Training pathways

02 Red Team

Offensive Security

Test the controls by thinking like the adversary.

Work through authorised reconnaissance, vulnerability discovery, exploitation and lateral movement inside a contained range, then trace the evidence each action leaves behind.

Discuss this pathway

Roles within this pathway

Where this capability can take shape

  • 01Penetration Tester
  • 02Red Team Operator
  • 03Ethical Hacker
  • 04Adversary Emulation Specialist
  • 05Purple Team Analyst
  • 06Vulnerability Assessment Specialist
  • 07Application Security Tester
  • 08Security Consultant

Practical capability

What you work through

Reconnaissance and service enumeration
Vulnerability validation and exploitation
Windows and Linux attack paths
Credential access and lateral movement
Nmap, Kali Linux and Wireshark workflows
Evidence-led reporting and remediation advice

The precise sequence is adapted to prior experience, available hardware and the role outcome being pursued.

How practice works

A scenario should force more than one correct command.

  1. Observe

    Establish what the environment is doing before deciding what is wrong.

  2. Reason

    Form a testable explanation based on architecture, evidence and risk.

  3. Act

    Configure, test, investigate or communicate the response required by the role.

  4. Defend

    Explain the decision, its limitations and what should happen next.