---
title: Certifications
description: Certifications in Cyber Security
---

[![avantguard](https://avantguard.io/hs-fs/hubfs/LogoInverted.png?width=254&height=120&name=LogoInverted.png "avantguard")](https://avantguard.io?hsLang=en)

- [Services](https://avantguard.io/en/services)
- [About Us](https://avantguard.io/en/über-uns)
- [Experience](https://avantguard.io/en/erfahrung)
- [Career](https://avantguard.io/de/karriere)
- [Research](https://avantguard.io/en/blog)
- [Contact](https://avantguard.io/en/kontakt)

 En

- [English](https://avantguard.io/en/zertifizierungen)
- [German](https://avantguard.io/zertifizierungen)

[![avantguard](https://avantguard.io/hs-fs/hubfs/LogoInverted.png?width=144&height=65&name=LogoInverted.png "avantguard")](https://avantguard.io?hsLang=en)

<https://avantguard.io/en/zertifizierungen#dark-header__mobile-nav__mmenu>

[![Dark-logo-small-1](https://www.fthemes.net/hubfs/Dark-logo-small-1.png "Dark-logo-small-1")](https://avantguard.io?hsLang=en)

- [Services](https://avantguard.io/en/services)
- [About Us](https://avantguard.io/en/über-uns)
- [Experience](https://avantguard.io/en/erfahrung)
- [Career](https://avantguard.io/de/karriere)
- [Research](https://avantguard.io/en/blog)
- [Contact](https://avantguard.io/en/kontakt)

 En

- [English](https://avantguard.io/en/zertifizierungen)
- [German](https://avantguard.io/zertifizierungen)

[![avantguard](https://avantguard.io/hs-fs/hubfs/LogoInverted.png?width=144&height=65&name=LogoInverted.png "avantguard")](https://avantguard.io?hsLang=en)

<https://avantguard.io/en/zertifizierungen#dark-header__mobile-nav__mmenu>

- [Services](https://avantguard.io/en/services)
- [About Us](https://avantguard.io/en/über-uns)
- [Experience](https://avantguard.io/en/erfahrung)
- [Career](https://avantguard.io/de/karriere)
- [Research](https://avantguard.io/en/blog)
- [Contact](https://avantguard.io/en/kontakt)

Current language: English

- [English](https://avantguard.io/en/zertifizierungen)
- [German](https://avantguard.io/zertifizierungen)

# Certifications

![Offensive Security Experienced Penetration Tester (OSEP)](https://avantguard.io/hs-fs/hubfs/osep.png?width=200&name=osep.png)

OSEPs have the expertise necessary to conduct pentests against hardened systems. They’ve proven their ability to identify intrusion opportunities and execute advanced, organized attacks in a focused manner. OSEPs can bypass security defenses, perform advanced attacks while avoiding detection, & compromise systems configured with security in mind. They are able to assess systems and execute penetration tests at a higher level than an OSCP.  
**Exam:** 48 h practical and 24 reporting

[Learn more](https://www.credential.net/group/353911)

![Offensive Security Certified Professional (OSCP) ](https://avantguard.io/hs-fs/hubfs/OSCP.png?width=200&name=OSCP.png)

An OSCP has demonstrated the ability to use persistence, creativity, and perceptiveness to identify vulnerabilities and execute organized attacks under tight time constraints. OSCP holders have also shown they can think outside the box while managing both time and resources.  
**Exam:** 24 h practical and 24 reporting

[Learn more](https://www.credential.net/group/353836)

![Certified Red Team Lead (CRTL)](https://avantguard.io/hs-fs/hubfs/crtl.png?width=200&height=200&name=crtl.png)

Holders of the Red Team Lead badge have demonstrated their knowledge of building secure C2 infrastructure, writing custom tooling, circumventing Windows hardening configurations, and bypassing EDR.  
**Exam:** 72 h practical

[Learn more](https://eu.badgr.com/public/badges/gwM0NmzISLyqmcqDScDX3w)

![Certified Red Team Operator (CRTO)](https://avantguard.io/hs-fs/hubfs/CRTO.png?width=200&name=CRTO.png)

Students who obtain this badge have demonstrated the ability to execute all phases of a Red Team assessment, from OSINT to full domain compromise and data exfiltration.  
**Exam:** 48 h practical

[Learn more](https://badgr.com/public/badges/TgH86o9zQsSqDOJ5MLREIQ)

![Certified Red Team Professional (CRTP)](https://avantguard.io/hs-fs/hubfs/CRTP.png?width=200&name=CRTP.png)

CRTP is a completely hands-on certification. To be certified, a student must solve practical and realistic challenges in our fully patched Windows infrastructure labs containing multiple Windows domains and forests with Server 2016 and above machines within 24 hours and submit a report. The certification challenges a student to compromise Active Directory by abusing features and functionalities without relying on patchable exploits. A certification holder has demonstrated the skills to understand and assess security of an Active Directory environment.  
**Exam:** 24 h practical and 48 reporting

[Learn more](https://www.credential.net/group/140735)

![Certified Az Red Team Professional (CARTP) ](https://avantguard.io/hs-fs/hubfs/CARTP.png?width=200&name=CARTP.png)

