

Certified Penetration Testing Professional (CPENT)
EC-Council's elite penetration testing credential.
CPENT is EC-Council's flagship offensive certification — fully practical, with a 24-hour exam against a real corporate network. Macksofy's CPENT bootcamp is led by LPT-certified instructors with bug-bounty backgrounds.
What is the CPENT certification?
The Certified Penetration Testing Professional (CPENT, EC-Council) is an advanced, fully hands-on pentesting credential covering enterprise networks, IoT, OT/SCADA, and binary exploitation on a live range. As an EC-Council Accredited Training Center, Macksofy delivers CPENT in India.
Outcomes — concrete, measurable.
Every capability you walk away with, mapped to the cybersecurity domains and the career roles they unlock in India + UAE.
Pivot through segmented networks with VPN tunneling
- Penetration Tester₹12–20 LPA
- Senior Pentest Consultant₹20–30 LPA
Is CPENT right for you?
- Penetration testers
- Red team operators
- Bug bounty hunters
What we assume you know
- CEH or equivalent hands-on experience
- Comfort with Kali Linux + scripting
15 modules. 5 days bootcamp + 24-hour exam.
Search modules and topics, and switch between Split and Track views to see how every module flows into the next.
- PTES, OSSTMM, NIST SP 800-115
- Pen-test vs vulnerability assessment
- Engagement types — black/grey/white-box
- Scoping & rules of engagement
- Legal & contractual framework
- Reporting workflow & client communication
- Domain & IP intelligence (whois, ASN)
- OSINT tools — theHarvester, Maltego, Shodan, Censys
- People & social-media OSINT
- Dark-web reconnaissance
- Phishing & spear-phishing campaigns (GoPhish)
- Vishing & smishing
- Physical social engineering
- Pretext development
- External recon & enumeration
- Public-facing service exploitation
- Initial access & VPN compromise
- Internal recon & enumeration
- Active Directory exploitation (BloodHound, Mimikatz, Rubeus)
- Lateral movement (PsExec, WMI, WinRM)
- Pivoting (Chisel, ligolo-ng, sshuttle)
- Firewall, IDS/IPS testing
- Router & switch exploitation
- Bypassing network access control
- OWASP Top 10 & API Top 10
- Authentication & session attacks
- Server-side template injection, deserialization
- Burp Suite Pro mastery
- 802.11 frame analysis
- WPA2 / WPA3 cracking (Aircrack-ng, Hashcat)
- Evil twin, KARMA, enterprise EAP
- IoT firmware extraction (binwalk)
- Hardware interfaces — UART, JTAG, SWD
- BLE, ZigBee, LoRa attacks
- Companion mobile-app testing
- IEC 62443 introduction
- Modbus, DNP3, S7 protocol attacks
- PLC / HMI exploitation in lab
- Safe testing methodology for production OT
- AWS / Azure / GCP attack chains
- IAM privilege escalation (Pacu, ScoutSuite)
- S3 / Blob / GCS misconfiguration
- Container & K8s RBAC abuse
- x86 / x64 assembly fundamentals
- Stack overflow exploitation
- Bypassing DEP/ASLR with ROP
- Custom shellcode creation
- Executive + technical reporting
- CVSS 3.1 scoring rationale
- Remediation guidance & retest workflow
- 24-hour exam playbook (LPT Master path at 90%+)
- Full-scope mock exam in Macksofy lab
- Live mentor feedback
- Report deliverable per OffSec/EC-Council standards
The same toolkit our consultants use on real engagements.
Not academic exercises. The tools below are exactly what Macksofy consultants run on paying client engagements every week — so the muscle memory you build in class carries straight into your first job.
What roles open up after you complete this.
| Role | Salary band | Experience |
|---|---|---|
| Penetration Tester | ₹12–20 LPA | 2–4 years |
| Senior Pentest Consultant | ₹20–30 LPA | 4–6 years |
We don’t promise jobs. We open doors.
Macksofy's placement desk works directly with 80+ hiring partners across India and the UAE. Resume coaching, mock interviews and direct intros included.
- 1:1 resume + LinkedIn rewrite with our hiring desk
- Mock interviews with active practitioners
- Direct intros to BFSI, fintech and Big-4 partners
- UAE placement support (Dubai, Abu Dhabi)
Things students ask before enrolling.
Macksofy delivers this work to the following standards and regulator requirements. Definitions and controls are sourced from the issuing bodies below.
Get a fixed-price proposal in 48 hours.
Tell us about your security need — pentest, audit, training or a wider engagement. A senior consultant will reply within a few business hours.
- CERT-In Empanelled
- EC-Council ATC · CompTIA Authorized
- Thousands of professionals trained
- India + UAE engagements



