The OSEP (OffSec Experienced Penetration Tester) credential proves you can breach hardened, well-defended networks using custom evasion tradecraft. kodestree’s OSEP training walks you through the official PEN-300 curriculum, covering client-side exploitation, AV and AMSI bypass, process injection, and Active Directory attack chains through live, instructor-led labs on realistic enterprise networks. You’ll leave exam-ready, equipped to simulate real adversaries and stand out for senior penetration testing and red team roles.
Prerequisites
- Completion of OffSec’s PEN-200 course and OSCP/OSCP+ certification, or equivalent hands-on experience
- Working knowledge of Windows and Linux operating systems
- Solid understanding of TCP/IP networking fundamentals
- Scripting experience in Python, Bash, or PowerShell
- Basic familiarity with exploit development and debugging concepts
- Prior exposure to penetration testing, ideally including Active Directory environments
Why Learn OSEP?
OSEP is one of the three credentials that make up OffSec’s respected OSCE³ track, alongside OSWE and OSED, and it’s built to test genuine evasion tradecraft rather than memorized checklists. Employers recognize that an OSEP holder can operate against EDR, AppLocker, and AMSI-hardened networks – capability that most entry-level certifications simply don’t cover. As organizations pour more budget into detection and response, professionals who can still get past those controls stay in short supply, which makes OSEP a strong differentiator for red team roles, senior pentesting positions, and independent consulting work.
Course Objectives
This OSEP training is designed to help you:
- Understand the Windows and Linux internals relevant to exploitation and evasion
- Build custom droppers and payloads that get past modern AV and EDR tools
- Bypass AMSI, application whitelisting, and Windows Defender protections
- Perform advanced lateral movement across mixed Windows and Linux networks
- Exploit Active Directory trust relationships and Microsoft SQL Server
- Chain multiple techniques together into a realistic red team engagement
- Prepare thoroughly for the 47-hour-45-minute proctored OSEP exam
What You Will Learn
By the end of this course, you’ll be able to:
- Craft malicious Office and JScript payloads for client-side code execution
- Apply process injection and process migration for stealth and persistence
- Evade signature-based and heuristic antivirus detection
- Break out of restricted kiosk and application-whitelisted environments
- Extract and abuse Windows credentials to move laterally
- Navigate and pivot through segmented Windows and Linux networks
- Exploit Active Directory misconfigurations to escalate domain privileges
- Document findings in a clear, client-ready penetration test report
Who Is This Course For?
This OSEP course is ideal for:
- OSCP-certified professionals ready to advance their offensive security skills
- Penetration testers who want to specialize in evasion and Active Directory attacks
- Red team operators preparing for adversary simulation engagements
- Security consultants who assess mature, well-defended enterprise networks
- Blue team and SOC analysts who want offense-informed defensive insight
- Cybersecurity professionals working toward the full OSCE³ track (OSEP, OSWE, OSED)
Tools You Will Work With
- Kali Linux
- Metasploit Framework & Meterpreter
- PowerShell
- C# and C/C++ for custom tooling
- Mimikatz
- Ligolo-ng and other pivoting utilities
- Windows Sysinternals Suite
- Active Directory lab environments
Skills You Will Gain
This training strengthens your capabilities in:
- Advanced antivirus and EDR evasion
- Custom exploit and payload development
- Active Directory attack path exploitation
- Windows and Linux lateral movement
- Process injection and code execution techniques
- Network filter and application whitelisting bypass
- Professional red team reporting
Career Outcomes
OSEP certification can open doors to roles such as:
- Senior Penetration Tester
- Red Team Operator
- Adversary Simulation Specialist
- Offensive Security Consultant
- Purple Team Lead
- Security Researcher
Why Choose kodestree for This Training?
kodestree supports your OSEP journey with:
- Instructor-led live training mapped to the official PEN-300 syllabus
- Hands-on labs that simulate hardened, real-world enterprise networks
- Trainers with practical red team and offensive security backgrounds
- Flexible weekday and weekend batches for working professionals
- Post-training doubt resolution and career guidance
- Access to session recordings and practice resources