Querytech Academy Querytech Academy Academy
Part of the Cybersecurity Defense Architect Pathway

Certified Ethical Hacking Professional CEHP

Offensive Security & Penetration Testing

Enroll via the Cybersecurity Defense Architect Pathway

Level 1: Beginner

Beginner level of Certified Ethical Hacking Professional

"Conduct structured OSINT investigations to map an organization's attack surface before any active testing begins."

Included Modules
Open Source Intelligence Methodology
Passive vs Active Reconnaissance
Domain & Subdomain Enumeration
Metadata Extraction
Social Footprint Analysis
Threat Modeling Basics
Legal & Ethical Boundaries

"Scan and enumerate live network targets using Nmap, interpreting results and filtering false positives."

Included Modules
TCP/UDP Scanning Techniques
Service Version Detection
OS Fingerprinting & Evasion Concepts
Interpreting Scan Results
False Positive Analysis

"Build complete attack surface diagrams through banner grabbing, service enumeration, and vulnerability prioritization."

Included Modules
Banner Grabbing Concepts
Service Enumeration
SMB & DNS Enumeration (Lab-Based)
Identifying Exposed Services
Building Attack Surface Diagrams
Vulnerability Prioritization Frameworks

"Build the Linux command-line and scripting fluency every offensive security professional depends on."

Included Modules
Linux for Penetration Testers
Bash Scripting for Automation
Python for Security
Building a Lab Environment

"Run systematic vulnerability assessments with industry scanners, validating and prioritizing findings by real risk."

Included Modules
Vulnerability Scanner Architecture
Authenticated vs Unauthenticated Scans
CVE & CVSS Interpretation
Validating Scanner Findings
Vulnerability Prioritization & Risk Context

"Understand cryptographic weaknesses and credential attacks in a lab to test the strength of authentication systems."

Included Modules
Cryptography for Attackers
Hashing & Password Storage Weaknesses
Password Cracking Techniques (Lab)
Rainbow Tables & Salting
Credential Stuffing & Reuse Attacks

Professional Competencies

Coming soon.

Industry Tools

Coming soon.

Level 2: Intermediate

Intermediate level of Certified Ethical Hacking Professional

"Execute controlled exploitation using Metasploit in an isolated lab, following strict safe-execution protocols."

Included Modules
Payload Fundamentals
Exploit Selection Logic
Reverse Shell & Listener Setup
Safe Lab Execution Protocols

"Identify and exploit local privilege escalation paths across Windows and Linux systems in lab scenarios."

Included Modules
Local Privilege Escalation Theory
Misconfigured Services Analysis
Credential Harvesting Awareness
Linux Sudo Misconfiguration Scenarios
Kernel Vulnerability Awareness
Persistence Concepts (Lab Only)

"Simulate Active Directory attacks in a lab to understand lateral movement and Group Policy weaknesses."

Included Modules
AD Architecture Fundamentals
Kerberos Authentication Awareness
Lateral Movement Concepts
Misconfigured Group Policy Analysis
Password Policy Weaknesses
Blue-Team Defensive Countermeasures

"Assess the security of wireless networks and IoT devices in controlled lab environments."

Included Modules
Wireless Network Attacks
Bluetooth & RF Security
IoT Device Security Testing
Wireless Defense Countermeasures

"Explore low-level memory corruption and buffer overflow exploitation in controlled, isolated lab targets."

Included Modules
Memory Layout & the Stack
Buffer Overflow Fundamentals
Shellcode Concepts
Exploit Mitigations (DEP, ASLR)
Fuzzing for Vulnerabilities

"Practice post-exploitation tradecraft — pivoting, data collection, and cleanup — within authorized lab scope."

Included Modules
Post-Exploitation Objectives
Network Pivoting & Tunneling
Data Exfiltration Awareness
Maintaining Access (Lab Concepts)
Cleanup & Anti-Forensics Awareness

Professional Competencies

Coming soon.

Industry Tools

Coming soon.

Level 3: Advanced

Advanced level of Certified Ethical Hacking Professional

"Test web applications against the OWASP Top 10, identifying injection, session, and input validation flaws."

Included Modules
SQL Injection Theory
Cross-Site Scripting (XSS) Flaws
Session Management Weaknesses
Input Validation Failures
Secure Coding Awareness

"Assess cloud misconfigurations and exposure across AWS and Microsoft Azure environments."

Included Modules
Cloud Storage Exposure Analysis
IAM Misconfiguration Risks
Cloud Logging & Monitoring Fundamentals
Cloud Hardening Strategies

"Validate findings, score risk with CVSS awareness, and produce industry-standard, responsibly disclosed reports."

Included Modules
Proof-of-Concept Documentation
Risk Scoring (CVSS Awareness)
Reproduction Steps Documentation
Responsible Disclosure Standards
Bug Bounty Program Structures
Legal Compliance & Ethics

"Simulate realistic adversaries through red team operations and ethically-bounded social engineering."

Included Modules
Red Team Methodology
Social Engineering Tactics
Phishing Simulation Design
Physical Security Awareness

"Assess the security of REST/GraphQL APIs and mobile applications — the dominant modern attack surface."

Included Modules
API Security Testing
Authentication & Authorization Flaws
Mobile App Security Testing
Insecure Data Storage & Transport

"Analyze malware behavior and evasion techniques to understand modern threats and strengthen detection."

Included Modules
Static Malware Analysis
Dynamic Analysis in a Sandbox
Common Evasion Techniques
Indicators of Compromise Extraction

Professional Competencies

Coming soon.

Industry Tools

Coming soon.

Ready to Start?

This program is part of the Cybersecurity Defense Architect Pathway. You'll pick your starting cohort for Certified Ethical Hacking Professional — the first program in the pathway — on the next step.

Reserve Your Spot