Skip to content
Macksofy Technologies
Certified Penetration Testing Professional (CPENT)
EC-Council ATC
EC-Council ATC
CPENT
EC-Council Authorized Training Center
CPENTProfessionalPopular

Certified Penetration Testing Professional (CPENT)

EC-Council's elite penetration testing credential.

CPENT is EC-Council's flagship offensive certification — fully practical, with a 24-hour exam against a real corporate network. Macksofy's CPENT bootcamp is led by LPT-certified instructors with bug-bounty backgrounds.

40 hours · 5 days bootcamp + 24-hour exam 15 modules Live instructor-led · hands-on lab environment
In short

What is the CPENT certification?

The Certified Penetration Testing Professional (CPENT, EC-Council) is an advanced, fully hands-on pentesting credential covering enterprise networks, IoT, OT/SCADA, and binary exploitation on a live range. As an EC-Council Accredited Training Center, Macksofy delivers CPENT in India.

What you’ll be able to do

Outcomes — concrete, measurable.

Every capability you walk away with, mapped to the cybersecurity domains and the career roles they unlock in India + UAE.

SKILL GRAPH · 4 CAPABILITIES
01 / 04
Skill 01 · Capability

Pivot through segmented networks with VPN tunneling

Status
Unlocked
Position
1/4
Category
Capability
Up next · skill 02
Exploit IoT, OT and binary-level vulnerabilities
This unlocks roles like
  • Penetration Tester₹12–20 LPA
  • Senior Pentest Consultant₹20–30 LPA
Who it’s for

Is CPENT right for you?

  • Penetration testers
  • Red team operators
  • Bug bounty hunters
Before you start

What we assume you know

  • CEH or equivalent hands-on experience
  • Comfort with Kali Linux + scripting
Curriculum

15 modules. 5 days bootcamp + 24-hour exam.

Search modules and topics, and switch between Split and Track views to see how every module flows into the next.

Modules
15
Hours
40
Topics
54
    • PTES, OSSTMM, NIST SP 800-115
    • Pen-test vs vulnerability assessment
    • Engagement types — black/grey/white-box
    • Scoping & rules of engagement
    • Legal & contractual framework
    • Reporting workflow & client communication
    • Domain & IP intelligence (whois, ASN)
    • OSINT tools — theHarvester, Maltego, Shodan, Censys
    • People & social-media OSINT
    • Dark-web reconnaissance
    • Phishing & spear-phishing campaigns (GoPhish)
    • Vishing & smishing
    • Physical social engineering
    • Pretext development
    • External recon & enumeration
    • Public-facing service exploitation
    • Initial access & VPN compromise
    • Internal recon & enumeration
    • Active Directory exploitation (BloodHound, Mimikatz, Rubeus)
    • Lateral movement (PsExec, WMI, WinRM)
    • Pivoting (Chisel, ligolo-ng, sshuttle)
    • Firewall, IDS/IPS testing
    • Router & switch exploitation
    • Bypassing network access control
    • OWASP Top 10 & API Top 10
    • Authentication & session attacks
    • Server-side template injection, deserialization
    • Burp Suite Pro mastery
    • 802.11 frame analysis
    • WPA2 / WPA3 cracking (Aircrack-ng, Hashcat)
    • Evil twin, KARMA, enterprise EAP
    • IoT firmware extraction (binwalk)
    • Hardware interfaces — UART, JTAG, SWD
    • BLE, ZigBee, LoRa attacks
    • Companion mobile-app testing
    • IEC 62443 introduction
    • Modbus, DNP3, S7 protocol attacks
    • PLC / HMI exploitation in lab
    • Safe testing methodology for production OT
    • AWS / Azure / GCP attack chains
    • IAM privilege escalation (Pacu, ScoutSuite)
    • S3 / Blob / GCS misconfiguration
    • Container & K8s RBAC abuse
    • x86 / x64 assembly fundamentals
    • Stack overflow exploitation
    • Bypassing DEP/ASLR with ROP
    • Custom shellcode creation
    • Executive + technical reporting
    • CVSS 3.1 scoring rationale
    • Remediation guidance & retest workflow
    • 24-hour exam playbook (LPT Master path at 90%+)
    • Full-scope mock exam in Macksofy lab
    • Live mentor feedback
    • Report deliverable per OffSec/EC-Council standards
15 modules · 40 hours · 5 days bootcamp + 24-hour exam
Tools you’ll operate

The same toolkit our consultants use on real engagements.

Not academic exercises. The tools below are exactly what Macksofy consultants run on paying client engagements every week — so the muscle memory you build in class carries straight into your first job.

Tooling stack
NmapBurp Suite ProMetasploitBloodHoundMimikatzImpacketChiselligolo-ngPacuScoutSuite
Career outcomes

What roles open up after you complete this.

RoleSalary bandExperience
Penetration Tester₹12–20 LPA2–4 years
Senior Pentest Consultant₹20–30 LPA4–6 years
Placement support

We don’t promise jobs. We open doors.

Macksofy's placement desk works directly with 80+ hiring partners across India and the UAE. Resume coaching, mock interviews and direct intros included.

  • 1:1 resume + LinkedIn rewrite with our hiring desk
  • Mock interviews with active practitioners
  • Direct intros to BFSI, fintech and Big-4 partners
  • UAE placement support (Dubai, Abu Dhabi)
FAQ

Things students ask before enrolling.

Both are practical pentest certs. OSCP focuses on classic enterprise pentesting with deep AD. CPENT goes broader (IoT, OT, binary) but has less industry brand weight than OSCP. Many of our students take both.
Score 90%+ on the CPENT exam to earn LPT Master designation — EC-Council's highest pen-tester credential.
References & standards

Macksofy delivers this work to the following standards and regulator requirements. Definitions and controls are sourced from the issuing bodies below.

Talk to us

Get a fixed-price proposal in 48 hours.

Tell us about your security need — pentest, audit, training or a wider engagement. A senior consultant will reply within a few business hours.

CERT-In Empanelled
Information Security Auditor · India
  • CERT-In Empanelled
  • EC-Council ATC · CompTIA Authorized
  • Thousands of professionals trained
  • India + UAE engagements