Penetration Tester
Break into systems with permission and explain how to fix what you found.
Steady demand from consultancies and in-house red teams, with strong weight on practical proof.
Day to day
- •Scope and run authorised tests
- •Exploit web, network and cloud weaknesses
- •Chain findings into realistic attack paths
- •Write reports clients act on
Start from: Networking and Linux basics
Loading your lab progress…
- 1
Networking, Linux and scripting
6 weeksBe fluent in the environments you will test.
Linux and the command line
Most tooling and targets are Linux.
Networking and protocols
Enumeration is reading what a network exposes.
Python scripting
Custom exploits and automation are often required.
Certifications
- CompTIA Security+ · CompTIA
Portfolio project
Build a home lab network and document every service it exposes.
- 2
Web and network exploitation
8 weeksFind and exploit common vulnerabilities methodically.
Reconnaissance and enumeration
Most successful tests are won in enumeration.
Web application attacks
Web apps are the most common test scope.
Privilege escalation
Initial access rarely matters without escalation.
Certifications
- Certified Ethical Hacker · EC-CouncilPractise
Portfolio project
Complete ten retired lab machines and publish methodology write-ups.
- 3
Professional testing
8–12 weeksProve practical skill under exam and client conditions.
Active Directory attacks
Most corporate networks are Windows domains.
Report writing
The report is the product the client pays for.
Rules of engagement
Staying in scope is a legal requirement, not a courtesy.
Certifications
- OffSec Certified Professional · OffSec
Portfolio project
Write a full client-style report for a lab network, with an executive summary and remediation plan.
Finish line
Prove you're ready to apply
18 workplace scenarios. Reach 80% with no area below 60% for a job-ready signal.
Take the readiness exam
Certification requirements, prices and exam formats change. Always confirm on the issuer's site, linked from the certifications page.