CARTP is a completely hands-on certification. To be certified, a student must solve practical and realistic challenges in a live multi-Tenant Azure environment.  The exam for CARTP is a 24 hours hands-on exam. The student needs to compromise all the resources across tenants and submit a report. A certification holder has demonstrated the skills to understand and assess security of an Azure environment.  
**Exam:** 24 h practical and 48 reporting

[Learn more](https://www.credential.net/group/283019)

![Certified Pro Lab Red Team Operator Level 2 (Cybernetics)](https://avantguard.io/hs-fs/hubfs/cybernetics.png?width=200&name=cybernetics.png)

 

Cybernetics Pro Lab is an immersive Windows Active Directory environment that has undergone various pentest engagements in the past. Therefore, the operating systems have been updated, all patches applied, and the underlying operating systems hardened.  
**Exam:** Collecting all 25 flags in the lab

[Learn more](https://www.hackthebox.com/hacker/pro-labs)

![Certified Pro Lab Red Team Operator Level 3 (APTLabs)](https://avantguard.io/hs-fs/hubfs/aptlabs.png?width=164&name=aptlabs.png)

 

APTLabs simulates a targeted attack by an external threat agent against an MSP (Managed Service Provider). APTLabs consists of fully patched servers, prevalent enterprise technologies, a simulated WAN network, and much more.  
**Exam:** Collecting all 20 flags in the lab

[Learn more](https://www.hackthebox.com/hacker/pro-labs)

![VIRTUAL HACKING LABS Certificate of Completion](https://avantguard.io/hs-fs/hubfs/vhl2-png.png?width=200&name=vhl2-png.png)

 

The Virtual Hacking Labs is a full penetration testing lab that is designed to learn the practical side of vulnerability assessments and penetration testing in a safe environment.  
**Exam**: Get root/administrator access on at least 20 lab machines (beginner or advanced) and provide documentary proof of that achievement

[Learn more](https://www.virtualhackinglabs.com/labs/penetration-testing-lab/)

![VIRTUAL HACKING LABS Advanced+ Certificate of Completion](https://avantguard.io/hs-fs/hubfs/vhl2-png-1.png?width=200&name=vhl2-png-1.png)

 

The Virtual Hacking Labs is a full penetration testing lab that is designed to learn the practical side of vulnerability assessments and penetration testing in a safe environment  
**Exam**: Get root/administrator access on at least 10 lab machines (advanced+) and provide documentary proof of that achievement

[Learn more](https://www.virtualhackinglabs.com/labs/penetration-testing-lab/)

![Hack The Box](https://resources.hackthebox.eu/hubfs/HTB-Logo-1.png)

 

Hack The Box is an online platform for testing penetration testing skills and sharing ideas and methods with other members. The platform contains several challenges that are constantly updated. Some of them simulate real-world scenarios, while others are more CTF-style.  
**Exam**: 45% ownership of all active boxes and challenges.

[Learn more](https://www.hackthebox.com/)

![OSSTMM Professional Security Tester (OPST)](https://avantguard.io/hs-fs/hubfs/opst.png?width=200&name=opst.png)

An OPST is a Penetration Tester / Ethical Hacker who has the skills and knowledge to accurately and efficiently test the security posture of an organization, network or product.  
**Exam:** 3 h Multiple Choice

[Learn more](https://www.isecom.org/opst.pdf)

##### Menu

- [Home](https://avantguard.io/en/homepage)
- [Services](https://avantguard.io/en/services)
- [About Us](https://avantguard.io/en/über-uns)
- [Experience](https://avantguard.io/en/erfahrung)
- [Research](https://avantguard.io/en/blog)
- [Contact](https://avantguard.io/en/kontakt)

##### Services

- [Basic Health Check](https://avantguard.io/en/basic_health_check)
- [Penetration Testing](https://avantguard.io/en/penetration-test)
- [Red Teaming](https://avantguard.io/en/red-teaming)
- [AD Security Improvement](https://avantguard.io/en/ad_improvement)
- [HIST](https://avantguard.io/en/hist)
- [Other](https://avantguard.io/en/services)

##### Research

- [Cleartext Credentials](https://avantguard.io/en/blog/plaintext-credentials)
- [Overload Mapping](https://avantguard.io/blog/overload-mapping-vs.-memory-scanner)
- [Ransomware](https://avantguard.io/en/blog/what-really-helps-against-ransomware)
- [Red Teaming](https://avantguard.io/en/blog/red-teaming)
- [KeePass](https://avantguard.io/en/blog/attacking-and-hardening-keepass)
- [PowerShell Logging](https://avantguard.io/en/blog/powershell-enhanced-logging-capabilities-bypass)
- [AD CS](https://avantguard.io/en/blog/active-directory-certificate-services)

© 2026 avantguard cyber security AG

##### avantguard cyber security AG

Neue Jonastrasse 52   
8640 Rapperswil-Jona  
Switzerland  
+41 55 253 30 30  
[info@avantguard.io](mailto:info@avantguard.io)

![flagge_schweiz](https://avantguard.io/hs-fs/hubfs/flagge_schweiz.png?width=40&height=40&name=flagge_schweiz.png)

[Privacy Statement](https://avantguard.io/en/datenschutzerkl%C3%A4rung?hsLang=en)

[Follow us on LinkedIn](https://ch.linkedin.com/company/avantguard-cyber-security-ag) [Follow us on Twitter](https://twitter.com/avantguard_io) 

![](https://f.hubspotusercontent00.net/hubfs/7712601/back-to-top.png)