Course
digicode: BPST
OSSTMM Professional Security Tester
Course facts
Download as PDF- Applying the OSSTMM methodology for the structured execution of penetration tests and security assessments
- Using various network and security tools for the precise evaluation of system and network security
- Detecting and analyzing network problems, anomalies, and security-related vulnerabilities
- Identifying systems, devices, services, and protocols to determine the attack surface
- Detecting missing or faulty security controls and deriving appropriate countermeasures
- Developing techniques for detecting new or unknown security problems
- Creating complete OSSTMM audit reports (STAR) in accordance with international standards
- Preparing for the OPST certification exam to formally confirm competence as a professional security tester/ethical hacker
OSSTMM strengthens digital sovereignty by providing organizations with an open and vendor-independent methodology for assessing their operational security systematically, transparently, and reproducibly. This enables them to develop their own testing and assessment capabilities, reduce their dependence on individual vendors, and establish a sound basis for making independent decisions about security measures, technologies, and service providers.
- Introduction to the OSSTMM method
- The six sections of OSSTMM (with case studies)
- International best practices and standards
- OSSTMM Rules of Engagement (Ethical approach of OSSTMM)
- Security test types
- Structure of OSSTMM Compliance
- Testing procedure
- RAV Risk Assessment Value as a benchmark
- Hands-on exercises to prepare for the «Certified OSSTMM Professional Security Tester» exam
Component of the following courses
- Security specialists, penetration testers, or consultants who wish to professionally plan, conduct, and document security assessments using the OSSTMM methodology
- IT security professionals who want to systematically deepen their knowledge of penetration testing
- Penetration testers and ethical hackers who wish to supplement their practical experience with a recognized methodology
- Security consultants and auditors who conduct technical security assessments or evaluate their results
- Network and system administrators with security responsibilities who want to identify and assess vulnerabilities in a structured manner
- Individuals who want to specifically prepare for certification as an OSSTMM Professional Security Tester (OPST)
A solid understanding of networks, TCP/IP, and IT security is required. Experience with Windows, BSD, Unix, or Linux—preferably using the command line—is a plus but not required.
This training is intended for participants who already have a solid foundation of knowledge and practical experience in ethical hacking and penetration testing. If this is not the case, we recommend taking the following courses:
Information about the exam
The exam fees are included in the course price. On the last day of the course, you will take the exam to become a Certified OSSTMM Professional Security Tester. The exam lasts 3 hours and includes theoretical questions about OSSTMM as well as practical tasks in the field of security testing. The exam can be taken on your own laptop or on digicomp's devices.
Repeating the exam
A retake costs CHF 300 and is paid for by the participant. To retake the exam, please contact our customer advisors directly at info@digicomp.ch.
Certification
OPST certification has been recognized for the diploma «Master in Information Technology Security» from La Salle University in Barcelona. This institution is part of the international La Salle educational network, which also includes Manhattan College in New York and La Salle University in Philadelphia. All OPST certificates bear both the ISECOM and La Salle seals, as a sign of the prestige associated with them.