Red Teaming
Difficulty
Red Teaming teaches advanced offensive skills used in real-world attacks. Learners explore how red team operations differ from penetration testing and study techniques like event tracing evasion, process injection, and log tampering. This Learning Path helps teams test detection systems and uncover gaps in their defenses.
6
modules
42
hours of content
13
real-world skills
Learning Objectives
- Understand core red teaming concepts and methodologies
- Learn how Event Tracing for Windows (ETW) works in user and kernel modes
- Apply and automate advanced Windows event log tampering techniques
- Develop skills in stealthy process injection to evade detection
Who is it for?
- Red Team operators seeking to refine their evasion skills
- Penetration testers aiming to transition into Red Team roles
- Security professionals looking to simulate real-world adversary techniques
Showcase your skills with an OffSec Learning Badge
Proficiency
Proven knowledge of concepts and practical methodologies in Red Team tactics
Industry recognition
A valuable OffSec credential demonstrating your commitment to cybersecurity
Hands-on skill
Demonstrated ability to execute real-world evasion techniques
Red Teaming FAQ
-
Are there any prerequisites for Red Teaming?
Learners should have passed the assessment for our PEN-300 course or have equivalent knowledge.
-
Is Red Teaming good for beginners?
No, this learning path is designed for learners who already have a deep knowledge of breaching and operating within hardened targets and mature organizations with established security programs.
-
Red Teaming: NIST Work Roles
- Secure Systems Development
- Software Security Assessment
- Defensive Cybersecurity
- Incident Response
- Infrastructure Support
- Threat Analysis
- Vulnerability Analysis
-
Red Teaming: NIST TKS’s
- Knowledge of cybersecurity policies and procedures
- Knowledge of privacy laws and regulations
- Knowledge of privacy principles and practices
- Skill in creating technical documentation
- Correlate incident data
- Skill in identifying critical infrastructure systems
- Integrate organizational goals and objectives into security architecture
- Skill in designing the integration of hardware solutions
- Determine software development security implications within centralized and decentralized environments across the enterprise
- Develop threat models
-
Skills learned in Red Teaming
- Penetration testing
- Firewall/IDS/IPS evasion
- Privilege escalation/lateral movement (cloud/on-prem)
- Exploit proof-of-concepts
- Post-exploitation techniques
- Malware analysis
- Advanced incident analysis
- Advanced threat analysis
- Malware behavior analysis
- Red team operations
- Detection optimization
- Detection rule writing
- Threat simulation/APT emulation