PenTest+ study guide
CompTIA PenTest+ validates the skills to plan, scope, and perform authorized penetration tests and to communicate the results. The emphasis is on professional engagement management as much as on technique.
Details below were checked in October 2026 against official and widely cited sources. Exams, prices, and requirements change, so confirm with the certifying body before you register.
Eligibility
- There are no formal prerequisites.
- CompTIA recommends Network+ and Security+ (or equivalent knowledge) and three to four years of hands-on security experience.
Exam format & cost
| Current exam | PT0-003 (launched December 2024) |
|---|---|
| Length | Up to about 90 questions, 165 minutes, multiple choice and performance-based |
| Passing score | Check CompTIA (sources differ) |
| Exam fee | About $404–$439 (US). Check CompTIA's store |
| Renewal | Valid for 3 years. Renew with continuing education units or a qualifying higher certification |
Domains
| Domain | Weight |
|---|---|
| 1. Engagement Management | 13% |
| 2. Reconnaissance and Enumeration | 21% |
| 3. Vulnerability Discovery and Analysis | 17% |
| 4. Attacks and Exploits | 35% |
| 5. Post-exploitation and Lateral Movement | 14% |
How to study
- Scoping, written authorization, and rules of engagement are heavily tested. Know what to do when something is out of scope.
- Be able to recommend a specific remediation for every type of finding.
- Learn how to rate and communicate findings to different audiences.
- Practice only in labs and on systems you're authorized to test.
Ready to test yourself on PenTest+?
Start PenTest+ practice