Overview
Conduct professional penetration tests that find vulnerabilities before attackers do. This course delivers the skills required for enterprise penetration testing through hands-on labs attacking realistic targets.
Penetration testing remains the most effective way to evaluate security posture when done correctly. SEC560 teaches the methodology, tools, and techniques that separate amateur scanning from professional adversary simulation.
Master the complete penetration testing process:
Planning and Reconnaissance
- Scope engagements appropriately
- Gather intelligence through passive and active reconnaissance
- Map attack surfaces and identify high-value targets
- Document findings for maximum client impact
Exploitation and Post-Exploitation
- Exploit web applications, networks, and systems
- Escalate privileges on Windows and Linux
- Move laterally through enterprise networks
- Maintain access while avoiding detection
Reporting and Remediation Guidance
- Document vulnerabilities with clear reproduction steps
- Prioritize findings by actual business risk
- Recommend practical remediation strategies
- Present results to technical and executive audiences
30+ hands-on labs cover password attacks, Metasploit Framework, web application exploitation, Active Directory attacks, privilege escalation, pivoting, and persistence techniques.
Work in a realistic enterprise lab environment with Windows domains, Linux systems, web applications, and network infrastructure.
Earn GIAC GPEN certification (exam sold separately). 36 CPEs across 6 intensive days.
Highlights
- Master the full pen test lifecycle: Reconnaissance and OSINT, exploitation of web apps and networks, Active Directory attacks, privilege escalation, lateral movement, and professional reporting.
- 30+ hands-on labs in a realistic enterprise environment: Windows domains, Linux systems, web applications, Metasploit Framework, password attacks, Kerberos exploitation, and pivoting techniques.
- Prepares for GIAC GPEN certification. Built for security professionals conducting authorized penetration tests for compliance, risk assessment, or red team operations. 6 days, 36 CPEs.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
Dimension | Description | Cost/12 months |
|---|---|---|
SEC560 - Single User | Single user license for Offensive Ops - SEC560: Enterprise Pen Testing | $8,780.00 |
Vendor refund policy
Refund requests must be submitted by the deadline date specific to User's training event. To find the specific deadline date for User's training event, please go to training event link at <www.sans.org > and click on the cancellations link.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Support
Vendor support
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Similar products
