logs, network sniffing, protocol scanning
  • Given a scenario, apply enumeration techniques: OS fingerprinting, service/protocol/DNS/directory/host/share/user/email enumeration, attack path mapping
  • Given a scenario, modify scripts for reconnaissance and enumeration using Bash, Python, or PowerShell
  • Given a scenario, use appropriate tools for reconnaissance and enumeration (Nmap, theHarvester, Shodan, Maltego, Recon-ng, Amass, WHOIS, Wireshark/tcpdump)

Domain 3 Vulnerability Discovery and Analysis (17%)

  • Given a scenario, conduct vulnerability discovery using various techniques: container/application/network scans, DAST/IAST/SAST/SCA, authenticated vs. unauthenticated scans, wireless scanning, ICS vulnerability assessment
  • Given a scenario, analyze output from reconnaissance, scanning, and enumeration phases: validating results (false positives/negatives, true positives), public exploit selection, scripting to validate results
  • Explain physical security concepts: tailgating, site surveys, USB drops, badge cloning, lock picking

Domain 4 Attacks and Exploits (35%)

  • Given a scenario, analyze output to prioritize and prepare attacks: target prioritization (CVSS, CVE, CWE, EPSS), capability/tool/exploit selection, attack path and documentation
  • Given a scenario, perform network, authentication, and host-based attacks using appropriate tools (Metasploit, Hydra, Mimikatz, CrackMapExec, Impacket, hashcat)
  • Given a scenario, perform web application attacks (SQLi, XSS, SSRF, CSRF, file inclusion, JWT manipulation) using tools such as Burp Suite, ZAP, sqlmap, Gobuster
  • Given a scenario, perform cloud-based and wireless attacks using appropriate tools (Pacu, ScoutSuite, Prowler, Aircrack-ng, Kismet)
  • Given a scenario, perform social engineering attacks (phishing, vishing, pretexting) and explain attacks against specialized systems (mobile, AI/prompt injection, OT/ICS, NFC/Bluetooth)
  • Given a scenario, use scripting (PowerShell, Bash, Python) and breach-and-attack simulation tools to automate attacks

Domain 5 Post-exploitation and Lateral Movement (14%)

  • Given a scenario, perform tasks to establish and maintain persistence: scheduled tasks, service creation, reverse/bind shells, backdoors, C2 frameworks, rootkits
  • Given a scenario, perform tasks to move laterally throughout the environment: pivoting, relay creation, service/credential enumeration, WMI/WinRM, LOLBins, tools like CrackMapExec, Impacket, PsExec
  • Summarize concepts related to staging and exfiltration: file encryption/compression, covert channels (DNS, ICMP, HTTPS, steganography), cloud storage, alternate data streams
  • Explain cleanup and restoration activities: removing persistence mechanisms and tester-created credentials/tools, reverting configuration changes, secure data destruction

Course Info

Promotion Code

Your will get 10% discount voucher for 2nd course onwards if you write us a Google review.

Minimum Entry Requirement

Knowledge and Skills

  • Able to operate using computer functions
  • Minimum 3 GCE ‘O’ Levels Passes including English or WPL Level 5 (Average of Reading, Listening, Speaking & Writing Scores)

Attitude

  • Positive Learning Attitude
  • Enthusiastic Learner

Experience

  • Minimum of 1 year of working experience.

Target Age Group: 18-65 years old

Minimum Software/Hardware Requirement

Software:

TBD

Hardware: Window or Mac Laptops

Job Roles

Job Roles

  • Penetration Tester
  • Ethical Hacker
  • Cybersecurity Analyst
  • Information Security Consultant
  • Vulnerability Analyst
  • Security Operations Center (SOC) Analyst
  • Network Security Specialist
  • IT Security Engineer
  • Cybersecurity Auditor
  • Compliance and Controls Analyst
  • Incident Response Analyst
  • Forensic Analyst
  • Security Architect
  • Risk Assessment Specialist
  • Cyber Defense Analyst
  • Application Security Engineer
  • Cyber Threat Intelligence Analyst
  • IT Auditor focusing on security
  • Security Systems Administrator
  • Information Assurance Technician

Trainers

Trainers

Alec Tan is a ACTA certified trainer, He has a number of Comptia certifications. Since 2002, starting off from IT technical background to pre-sales, sales account manager, system integration, operate IT retail / repair shop business in Sim Lim Square 2008 ~ 2012, and back to IT industry employment, freelance IT Trainer till present.

Peter Cheong is an IT and knowledge management professional with strong expertise in networking, cybersecurity, and information systems. He has completed the Cisco Networking Academy Introduction to Packet Tracer course and has participated in international ICT and knowledge management conferences such as the IFLA Knowledge Management Satellite Meeting. With professional experience in IT systems and infrastructure, Peter brings both technical knowledge and global exposure to his training. As an adult educator, Peter focuses on building learners’ foundational skills in cybersecurity, network defense, and risk management aligned to CompTIA Security+ objectives. His sessions emphasize real-world security scenarios, equipping participants to recognize vulnerabilities, manage threats, and implement effective security controls. His combination of practical training and industry exposure ensures learners are well-prepared for both the certification exam and workplace application.

Review

Customer Reviews (2)

will recommend Review by Course Participant/Trainee
1. Do you find the course meet your expectation?
2. Do you find the trainer knowledgeable in this subject?
3. How do you find the training environment
. (Posted on 11/24/2020)
will recommend Review by Course Participant/Trainee
1. Do you find the course meet your expectation?
2. Do you find the trainer knowledgeable in this subject?
3. How do you find the training environment
. (Posted on 11/24/2020)

Write Your Own Review

You're reviewing: CompTIA PenTest+ Training

How do you rate this product? *

  1 star 2 stars 3 stars 4 stars 5 stars
1. Do you find the course meet your expectation?
2. Do you find the trainer knowledgeable in this subject?
3. How do you find the training environment