
|
|
|
|
|
The LPT standardizes the knowledge base for penetration testing professionals
by incorporating best practices followed by experienced experts in the field.
|
|

EC-Council’s Licensed Penetration Tester (LPT) certification is a natural evolution and extended value addition to its series of security related professional certifications. The LPT standardizes the knowledge base for penetration testing professionals by incorporating best practices followed by experienced experts in the field.
The objective of the LPT is to ensure that each professional licensed by EC-Council follows a strict code of ethics, is exposed to the best practices in the domain of penetration testing course and aware of all the compliance requirements required by the industry.
|
|

Unlike a normal security certification, the LPT is a program which trains security professionals to analyze the security posture of a network exhaustively and recommend corrective measures authoritatively. EC-Council's license vouches for their professionalism and expertise thereby making these professionals more sought after by organizations and consulting firms globally.
|
|
|
|


Penetration Testing is a process of exploiting known vulnerabilities in a network. Most if not all government agencies around the globe test their network perimeter defense mechanisms continuously to ensure safe cyber boundaries. Cyber attacks did exist a decade ago but they did not create financial mayhem or threatened a nation’s economy to the level in which it is being seen today. Today, as organizations are increasingly becoming networked, information is being exchanged electronically at the speed of thought. Routine tasks rely on computing power for accessing, providing, and storing information. Today an organization’s lackadaisical information security posture may have a negative effect on its profitability or even it’s existence.
|
|

The Cyber attack menace has cost billions of dollars to establishments around the globe. Information Security training was seldom seen as the main agenda in boardroom meetings or at a budget proposal stage in organizations. Organizations across the globe have started investing heavily in IT Security Training to ensure that the network security loopholes are fixed and risks of cyber attacks are mitigated.
|
|

For many years EC-Council has been certifying IT Security Professionals around the globe to ensure these professionals are proficient in network security defense mechanisms. For working professionals EC-Council introduced a unique Live, Online, Instructor led training delivery mechanism, please visit iClass website; to ensure that productivity is not hampered while these professionals undergo IT Security Training with EC-Council.
EC-Council certification programs cover a 360◦of the information security education cycle. The certification programs vary from entry level to advanced level.
|
|

Please find the partial list of Certification Programs offered by EC-Council:
For more information please visit the Certification Page
|
|
|


Every organization uses different types of security assessments to validate the level of security on its network resources. Security assessment categories include security audits, vulnerability assessments, ethical hacking and penetration testing.
- Security audit
- Vulnerability assessment
- Penetration testing
- Ethical Hacking
|
|


A security audit training helps in evaluating the organization’s network security by assessing how well it conforms to a set of established standards.
|
|


Penetration testing is the exploitation of vulnerabilities present in an organization's network. Penetration testing training simulates methods that intruders use to gain unauthorized access to an organization’s networked systems and then compromise them. Penetration testers may use proprietary and/or open source tools to test known technical vulnerabilities in networked systems. Apart from automated techniques, licensed penetration testing training involves manual techniques for conducting targeted testing on specific systems to ensure that there are no security flaws that may have gone undetected earlier. It helps determine which vulnerabilities are exploitable and the degree of information exposure or network control that the organization could expect an attacker to achieve after successfully exploiting vulnerability.
|
|


Vulnerability is a potential weakness in an organization's security. A flaw may exist, and may even be documented, but no one may have figured out (yet) how to exploit it. Some vulnerability, although exploitable, may not yield enough of information in return for the time or resources necessary to exploit them. A vulnerability assessment training is the process of identifying logical weaknesses in computers and networks as well as physical weaknesses and weaknesses in policies, procedures and practices relating to the network and the organization
|
|

Ethical hacking is broadly defined as the methodology that ethical hackers adopt to discover existing vulnerabilities in information systems’ operating environments. Ethical hackers usually employ the same tools and techniques as criminal attackers, but they neither damage the target systems nor steal information, thereby maintaining the integrity and confidentiality of the system. Their job is to evaluate the security of targets, provide updates regarding any discovered vulnerabilities, and recommend appropriate mitigation procedures.
|
|

|
|
- Achieve the Certified Ethical Hacker (CEH) Certification. (Attach a copy of your CEH certificate and score transcript with application)
- Achieve the EC-Council Certified Security Analyst (ECSA) certification. (Attach a copy of your ECSA/LPT and score transcript certificate with application)
- Applicants must have a valid EC-Council Continuing Education account and ensure that their EC-Council certifications are current and in good standing. To access the ECE Portal, please click here.
- Fill up and submit the LPT Application/Recommendation form and agree to EC-Council Code of Ethics.
- Remit the required license fee payment of USD500. The License is valid for two years. For subsequent renewals, you will need to pay USD250 per annual renewal. You can pay via http://eccouncil.org/orders.htm
- Provide documentation on criminal background check, or an authentication from an investigation agency absolving a criminal history. Click here for police verification in your country.
- Alternatively, candidates may sign a Declaration of No Criminal Convictions should they not be able to provide the required documentation as stated in Criteria 5 above. Kindly write in to certmanager@eccouncil.org for the declaration.
- Submit a detailed resume/C.V. detailing professional experience, previous certification /certificates held and character referees
- Please note that processing time will take between 2-4 weeks after all requirements above are submitted by the applicant.

EC-Council Certification Department lpt@eccouncil.org
Should you have any queries, please do not hesitate to write in to the Certification Manager at lpt@eccouncil.org
|
|
|
- EC-Council's prestigious endorsement as a licensed penetration testing professional, allowing successful candidates to practise penetration testing and consulting internationally.
- Industry acceptance as a legal and ethical security professional.
- Access to proprietary EC-Council software, templates and penetration testing methodologies.
- License to practice and conduct security testing in organizations accredited by EC-Council.
- Acquire knowledge from experienced hands-on penetration testing methodologies and latest penetration testing practices.
|
|

 The LPT certification has taken me to an entirely new level of technical & security skills. I am now able to provide more services to my employer. Our entire security stance has thus improved.
Peter Black

The LPT title and designation is a Private License from EC-Council to suitably qualified individuals that achieve the high standards set by EC-Council to use EC-Council's approved trademarks, methodologies, templates and report structures in their professional career. The LPT is NOT a governmentally sanctioned title conferred by any government institution or state.
|
|
|
|

The age requirement for attending the training or attempting the exam is restricted to any candidate that is at least 18 years old.
If the candidate is under the age of 18, they are not eligible to attend the official training or eligible to attempt the certification exam unless they provide the accredited training center/EC-Council a written consent of their parent/legal guardian and a supporting letter from their institution of higher learning. Only applicants from nationally accredited institution of higher learning shall be considered.
|
|


EC-Council reserves the right to impose additional restriction to comply with the policy. Failure to act in accordance with this clause shall render the authorized training center in violation of their agreement with EC-Council. EC-Council reserves the right to revoke the certification of any person in breach of this requirement.
|