Learn to conduct professional penetration tests against enterprise networks, Active Directory, web applications, and cloud environments. Covers the complete engagement lifecycle from scoping and reconnaissance through exploitation, post-exploitation, and reporting findings to technical and executive audiences.
Conduct professional penetration tests that find vulnerabilities before attackers do. This course delivers the skills required for enterprise penetration testing through hands-on labs attacking realistic targets.
Penetration testing remains the most effective way to evaluate security posture when done correctly. SEC560 teaches the methodology, tools, and techniques that separate amateur scanning from professional adversary simulation.
Master the complete penetration testing process:
Planning and Reconnaissance
Scope engagements appropriately
Gather intelligence through passive and active reconnaissance
Map attack surfaces and identify high-value targets
Document findings for maximum client impact
Exploitation and Post-Exploitation
Exploit web applications, networks, and systems
Escalate privileges on Windows and Linux
Move laterally through enterprise networks
Maintain access while avoiding detection
Reporting and Remediation Guidance
Document vulnerabilities with clear reproduction steps
Prioritize findings by actual business risk
Recommend practical remediation strategies
Present results to technical and executive audiences
30+ hands-on labs cover password attacks, Metasploit Framework, web application exploitation, Active Directory attacks, privilege escalation, pivoting, and persistence techniques.
Work in a realistic enterprise lab environment with Windows domains, Linux systems, web applications, and network infrastructure.
Earn GIAC GPEN certification (exam sold separately). 36 CPEs across 6 intensive days.
Highlights
Master the full pen test lifecycle: Reconnaissance and OSINT, exploitation of web apps and networks, Active Directory attacks, privilege escalation, lateral movement, and professional reporting.
30+ hands-on labs in a realistic enterprise environment: Windows domains, Linux systems, web applications, Metasploit Framework, password attacks, Kerberos exploitation, and pivoting techniques.
Prepares for GIAC GPEN certification. Built for security professionals conducting authorized penetration tests for compliance, risk assessment, or red team operations. 6 days, 36 CPEs.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
This listing has one pricing dimension: a single-user license for SEC560: Enterprise Penetration Testing. You buy access under a contract for one person, billed by the number of user units. To cover more people, you add more units. Each unit grants one individual access to the course. The pricing does not use tiers or usage-based add-ons. It scales simply by the count of single-user licenses you purchase.
Top-of-mind questions for buyers
What does one single-user license include for SEC560: Enterprise Penetration Testing?
One license grants a single person access to the SEC560 course. The course spans six days of instructor-led content, or 36 hours of self-paced study, with 30 hands-on labs. The license covers one individual only and cannot be shared with other people.
How long will I have access to the course after buying a license?
Self-paced course access typically runs for a set period per license. Materials are delivered digitally, and self-study content can be completed at your own pace. For the exact access window tied to this license, contact the vendor to confirm current terms.
How do I scale this for a team rather than one person?
Each license covers one individual, so training several people means buying one unit per person. The cost rises directly with the number of single-user licenses purchased. There are no tiers or usage-based add-ons; you simply add units to cover more learners.
www.sans.org+1
Helpful?
Vendor refund policy
Refund requests must be submitted by the deadline date specific to User's training event. To find the specific deadline date for User's training event, please go to training event link at <www.sans.org> and click on the cancellations link.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Master the Metasploit Framework for enterprise penetration testing. Covers exploitation, post-exploitation, Meterpreter scripting, AV evasion, pivoting, and persistence. Learn to build custom modules and integrate with tools like Nmap, CrackMapExec, and PowerShell.
Bishop Fox Offensive Security Services
Strengthen your security posture with Bishop Fox, the leader in offensive security testing. Our expert-driven services help you proactively identify and remediate vulnerabilities before attackers can exploit them. Delivered through the Bishop For portal, hosted on AWS, you can real-time visibility into assessment findings, secure access to detailed reports, and on-demand remediation. Whether securing your applications, cloud environments, networks, AI initiatives, or products, Bishop Fox helps you stay ahead of threats.
Invinsense OXDR is a threat exposure management suite which helps organizations to run remediation focused Continuous Threat Exposure Management Program. It consolidates various tools like Attack Surface Monitoring, Vulnerability Management, Breach and Attack Simulation, Continuous and Automated Red Teaming and RedOps. It helps organisations to reduce risk through proactive threat exposure management that results in remediation.
Leverage cutting-edge AI tools and techniques to enhance offensive security operations. Learn to automate reconnaissance, exploit development, and post-exploitation activities using machine learning and large language models. 18 CPEs.
Advanced purple team training to simulate sophisticated threat actor techniques through comprehensive adversary emulation. Learn to plan and execute realistic attack scenarios that test and improve defensive capabilities across complex enterprise environments. 36 CPEs.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.