NEWEST OFFENSIVE SECURITY
EXPERIENCED PENETRATION
TESTER (OSEP) EXAM | Q&A WITH
RATIONALES
1. What is the OffSec Experienced Penetration
Tester (OSEP) certification designed to
validate?
A) Entry-level ethical hacking skills
B) Advanced penetration testing skills,
including evading defenses and breaching
hardened systems
C) IT governance and compliance knowledge
D) Secure software development skills
Correct answer: B
Rationale: The OSEP certification validates a
professional's ability to perform advanced
penetration tests against mature organizations,
demonstrating skills in evading defenses,
executing client-side attacks, and performing
advanced Active Directory exploitation .
,2. Which organization administers the OSEP
certification?
A) CompTIA
B) EC-Council
C) Offensive Security (OffSec)
D) ISACA
Correct answer: C
Rationale: The OSEP certification is offered by
Offensive Security (OffSec), the same
organization behind the well-known OSCP
certification .
3. What is the official training course for the
OSEP certification?
A) PEN-200
B) PEN-300
C) OSCE3
D) PEN-100
Correct answer: B
,Rationale: The official training course for the
OSEP certification is the PEN-300: Evasion
Techniques and Breaching Defenses course .
4. What is a key focus area of the PEN-
300/OSEP curriculum?
A) Basic network administration
B) Advanced evasion techniques and breaching
defenses
C) IT service management
D) Software development lifecycle
Correct answer: B
Rationale: The PEN-300 course is an advanced
penetration testing course focused on evading
defenses, developing custom techniques, and
breaching modern enterprise security
measures .
5. What is the recommended prerequisite for
the OSEP certification?
A) A bachelor's degree
, B) 5 years of IT experience
C) Completion of PEN-200 and passing the
OSCP+ or equivalent knowledge
D) CISSP certification
Correct answer: C
Rationale: OffSec strongly suggests that
students taking PEN-300 have either taken the
PEN-200 course and passed the OSCP
certification or possess equivalent knowledge
and skills .
6. What is the duration of the OSEP exam?
A) 12 hours
B) 23 hours and 45 minutes
C) 47 hours and 45 minutes
D) 72 hours
Correct answer: C
Rationale: The OSEP exam is 47 hours and 45
minutes long . If the exam begins at 09:00 GMT,
it ends at 08:45 GMT two days later .
EXPERIENCED PENETRATION
TESTER (OSEP) EXAM | Q&A WITH
RATIONALES
1. What is the OffSec Experienced Penetration
Tester (OSEP) certification designed to
validate?
A) Entry-level ethical hacking skills
B) Advanced penetration testing skills,
including evading defenses and breaching
hardened systems
C) IT governance and compliance knowledge
D) Secure software development skills
Correct answer: B
Rationale: The OSEP certification validates a
professional's ability to perform advanced
penetration tests against mature organizations,
demonstrating skills in evading defenses,
executing client-side attacks, and performing
advanced Active Directory exploitation .
,2. Which organization administers the OSEP
certification?
A) CompTIA
B) EC-Council
C) Offensive Security (OffSec)
D) ISACA
Correct answer: C
Rationale: The OSEP certification is offered by
Offensive Security (OffSec), the same
organization behind the well-known OSCP
certification .
3. What is the official training course for the
OSEP certification?
A) PEN-200
B) PEN-300
C) OSCE3
D) PEN-100
Correct answer: B
,Rationale: The official training course for the
OSEP certification is the PEN-300: Evasion
Techniques and Breaching Defenses course .
4. What is a key focus area of the PEN-
300/OSEP curriculum?
A) Basic network administration
B) Advanced evasion techniques and breaching
defenses
C) IT service management
D) Software development lifecycle
Correct answer: B
Rationale: The PEN-300 course is an advanced
penetration testing course focused on evading
defenses, developing custom techniques, and
breaching modern enterprise security
measures .
5. What is the recommended prerequisite for
the OSEP certification?
A) A bachelor's degree
, B) 5 years of IT experience
C) Completion of PEN-200 and passing the
OSCP+ or equivalent knowledge
D) CISSP certification
Correct answer: C
Rationale: OffSec strongly suggests that
students taking PEN-300 have either taken the
PEN-200 course and passed the OSCP
certification or possess equivalent knowledge
and skills .
6. What is the duration of the OSEP exam?
A) 12 hours
B) 23 hours and 45 minutes
C) 47 hours and 45 minutes
D) 72 hours
Correct answer: C
Rationale: The OSEP exam is 47 hours and 45
minutes long . If the exam begins at 09:00 GMT,
it ends at 08:45 GMT two days later .