Training pathways
02 Red Team
Offensive Security
Test the controls by thinking like the adversary.
Work through authorised reconnaissance, vulnerability discovery, exploitation and lateral movement inside a contained range, then trace the evidence each action leaves behind.
Discuss this pathwayRoles within this pathway
Where this capability can take shape
- 01Penetration Tester
- 02Red Team Operator
- 03Ethical Hacker
- 04Adversary Emulation Specialist
- 05Purple Team Analyst
- 06Vulnerability Assessment Specialist
- 07Application Security Tester
- 08Security Consultant
Practical capability
What you work through
Reconnaissance and service enumeration
Vulnerability validation and exploitation
Windows and Linux attack paths
Credential access and lateral movement
Nmap, Kali Linux and Wireshark workflows
Evidence-led reporting and remediation advice
The precise sequence is adapted to prior experience, available hardware and the role outcome being pursued.
How practice works
A scenario should force more than one correct command.
- Observe
Establish what the environment is doing before deciding what is wrong.
- Reason
Form a testable explanation based on architecture, evidence and risk.
- Act
Configure, test, investigate or communicate the response required by the role.
- Defend
Explain the decision, its limitations and what should happen next.
No pathway works alone